Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 213.48.239.192. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:213.48.239.192
Hostname:192.239-48-213.static.virginmediabusiness.co.uk
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS5089
AS name:NTL, GB
Country:- GB
First seen:2018-11-06 13:34:28 UTC
Last seen:2018-11-09 12:50:07 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-11-10 00:24:37faf5a6f26cbed934c24c2ff7ccb8e8b4Virustotal results 45/67 (67.16%) 213.48.239.19280Heodo
2018-11-09 12:50:071dee912a008e2bf314796a6a3bc17afdVirustotal results 39/68 (57.35%) 213.48.239.19280Heodo
2018-11-07 11:19:28fc890ce1dc8d854d590c7faef4b98833Virustotal results 12/66 (18.18%) 213.48.239.19280Heodo
2018-11-07 10:55:37c608fcd14ed19750aa6e065291ef4bb4Virustotal results 23/67 (34.33%) 213.48.239.19280Heodo
2018-11-07 10:34:1487c62af3fbf1eb646b08d1dd58f07477Virustotal results 17/67 (25.37%) 213.48.239.19280Heodo
2018-11-07 10:10:437348eaf14aa0a24318ff4e70b3ad1fd1Virustotal results 20/65 (30.77%) 213.48.239.19280Heodo
2018-11-07 10:03:1725a14c837c44728c914cfab2ccf69ad2Virustotal results 13/67 (19.40%) 213.48.239.19280Heodo
2018-11-07 09:56:10efbe65d38dc32a5fa2522a37332828f3Virustotal results 16/67 (23.88%) 213.48.239.19280Heodo
2018-11-07 09:31:415ef29565ee293a2683573286f64aaa6dVirustotal results 15/66 (22.73%) 213.48.239.19280Heodo
2018-11-07 07:01:5578f625e451edf00694233be28a9ed6eeVirustotal results 22/66 (33.33%) 213.48.239.19280Heodo
2018-11-06 15:04:467dba0611a7732218a262f4dd8ff54edeVirustotal results 11/67 (16.42%) 213.48.239.19280Heodo
2018-11-06 13:41:27f099a0412405fc21be158821a619d0b2Virustotal results 12/68 (17.65%) 213.48.239.19280Heodo
2018-11-06 08:09:5687c9446401870688c642f9615bbcb554Virustotal results 10/66 (15.15%) 213.48.239.19280Heodo
2018-11-05 23:26:51dcd4afa2553d52d129f0c4176a86e237Virustotal results 18/68 (26.47%) 213.48.239.19280Heodo

# of malware samples: 14