Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 190.72.136.214. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:190.72.136.214
Hostname:190-72-136-214.dyn.dsl.cantv.net
Status:Offline
Spamhaus SBL:SBL447713
Malware:Heodo -
AS number:AS8048
AS name:CANTV Servicios, Venezuela
Country:- VE
First seen:2019-05-12 02:24:59 UTC
Last seen:2019-06-13 06:59:37 UTC
Last online:2019-06-06

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-13 07:09:0080637d1ec6004e907798722232242377Virustotal results 56/70 (80.00%) 190.72.136.214465Heodo
2019-06-09 03:55:486798d4632e3c1b027c005fa56ef428d4Virustotal results 51/73 (69.86%) 190.72.136.214465Heodo
2019-05-28 23:16:010dc9388a79050b3800301aaece490ec1Virustotal results 51/71 (71.83%) 190.72.136.214465Heodo
2019-05-24 05:18:0087e15c1f1c7709afda54f9d57cc8466dVirustotal results 17/59 (28.81%) 190.72.136.214465Heodo
2019-05-24 05:09:160ec8472ff812beb38dfeeeb0775199e4Virustotal results 32/71 (45.07%) 190.72.136.214465Heodo
2019-05-24 05:07:27b31fa9e849dbce7b3c7ba6496a2b78e2Virustotal results 18/61 (29.51%) 190.72.136.214465Heodo
2019-05-24 04:57:08b0124d71586fc57bd713c462f0d6f849Virustotal results 51/70 (72.86%) 190.72.136.214465Heodo
2019-05-18 12:16:2557c7d23c7e02fd98f97d2627a1722886Virustotal results 52/71 (73.24%) 190.72.136.214465Heodo
2019-05-14 00:43:212014187d7e64e1eeaa57d00428f8582aVirustotal results 29/71 (40.85%) 190.72.136.214465Heodo

# of malware samples: 9