Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 203.198.147.4. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:203.198.147.4
Hostname:004.147.198.203.static.netvigator.com
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS4760
AS name:HKTIMS-AP PCCW Limited, HK
Country:- HK
First seen:2018-10-02 14:20:15 UTC
Last seen:0000-00-00 00:00:00 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-10-08 15:42:313bb621df726b21d1af62a1c006e18646Virustotal results 47/69 (68.12%) 203.198.147.4443Heodo
2018-10-06 06:41:05702ef7fa7128a113697071b29baa2ed8Virustotal results 39/69 (56.52%) 203.198.147.4443Heodo
2018-10-04 17:59:2748ef110c62e2c3dfba8f71c2b06c41c7Virustotal results 38/68 (55.88%) 203.198.147.4443Heodo
2018-10-02 11:44:585036ec491710dc9aa67054698d781fc7Virustotal results 18/69 (26.09%) 203.198.147.4443Heodo
2018-10-01 10:57:417aa46d4d5890d6e353c916263463a66fVirustotal results 11/68 (16.18%) 203.198.147.4443Heodo

# of malware samples: 5