Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 189.190.61.232. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:189.190.61.232
Hostname:dsl-189-190-61-232-dyn.prod-infinitum.com.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2018-11-05 19:59:32 UTC
Last seen:2019-01-08 08:07:07 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-08 08:20:3603e9b96a5f2017e197f7882c6f1ad027Virustotal results 49/69 (71.01%) 189.190.61.23280Heodo
2018-11-07 13:15:078ca9a79e88a066d60ed8f9d692dfb2aeVirustotal results 37/59 (62.71%) 189.190.61.23280Heodo
2018-11-07 08:34:082cc34957ab7bb7af23b57f26c08bea7fVirustotal results 36/58 (62.07%) 189.190.61.23280Heodo
2018-11-07 08:27:24ba1a80b6e58869c73cc7332f22921998Virustotal results 15/59 (25.42%) 189.190.61.23280Heodo
2018-11-07 07:24:37ccb1e1e5ca7490df98487a7b962581dfVirustotal results 15/57 (26.32%) 189.190.61.23280Heodo
2018-11-06 07:59:322bbe5d360265df6d53520934874c185fVirustotal results 15/67 (22.39%) 189.190.61.23280Heodo
2018-11-06 02:08:5774507f066045354635562f617360968bVirustotal results 36/58 (62.07%) 189.190.61.23280Heodo
2018-11-06 01:58:490da38a25e32fa34f9e93ee9c14a33474Virustotal results 38/58 (65.52%) 189.190.61.23280Heodo
2018-11-05 19:59:320e80ecced0a1fcc98377f889d57853a8Virustotal results 10/57 (17.54%) 189.190.61.23280Heodo

# of malware samples: 9