Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 190.191.82.216. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:190.191.82.216
Hostname:216-82-191-190.cab.prima.net.ar
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10481
AS name:Telecom Argentina S.A.
Country:- AR
First seen:2020-01-09 22:48:13 UTC
Last seen:2020-01-14 08:57:17 UTC
Last online:2020-01-19

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-01-14 12:46:212b9391a40d28cd82a3483e4072e3d2ddVirustotal results 40 / 72 (55.56%) 190.191.82.21680Heodo
2020-01-14 07:32:443ade0229113bbed7fbffff68373a4a4en/a190.191.82.21680Heodo
2020-01-14 06:48:464dd0371489b93469d75fae83aa55ad5en/a190.191.82.21680Heodo
2020-01-14 06:21:4366ccb1125e0283176e76efe165e45822Virustotal results 12 / 62 (19.35%) 190.191.82.21680Heodo
2020-01-14 06:07:18b555856bd04d07594f6f1be7bdf9bbfcn/a190.191.82.21680Heodo
2020-01-14 05:54:46e4ec78804314ab36d494a8f87ef44fd3Virustotal results 11 / 60 (18.33%) 190.191.82.21680Heodo

# of malware samples: 6