Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 70.50.196.234. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:70.50.196.234
Hostname:bas1-clarkson16-70-50-196-234.dsl.bell.ca
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS577
AS name:BACOM - Bell Canada
Country:- CA
First seen:2018-11-07 07:24:37 UTC
Last seen:2018-11-07 01:56:48 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-11-07 13:15:078ca9a79e88a066d60ed8f9d692dfb2aeVirustotal results 37/59 (62.71%) 70.50.196.2348080Heodo
2018-11-07 08:34:082cc34957ab7bb7af23b57f26c08bea7fVirustotal results 36/58 (62.07%) 70.50.196.2348080Heodo
2018-11-07 08:27:24ba1a80b6e58869c73cc7332f22921998Virustotal results 15/59 (25.42%) 70.50.196.2348080Heodo
2018-11-07 07:24:37ccb1e1e5ca7490df98487a7b962581dfVirustotal results 15/57 (26.32%) 70.50.196.2348080Heodo
2018-11-06 07:59:322bbe5d360265df6d53520934874c185fVirustotal results 15/67 (22.39%) 70.50.196.2348080Heodo
2018-11-06 02:08:5774507f066045354635562f617360968bVirustotal results 36/58 (62.07%) 70.50.196.2348080Heodo
2018-11-06 01:58:490da38a25e32fa34f9e93ee9c14a33474Virustotal results 38/58 (65.52%) 70.50.196.2348080Heodo
2018-11-05 19:59:320e80ecced0a1fcc98377f889d57853a8Virustotal results 10/57 (17.54%) 70.50.196.2348080Heodo
2018-11-05 19:57:11325c6240be61e858d1b8989b3beb3fe4Virustotal results 13/59 (22.03%) 70.50.196.2348080Heodo
2018-11-05 19:18:53f29fdb9596be44510267e93876ff31b5Virustotal results 10/59 (16.95%) 70.50.196.2348080Heodo

# of malware samples: 10