Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 89.218.55.146. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:89.218.55.146
Hostname:mail.tsl.expert
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS9198
AS name:KAZTELECOM-AS
Country:- KZ
First seen:2019-04-10 11:24:57 UTC
Last seen:2019-04-10 12:17:23 UTC
Last online:2019-05-03

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-13 07:31:0761e25dde9bed5d53ae884379fa1df5c5Virustotal results 40/72 (55.56%) 89.218.55.14620Heodo
2019-06-13 07:21:0887c7365b2e6838e60b3df16f723108ceVirustotal results 46/72 (63.89%) 89.218.55.14620Heodo
2019-05-05 19:48:00e67f84615f411d067663aef2d68a3a26Virustotal results 52/73 (71.23%) 89.218.55.14620Heodo
2019-04-18 18:26:4189382703eaa44adfc87a5c7f5f1ac8ceVirustotal results 16/67 (23.88%) 89.218.55.14620Heodo
2019-04-17 20:33:2724d0c5553e83a24c5d72abc00723eb18Virustotal results 18/67 (26.87%) 89.218.55.14620Heodo
2019-04-17 13:52:127a91888b2f0dbe4faa97606ea10d498aVirustotal results 22/67 (32.84%) 89.218.55.14620Heodo
2019-04-17 11:10:384977165665c3d273c0d74eb32e9b47d9Virustotal results 25/71 (35.21%) 89.218.55.14620Heodo
2019-04-10 12:45:423ae0508f4ce5def6d59a09d46dda5825Virustotal results 19/70 (27.14%) 89.218.55.14620Heodo

# of malware samples: 8