Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 190.104.213.38. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:190.104.213.38
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS11014
AS name:CPS
Country:- AR
First seen:2018-12-17 20:32:50 UTC
Last seen:2018-12-17 20:42:11 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-08 15:20:1976f22dd694fb6dabb83761a13289bf5bVirustotal results 51/71 (71.83%) 190.104.213.38443Heodo
2019-01-08 13:12:41cf7e989f51e20f9da800486a4606abd7Virustotal results 19/70 (27.14%) 190.104.213.38443Heodo
2019-01-08 12:51:019083d6f31312a1e2588df73195ae07f6Virustotal results 48/71 (67.61%) 190.104.213.38443Heodo
2019-01-08 12:36:28d4d7b517e1bf5b0ba0c342cf5b0e8751Virustotal results 51/70 (72.86%) 190.104.213.38443Heodo
2018-12-27 11:48:197b0e3f3e3f5f3fef30d494efdeb89cebVirustotal results 49/69 (71.01%) 190.104.213.38443Heodo
2018-12-19 13:40:53d191e1909b1bb71ca968a16d4f4e93c7Virustotal results 17/70 (24.29%) 190.104.213.38443Heodo
2018-12-19 11:02:37e4ed42603ef430500cc2beb6dee14925Virustotal results 19/72 (26.39%) 190.104.213.38443Heodo
2018-12-19 09:43:06c6f991f6743e1c124c61df266a626360Virustotal results 17/69 (24.64%) 190.104.213.38443Heodo
2018-12-18 02:27:31a59b485ccb2743b1ab5d31f2548119cbVirustotal results 16/70 (22.86%) 190.104.213.38443Heodo
2018-12-17 23:33:4767d49efc03fbf08b9112e5437c949949Virustotal results 17/69 (24.64%) 190.104.213.38443Heodo
2018-12-17 20:38:3378cd1fea1e228624fbe9e5a8bfd22803Virustotal results 44/70 (62.86%) 190.104.213.38443Heodo
2018-12-17 20:26:10b80047f12a5320501608f8c4b2cd370cVirustotal results 17/70 (24.29%) 190.104.213.38443Heodo

# of malware samples: 12