Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 199.167.209.11. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:199.167.209.11
Hostname:199-167-209-11.rbbmt.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS40943
AS name:RURALBROADBAND - Rural Broadband, L.L.C.
Country:- US
First seen:2018-05-13 19:11:58 UTC
Last seen:2019-03-25 22:44:02 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-03-27 14:36:059bd88c083a897106fc7a9a0449f22f08Virustotal results 52/68 (76.47%) 199.167.209.1180Heodo
2019-02-02 06:13:02a2e82ccce86af4cdde6845a96bd08fdaVirustotal results 51/69 (73.91%) 199.167.209.1180Heodo
2019-01-08 20:17:28887a0121fbd6bf069b210ceac55a1bcfVirustotal results 50/67 (74.63%) 199.167.209.1180Heodo
2018-11-08 17:32:07a6f08c321a44ed142feb0fc0d8a8fc9bVirustotal results 42/66 (63.64%) 199.167.209.1180Heodo
2015-05-19 17:42:502c533d9fd21818bfb60b4cd68482cd1eVirustotal results 49/57 (85.96%) 199.167.209.1180

# of malware samples: 5