Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 158.69.249.236. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:158.69.249.236
Hostname:ns544665.ip-158-69-249.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS16276
AS name:OVH
Country:- US
First seen:2018-03-29 20:02:25 UTC
Last seen:2019-02-01 06:49:33 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-02-02 12:23:54a42399c1bca228a7e9b829a67d2daae2Virustotal results 55/71 (77.46%) 158.69.249.2364143Heodo
2019-01-08 21:01:35ce9d928c96b106a7ad44c9e579d3f443Virustotal results 56/68 (82.35%) 158.69.249.2364143Heodo
2019-01-08 14:58:419c8251cce6bf2d39dfdb123da0849e8aVirustotal results 56/67 (83.58%) 158.69.249.2364143Heodo
2019-01-08 14:43:1432dd6ca1cb3c3d363932bac8fd0e447bVirustotal results 51/69 (73.91%) 158.69.249.2364143
2019-01-08 14:40:39210acd00ee7dbd9892e5ca3c6a630334Virustotal results 47/68 (69.12%) 158.69.249.2364143Heodo
2019-01-08 13:50:594f2e3205042e801c90a78546c57452e2Virustotal results 47/67 (70.15%) 158.69.249.2364143Heodo
2019-01-08 09:23:59db0a60f9ea1999c59aa2dcd2ac49e38eVirustotal results 46/62 (74.19%) 158.69.249.2364143
2019-01-08 08:05:116603a61200564f7f1b7f39376927ac12Virustotal results 56/68 (82.35%) 158.69.249.2364143Heodo
2018-11-24 16:31:33a2b20d0c0f534966518a453a63568c0aVirustotal results 45/69 (65.22%) 158.69.249.2364143Heodo
2018-11-19 16:46:36a276bb71882899af4b81700e1e70f5fcVirustotal results 48/67 (71.64%) 158.69.249.2364143Heodo

# of malware samples: 10