Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 104.236.24.85. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:104.236.24.85
Hostname:medible.cl
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS14061
AS name:DIGITALOCEAN-ASN - DigitalOcean, LLC
Country:- US
First seen:2018-07-21 05:08:09 UTC
Last seen:2019-01-08 08:46:36 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-09 23:45:539b3d715c5b11f6dcfa8bb722b0df5c5bn/a104.236.24.858080Dridex
2019-01-09 09:33:57602c955fc3024c9865257d7128b3915bVirustotal results 51/69 (73.91%) 104.236.24.858080Heodo
2019-01-08 20:36:47789279793d11607d15c000ff76cb30deVirustotal results 52/69 (75.36%) 104.236.24.858080Heodo
2019-01-08 08:38:08692c6f83d943cbbdf9a4cb701d6b0831Virustotal results 52/70 (74.29%) 104.236.24.858080Heodo
2019-01-08 07:58:43465012f323afbc3c8d028dc933e803cdVirustotal results 13/67 (19.40%) 104.236.24.858080Heodo
2018-11-05 19:57:41a0f2571db0ade710ac6d1e72ac2211e5Virustotal results 34/68 (50.00%) 104.236.24.858080Heodo

# of malware samples: 6