Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 70.166.122.236. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:70.166.122.236
Hostname:wsip-70-166-122-236.ph.ph.cox.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS22773
AS name:ASN-CXA-ALL-CCI-22773-RDC - Cox Communications Inc., US
Country:- US
First seen:2018-09-28 15:03:17 UTC
Last seen:2018-09-28 19:51:47 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-10-02 15:56:14288789a6cfa379607c1a3474628d6f9cVirustotal results 32/69 (46.38%) 70.166.122.23680Heodo
2018-10-01 11:09:24c84422854a302d6b6343f5e05e7c2006Virustotal results 11/69 (15.94%) 70.166.122.23680Heodo
2018-10-01 07:06:2248f5e0bc201fa94c78cff7f7d028fb1dVirustotal results 34/69 (49.28%) 70.166.122.23680Heodo
2018-10-01 07:01:34eb777443ecb73f4e3a01f6a2bae32f4fVirustotal results 10/69 (14.49%) 70.166.122.23680Heodo
2018-10-01 06:14:508c12d1710b03613d60ec46dac08ef5a1Virustotal results 24/69 (34.78%) 70.166.122.23680Heodo
2018-09-30 09:44:521feb2a391cd4f44a9400b9b85caa141fVirustotal results 30/69 (43.48%) 70.166.122.23680Heodo
2018-09-30 08:57:07a9eaba39d6da574b4b9782180763ce8bVirustotal results 23/69 (33.33%) 70.166.122.23680Heodo
2018-09-30 08:05:45bed3d35c3b8adecca48a3b16d6c7a6feVirustotal results 23/69 (33.33%) 70.166.122.23680Heodo
2018-09-29 12:19:0079330b9cafdbc050117ef78e1a411737Virustotal results 14/69 (20.29%) 70.166.122.23680Heodo
2018-09-29 08:51:551b215e84750de8ae3600df92154b1537Virustotal results 11/64 (17.19%) 70.166.122.23680Heodo
2018-09-29 07:34:559a13774ec532cdb556bd21f426521483Virustotal results 30/68 (44.12%) 70.166.122.23680Heodo
2018-09-29 07:01:16ded641f741d8eda8be254e981d37c29cVirustotal results 35/69 (50.72%) 70.166.122.23680Heodo
2018-09-29 06:57:02fb8a5275bcb5d6fd799fdb6868faeebcVirustotal results 30/68 (44.12%) 70.166.122.23680Heodo

# of malware samples: 13