Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 154.120.227.190. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:154.120.227.190
Hostname:154.120.227.190.liquidtelecom.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS30844
AS name:LIQUID-AS
Country:- ZW
First seen:2020-02-27 04:08:11 UTC
Last seen:2020-03-02 15:19:45 UTC
Last online:2020-04-23

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-05-10 07:39:203035957fdfd9efa045a66f5e40913f61n/a154.120.227.19080Heodo
2020-05-06 13:10:38ddfb3dfe15e90740aedbeabb60062a7bVirustotal results 15 / 72 (20.83%) 154.120.227.19080Heodo
2020-04-16 20:49:589f29eaa5279a8dbfa7a83774927262beVirustotal results 6 / 70 (8.57%) 154.120.227.19080Heodo
2020-04-14 07:40:49235643312f526c43f960e2eb2d6eaa73Virustotal results 7 / 71 (9.86%) 154.120.227.19080Heodo
2020-04-14 07:40:49235643312f526c43f960e2eb2d6eaa73Virustotal results 7 / 71 (9.86%) 154.120.227.19080Heodo
2020-04-04 00:12:4598440ff9e2f217f668352c4352d84330Virustotal results 14 / 73 (19.18%) 154.120.227.19080Heodo
2020-03-25 11:38:03f9f2f861e164282de2c3c1f4f12933den/a154.120.227.19080Heodo
2020-03-25 11:36:51e0b32b7204bfd5e5b16b62bf6b9c8f1en/a154.120.227.19080Heodo
2020-03-25 11:36:27daac0417c5e3c5668df8078631a7f526n/a154.120.227.19080Heodo
2020-03-25 11:36:06fabddcf3166ff8b11df1e732d5df8122n/a154.120.227.19080Heodo
2020-03-25 11:30:509d13efa49e012f27f05fd3ddc5ec37f4n/a154.120.227.19080Heodo
2020-03-25 11:27:139bb1d4cb67aa5920bb9475ece4612905n/a154.120.227.19080Heodo
2020-03-25 11:26:31adbefbdd900d84e89fdba45d0fbbe770n/a154.120.227.19080Heodo
2020-03-25 11:26:19473f5da6bf46fe5cf559a4f816870362n/a154.120.227.19080Heodo
2020-03-25 11:24:308c6550b0541d7fee0e6423ab4bce5901n/a154.120.227.19080Heodo
2020-03-25 11:22:5229ac5b60850e40368224db7dcbe467e1n/a154.120.227.19080Heodo
2020-03-25 11:16:31134099415951caef9b5506ce63c06b76n/a154.120.227.19080Heodo
2020-03-23 11:02:17c01805622f7f07a8695b90855a0c94bcn/a154.120.227.19080Heodo
2020-03-22 23:17:09dbb291d5dfe8ccd9044c6ac4ca63146aVirustotal results 23 / 72 (31.94%) 154.120.227.19080Heodo
2020-03-02 20:22:2971dc654ff41f96dc8b60ff89cbda58ceVirustotal results 37 / 73 (50.68%) 154.120.227.19080Heodo
2020-03-02 15:04:29e3c27d36e2f90f18d26dbdc7bba48a93n/a154.120.227.19080Heodo
2020-03-02 14:54:48cef3bf1dfbb0868238827d737733adddn/a154.120.227.19080Heodo
2020-03-02 14:51:25c70c1000fdaf91719266d3c8812314a9n/a154.120.227.19080Heodo
2020-02-28 13:25:060a0abc8e9ad230591de7fa615dad9bcdn/a154.120.227.19080Heodo

# of malware samples: 24