Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 27.78.27.110. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:27.78.27.110
Hostname:localhost
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS7552
AS name:VIETEL-AS-AP Viettel Group
Country:- VN
First seen:2020-11-06 20:00:28 UTC
Last seen:2020-11-23 18:59:28 UTC
Last online:2020-11-24

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-11-23 22:32:189a027d855a7018a087d94fc4ebe962dcVirustotal results 33 / 72 (45.83%) 27.78.27.110443Heodo
2020-11-22 00:56:498dd69f02f5cef8a5fca1bde4ff3de90aVirustotal results 45 / 72 (62.50%) 27.78.27.110443Heodo
2020-11-21 03:18:40a0f58affd6fa1d0e9e6b05bed7661cc3Virustotal results 42 / 71 (59.15%) 27.78.27.110443Heodo
2020-11-19 05:50:18a94c53eb3ecb77f93f3e22368938669dVirustotal results 35 / 71 (49.30%) 27.78.27.110443Heodo
2020-11-17 16:02:450b76ec1f0448190ab68e34b5290505c3n/a27.78.27.110443Heodo
2020-11-17 13:14:447fd742aecb8f32aabdf2035dca7b3a87n/a27.78.27.110443Heodo
2020-11-17 13:00:417063658b6be4ab99edb99a4495ba39a4n/a27.78.27.110443Heodo
2020-11-17 11:36:551488569fc3a7d7673dd0328c2bed49b8n/a27.78.27.110443Heodo
2020-11-16 06:59:30e320c9dcc1512107fc6bc5e8b71d27d3n/a27.78.27.110443Heodo
2020-11-16 06:45:59c58bc072464c07f731975ad4121dec77n/a27.78.27.110443Heodo
2020-11-16 06:33:20b03e1dfd0c34abb419e35e31eb9eeb8dn/a27.78.27.110443Heodo
2020-11-16 05:51:1964d563ea26e536b1d826dd022650cea1Virustotal results 31 / 72 (43.06%) 27.78.27.110443Heodo
2020-11-13 16:22:57233aa37ab86d33eac570aff82c8dc400n/a27.78.27.110443Heodo
2020-11-12 16:23:36f7e4f0871f8f6aaa8d795646f8f84c5en/a27.78.27.110443Heodo
2020-11-12 16:18:45ec1d935f8661edd1e742a618c8c2d3a9n/a27.78.27.110443Heodo
2020-11-12 15:55:47caf5233027e430b3f804ee861748d797n/a27.78.27.110443Heodo
2020-11-12 14:34:1801513f75ff328c6efd1c3b5d3b345adan/a27.78.27.110443Heodo
2020-11-11 13:04:37e4d2b28c3984bdbf763a93cec0b69185n/a27.78.27.110443Heodo
2020-11-11 12:16:179665ca7d7b88e014f37f99fe154d8903n/a27.78.27.110443Heodo
2020-11-11 11:33:4654962b5efe315f58c48e2e6d0b686ef3n/a27.78.27.110443Heodo
2020-11-11 11:22:3523dc4aa9deffcf0b8b0903de7966e81bn/a27.78.27.110443Heodo
2020-11-10 06:28:559befe7c7216e36cd1577884f299a695dn/a27.78.27.110443Heodo
2020-11-09 22:14:2231803c6991a53ac51238b0ac72889e0cn/a27.78.27.110443Heodo
2020-11-09 21:30:5676e097f544586ada885d18e2353b6a1en/a27.78.27.110443Heodo
2020-11-09 07:58:41dd9742166aa6537730ab1b4acd30b7a9n/a27.78.27.110443Heodo
2020-11-09 05:02:50c51db28adea3fbf6aac055ba3eb07ef4n/a27.78.27.110443Heodo
2020-11-07 01:17:116f2afb91c5885512ba6b185f8a1c49ddn/a27.78.27.110443Heodo

# of malware samples: 27