Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 217.91.176.198. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:217.91.176.198
Hostname:pd95bb0c6.dip0.t-ipconnect.de
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS3320
AS name:DTAG Internet service provider operations, DE
Country:- DE
First seen:2018-09-18 09:24:09 UTC
Last seen:0000-00-00 00:00:00 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-10-03 08:12:39af9246be3d245ef8e20d335b0f6cd79aVirustotal results 43/68 (63.24%) 217.91.176.19880Heodo
2018-09-25 13:19:5258663452c00338a04693455858b7dfbcVirustotal results 44/68 (64.71%) 217.91.176.19880Heodo
2018-09-18 09:24:0901f2e86e4eee144f14ad6b29af0722a6Virustotal results 51/68 (75.00%) 217.91.176.19880Heodo
2018-09-17 16:01:37035163d751118af55cd97d45039d1e31Virustotal results 40/68 (58.82%) 217.91.176.19880Heodo
2018-09-08 13:58:3119fe92ba0bb7c02894c86c0cc02bf87bVirustotal results 41/68 (60.29%) 217.91.176.19880Heodo
2018-09-05 02:55:03c920f40b68ddb17550317dc8ae6c2c91Virustotal results 17/65 (26.15%) 217.91.176.19880Heodo
2018-09-04 10:43:52a9e1126073c01ef7de81553457222be7Virustotal results 36/68 (52.94%) 217.91.176.19880Heodo
2018-09-04 09:19:367656a9e020623a29ce25d941979bf914Virustotal results 18/67 (26.87%) 217.91.176.19880Heodo
2018-09-04 07:39:13402c6e055223164dcb90736f2f0404fcVirustotal results 35/68 (51.47%) 217.91.176.19880Heodo
2018-09-04 06:32:3707fd702c238b84dcbd1c8d4c5dcc32f6Virustotal results 34/68 (50.00%) 217.91.176.19880Heodo
2018-09-04 05:52:119fee7ffb84fb3579af67fbac8da0f3e7Virustotal results 20/68 (29.41%) 217.91.176.19880Heodo
2018-09-04 05:02:33f602ac1353c9d6e3fa0b24af5f1eed06Virustotal results 23/68 (33.82%) 217.91.176.19880Heodo
2018-09-03 18:37:23012281b66c3c7f796a9d5f65ee1ace2aVirustotal results 49/68 (72.06%) 217.91.176.19880Heodo

# of malware samples: 13