Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 46.214.11.172. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:46.214.11.172
Hostname:46-214-11-172.next-gen.ro
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS48161
AS name:NG-AS Sos. Bucuresti - Ploiesti nr. 42-44
Country:- RO
First seen:2020-04-03 09:24:21 UTC
Last seen:2020-05-22 15:17:39 UTC
Last online:2020-05-23

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-05-23 15:25:1155e9ec132a92fa6d637ceb68b7c26892Virustotal results 28 / 70 (40.00%) 46.214.11.17280Heodo
2020-05-13 22:14:550d4ecacb28e5625387b0d1c13f04b55aVirustotal results 16 / 72 (22.22%) 46.214.11.17280Heodo
2020-05-09 10:57:44fb96691b020d13f8400b00f7f3b02b1dVirustotal results 10 / 71 (14.08%) 46.214.11.17280Heodo
2020-05-06 15:44:09e62461c64884b75b8e81eeb96c1044bfVirustotal results 36 / 72 (50.00%) 46.214.11.17280Heodo
2020-04-15 23:13:40bb2a91f3f05d34eaf664cd529b4f1660Virustotal results 42 / 72 (58.33%) 46.214.11.17280Heodo

# of malware samples: 5