Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 181.176.191.27. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:181.176.191.27
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS262210
AS name:VIETTEL PERU S.A.C.
Country:- PE
First seen:2020-03-21 07:23:29 UTC
Last seen:2020-03-21 16:22:32 UTC
Last online:2020-03-24

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-23 14:59:199eeb9f872a12f1baa0c781affe7895ffVirustotal results 33 / 72 (45.83%) 181.176.191.27443Heodo
2020-03-22 01:07:17c5bfd2628e1df3db4b491017e9f7a20fVirustotal results 22 / 72 (30.56%) 181.176.191.27443Heodo
2020-03-21 09:17:34f622761f46d52d42bffebd972bdd9623n/a181.176.191.27443Heodo
2020-03-21 08:29:1516b000c22696ced4d79d205ab5d934f5n/a181.176.191.27443Heodo
2020-03-21 08:19:17060c2819c370d7ef93da8b3a3771ff91n/a181.176.191.27443Heodo
2020-03-21 08:09:106e0743056c172eeb3cdc89804639f633n/a181.176.191.27443Heodo
2020-03-21 07:47:190de6cd19f60a9594d7d3b94fd871eeb9n/a181.176.191.27443Heodo
2020-03-21 07:30:309f821ea64fcfbea3b06444b899f9639bn/a181.176.191.27443Heodo

# of malware samples: 8