Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 190.128.26.2. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:190.128.26.2
Hostname:pei-190-128-xxvi-ii.une.net.co
Status:Offline
Spamhaus SBL:SBL446179
Malware:Heodo -
AS number:AS13489
AS name:EPM Telecomunicaciones S.A. E.S.P.
Country:- CO
First seen:2019-03-31 18:07:32 UTC
Last seen:2019-06-13 07:00:58 UTC
Last online:2019-05-30

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-13 07:20:27b1f732322f9f60db5ed196355a33201aVirustotal results 54/70 (77.14%) 190.128.26.280
2019-06-08 00:32:1521a0bb5c4291fb965d455397d0c163ccVirustotal results 50/71 (70.42%) 190.128.26.280Heodo
2019-06-06 07:35:47355823be3ac7ed7269183a3947693f7fVirustotal results 48/74 (64.86%) 190.128.26.280Heodo
2019-05-04 15:38:06944a26c99621a2a636b650eab9a83e6bVirustotal results 50/67 (74.63%) 190.128.26.280Heodo
2019-04-12 04:46:17bbc51f61f97a64979c1faf623705b31cVirustotal results 52/71 (73.24%) 190.128.26.280Heodo
2019-04-03 14:18:3568ebf308d025ed914ddcb5b780f27cabVirustotal results 47/66 (71.21%) 190.128.26.280Heodo
2019-04-03 00:41:19c025d92445e1117f5f73489e89f3fb1dVirustotal results 45/66 (68.18%) 190.128.26.280Heodo
2019-04-02 17:35:21c4b9d82b346d57ff21946708fe29cd29Virustotal results 44/67 (65.67%) 190.128.26.280Heodo
2019-03-31 18:20:320d22c5b090722f7ef710d62522200ce6Virustotal results 52/67 (77.61%) 190.128.26.280Heodo

# of malware samples: 9