Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 181.56.163.152. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:181.56.163.152
Hostname:static-ip-18156163152.cable.net.co
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10620
AS name:Telmex Colombia S.A., CO
Country:- CO
First seen:2018-09-26 11:00:31 UTC
Last seen:2018-09-26 14:54:13 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-09-26 14:54:13460bc7f48c64e90f2f87b2f6d36238f7Virustotal results 18/69 (26.09%) 181.56.163.15280Heodo
2018-09-26 14:45:077449bce9cdb9598a408069356d42b412Virustotal results 19/66 (28.79%) 181.56.163.15280Heodo
2018-09-26 13:27:35d430cd05baabe0bd5ec67ab530ecd44cVirustotal results 20/69 (28.99%) 181.56.163.15280Heodo
2018-09-26 11:44:014e0f8615a22c82ed26b90654058edf50Virustotal results 12/69 (17.39%) 181.56.163.15280Heodo
2018-09-26 11:39:33c50de84047c15476a5cef6fe86176aeaVirustotal results 12/62 (19.35%) 181.56.163.15280Heodo
2018-09-26 08:25:1890b45b764a3fda2bef831e704ef6cb39Virustotal results 14/67 (20.90%) 181.56.163.15280Heodo
2018-09-25 18:36:4239b708e196d7b1902aaa2dce74b402feVirustotal results 15/67 (22.39%) 181.56.163.15280Heodo
2018-09-25 16:31:581901fc38186ae1bed1b5da4874cfa382Virustotal results 13/67 (19.40%) 181.56.163.15280Heodo

# of malware samples: 8