Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 187.199.104.240. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:187.199.104.240
Hostname:dsl-187-199-104-240-dyn.prod-infinitum.com.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V., MX
Country:- MX
First seen:2018-09-19 12:37:11 UTC
Last seen:2018-09-19 12:49:40 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-09-22 21:50:359534ee331e9d61fb1021ee3f6fceaa5cVirustotal results 35/69 (50.72%) 187.199.104.2407080Heodo
2018-09-22 04:20:130c332c0330092cb8282bbf72313ea908Virustotal results 40/65 (61.54%) 187.199.104.2407080Heodo
2018-09-21 06:51:29f169a6e10534f356e9b80b97c2852aedVirustotal results 40/68 (58.82%) 187.199.104.2407080Heodo
2018-09-21 05:46:292ec0e805931ba5af5d245c123d106a32Virustotal results 38/69 (55.07%) 187.199.104.2407080Heodo
2018-09-20 19:20:07673d9c17be03bae4201d78705f875b0fVirustotal results 44/68 (64.71%) 187.199.104.2407080Heodo
2018-09-20 18:22:30ca7225a5ac7700ee93895e6edc592560Virustotal results 18/68 (26.47%) 187.199.104.2407080Heodo
2018-09-20 08:21:57e46788e72c1b2d3e82f08276aef225a3Virustotal results 12/68 (17.65%) 187.199.104.2407080Heodo
2018-09-20 06:51:4872ee9ddf665b6a0ce32b5dc546b82858Virustotal results 31/66 (46.97%) 187.199.104.2407080Heodo
2018-09-20 06:18:299567c3ad2a71f3f650bf438cc217cb77Virustotal results 32/68 (47.06%) 187.199.104.2407080Heodo
2018-09-18 10:29:07b7f71db7f2fc9521573a23bbf58aff93Virustotal results 13/68 (19.12%) 187.199.104.2407080Heodo
2018-09-18 09:07:271157330151fe3986fafb3fd59421c483Virustotal results 13/68 (19.12%) 187.199.104.2407080Heodo

# of malware samples: 11