Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 78.189.76.2. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:78.189.76.2
Hostname:78.189.76.2.static.ttnet.com.tr
Status:Offline
Spamhaus SBL:SBL460946
Malware:Heodo -
AS number:AS9121
AS name:TTNET
Country:- TR
First seen:2019-10-02 22:07:10 UTC
Last seen:2019-10-09 06:47:47 UTC
Last online:2019-10-11

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-10-12 10:22:31ef76aca8c684e77c2957087d33d12aebVirustotal results 14 / 59 (23.73%) 78.189.76.250000Heodo
2019-10-10 07:31:1350d787aaa4abe2fcbb8f4e1167085e64Virustotal results 45 / 69 (65.22%) 78.189.76.250000Heodo
2019-10-09 07:47:4359998a2a1c236bbb5bdffe04393b53f8Virustotal results 6 / 69 (8.70%) 78.189.76.250000Heodo
2019-10-08 09:11:253744fc38419fe0223b1d3d60f251e4e3Virustotal results 9 / 70 (12.86%) 78.189.76.250000Heodo
2019-10-08 08:39:50dae7825fb32d6332eca08a0819f309f9Virustotal results 13 / 70 (18.57%) 78.189.76.250000Heodo
2019-10-08 03:20:15b8f56a4dde68cf8932020f1cf7626e97Virustotal results 30 / 70 (42.86%) 78.189.76.250000Heodo
2019-10-03 06:54:03e85d4fce87870c5b8ae5537062846632Virustotal results 18 / 71 (25.35%) 78.189.76.250000Heodo

# of malware samples: 7