Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 190.17.195.202. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:190.17.195.202
Hostname:202-195-17-190.fibertel.com.ar
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10318
AS name:Telecom Argentina S.A.
Country:- AR
First seen:2020-02-16 15:01:04 UTC
Last seen:2020-03-21 08:08:09 UTC
Last online:2020-03-30

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-22 10:59:04aef19a6459e0704f99ed11b020dd4f4eVirustotal results 51 / 72 (70.83%) 190.17.195.20280Heodo
2020-02-26 04:28:0681c7f520afcf6b221dc427d9cd690b21n/a190.17.195.20280Heodo
2020-02-24 05:41:10a49fef1ac7c105f7ca27ed2e92d45ed8Virustotal results 43 / 69 (62.32%) 190.17.195.20280Heodo
2020-02-16 19:30:04f90bf9980ee4658034ef2b04f8371272Virustotal results 5 / 73 (6.85%) 190.17.195.20280

# of malware samples: 4