Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 201.132.185.66. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:201.132.185.66
Hostname:customer-LEON-185-66.megared.net.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS13999
AS name:Mega Cable, S.A. de C.V., MX
Country:- MX
First seen:2018-09-25 15:41:04 UTC
Last seen:2018-09-26 15:15:50 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-09-26 14:54:13460bc7f48c64e90f2f87b2f6d36238f7Virustotal results 18/69 (26.09%) 201.132.185.6680Heodo
2018-09-26 14:45:077449bce9cdb9598a408069356d42b412Virustotal results 19/66 (28.79%) 201.132.185.6680Heodo
2018-09-26 13:27:35d430cd05baabe0bd5ec67ab530ecd44cVirustotal results 20/69 (28.99%) 201.132.185.6680Heodo
2018-09-26 11:44:014e0f8615a22c82ed26b90654058edf50Virustotal results 12/69 (17.39%) 201.132.185.6680Heodo
2018-09-26 11:39:33c50de84047c15476a5cef6fe86176aeaVirustotal results 12/62 (19.35%) 201.132.185.6680Heodo
2018-09-26 08:25:1890b45b764a3fda2bef831e704ef6cb39Virustotal results 14/67 (20.90%) 201.132.185.6680Heodo
2018-09-25 18:36:4239b708e196d7b1902aaa2dce74b402feVirustotal results 15/67 (22.39%) 201.132.185.6680Heodo
2018-09-25 16:31:581901fc38186ae1bed1b5da4874cfa382Virustotal results 13/67 (19.40%) 201.132.185.6680Heodo

# of malware samples: 8