Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 74.195.12.152. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:74.195.12.152
Hostname:74-195-12-152.chlncmtk01.com.dyn.suddenlink.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS19108
AS name:SUDDENLINK-COMMUNICATIONS - Suddenlink Communications, US
Country:- US
First seen:2018-09-25 13:34:00 UTC
Last seen:2018-09-26 13:40:31 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-12-04 04:59:1567b0dd2a4bc0804a20842824f4aa0a33Virustotal results 42/68 (61.76%) 74.195.12.1528443Heodo
2018-10-01 02:56:09e140131cd904dff21c350bfe0a082779Virustotal results 39/68 (57.35%) 74.195.12.1528443Heodo
2018-09-28 17:01:12a8f54942c286ee264028f3d5bbf8ff0fVirustotal results 35/69 (50.72%) 74.195.12.1528443Heodo
2018-09-27 10:47:413135be2c48f42ef0f3540f7434eb9f39Virustotal results 33/69 (47.83%) 74.195.12.1528443Heodo
2018-09-27 08:51:45fcdb92d72edcb8a7971732307cac1734Virustotal results 39/68 (57.35%) 74.195.12.1528443Heodo
2018-09-26 13:40:31a74b8f81609ffe12192e3eab84a1fdaeVirustotal results 13/68 (19.12%) 74.195.12.1528443Heodo
2018-09-26 11:37:267417a7c8832cd5af24758c2a2b93edcaVirustotal results 23/68 (33.82%) 74.195.12.1528443Heodo
2018-09-26 06:04:22b05dc81cad29d1d3f15fb0ee9cca5be2Virustotal results 14/69 (20.29%) 74.195.12.1528443Heodo

# of malware samples: 8