############################################################################## # URLhaus ASN CSV Feed # # Generated on 2025-12-25 13:30:41 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS4621 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2025-06-14 00:48:04","http://202.29.95.12/caine.exe","offline","malware_download","opendir","202.29.95.12","202.29.95.12","4621","TH" "2025-02-05 08:29:06","http://202.29.95.12/phpMyAdmin/test/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2025-01-28 11:02:06","http://202.29.95.12/appserv/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2025-01-27 22:07:06","http://202.29.95.12/phpMyAdmin/themes/original/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2025-01-10 06:48:05","http://202.29.95.12/spoiter.exe","offline","malware_download","SageCrypt","202.29.95.12","202.29.95.12","4621","TH" "2024-12-31 07:35:26","http://202.29.95.12/mis/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-31 07:35:23","http://202.29.95.12/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-23 06:28:06","http://202.29.95.12/phpmyadmin/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-16 07:49:35","http://202.29.95.12/mis/datepicker/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-16 07:49:10","http://202.29.95.12/mis/calendar/_notes/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-11 12:27:07","http://202.29.95.12/phpMyAdmin/themes/darkblue_orange/img/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2024-12-11 12:26:07","http://202.29.95.12/phpMyAdmin/themes/darkblue_orange/!HELP_SOS.hta","offline","malware_download","hta|Sage","202.29.95.12","202.29.95.12","4621","TH" "2023-03-14 23:32:07","http://202.29.240.37/bins/phantom.arm6","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:07","http://202.29.240.37/bins/phantom.m68k","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:07","http://202.29.240.37/bins/phantom.mips","offline","malware_download","elf","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:07","http://202.29.240.37/bins/phantom.sh4","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:07","http://202.29.240.37/bins/phantom.x86","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:06","http://202.29.240.37/bins/phantom.arm","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:06","http://202.29.240.37/bins/phantom.arm5","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:06","http://202.29.240.37/bins/phantom.arm7","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:06","http://202.29.240.37/bins/phantom.mpsl","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2023-03-14 23:32:06","http://202.29.240.37/bins/phantom.ppc","offline","malware_download","elf|Mirai","202.29.240.37","202.29.240.37","4621","TH" "2022-06-13 18:15:07","http://202.28.229.174/kik","offline","malware_download","64|elf","202.28.229.174","202.28.229.174","4621","TH" "2022-06-12 18:49:07","http://travel.pkn2.go.th/img/eED8dElEBxbU7MlIhOMi/","offline","malware_download","emotet|exe|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-10 17:24:05","http://travel.pkn2.go.th/img/G3c6NyCNP/","offline","malware_download","emotet|exe|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-10 17:20:17","http://travel.pkn2.go.th/img/C4knQEJ/","offline","malware_download","emotet|exe|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-10 17:14:06","http://travel.pkn2.go.th/img/MwwzbVxTTcVdyJ/","offline","malware_download","emotet|exe|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-10 14:22:05","http://travel.pkn2.go.th/img/opT3zJGQezPgK4e55T/","offline","malware_download","emotet|exe|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-10 13:33:08","http://travel.pkn2.go.th/img/AMqX1nFdEOnmk/","offline","malware_download","dll|emotet|epoch4|heodo","travel.pkn2.go.th","202.29.211.137","4621","TH" "2022-06-06 06:12:04","http://202.28.229.174/ap.sh","offline","malware_download","shellscript","202.28.229.174","202.28.229.174","4621","TH" "2022-05-11 06:18:04","http://202.28.229.174/so.txt","offline","malware_download","CVE-2022-1388","202.28.229.174","202.28.229.174","4621","TH" "2022-05-10 09:03:09","http://202.28.229.174/sys.x86_64","offline","malware_download","CoinMiner|CVE-2022-1388|elf","202.28.229.174","202.28.229.174","4621","TH" "2022-05-10 09:03:04","http://202.28.229.174/kthmimu.txt","offline","malware_download","ascii|bash|CoinMiner|CVE-2022-1388","202.28.229.174","202.28.229.174","4621","TH" "2022-05-10 08:59:08","http://202.28.229.174/curl","offline","malware_download","CoinMiner|CVE-2022-1388|elf|ua-curl","202.28.229.174","202.28.229.174","4621","TH" "2022-05-10 08:57:05","http://202.28.229.174/ldr.sh","offline","malware_download","ascii|CoinMiner|CVE-2022-1388|sh","202.28.229.174","202.28.229.174","4621","TH" "2020-02-05 19:30:20","http://uccn.bru.ac.th/wp-content/uploads/revslider/templates/medicare-whychoose/attachments/vo5zpc/","offline","malware_download","doc|emotet|epoch2|heodo","uccn.bru.ac.th","202.29.14.47","4621","TH" "2020-02-01 06:13:06","https://library.mju.ac.th/2018/CFjDEs/","offline","malware_download","doc|emotet|epoch3|heodo","library.mju.ac.th","202.28.38.106","4621","TH" "2020-01-31 19:58:20","http://uccn.bru.ac.th/wp-content/rfaa0u4/","offline","malware_download","emotet|epoch2|exe|Heodo","uccn.bru.ac.th","202.29.14.47","4621","TH" "2020-01-28 23:26:06","https://library.mju.ac.th/2018/zoipdun1a0/","offline","malware_download","doc|emotet|epoch2|Heodo","library.mju.ac.th","202.28.38.106","4621","TH" "2020-01-22 23:22:06","https://library.mju.ac.th/2018/mnnw0cr-ptv5a-370268/","offline","malware_download","doc|emotet|epoch3|heodo","library.mju.ac.th","202.28.38.106","4621","TH" "2020-01-20 10:25:10","https://library.mju.ac.th/2018/rn-72c-0657/","offline","malware_download","doc|emotet|epoch3|heodo","library.mju.ac.th","202.28.38.106","4621","TH" "2019-12-11 23:09:06","http://socdev.mcu.ac.th/wp-content/uploads/Qhj/","offline","malware_download","doc|emotet|epoch3|heodo","socdev.mcu.ac.th","202.28.52.21","4621","TH" "2019-12-09 21:40:05","http://socdev.mcu.ac.th/wp-content/uploads/6ylu-krbdiv8-D4ajRO8ph-KQOTUfH/interior-cloud/mshaan-5s4136248x7/","offline","malware_download","doc|emotet|epoch1|Heodo","socdev.mcu.ac.th","202.28.52.21","4621","TH" "2019-12-07 11:02:27","http://socdev.mcu.ac.th/wp-content/uploads/437262_C0C7NaR9f4Ez_array/verified_portal/aco83cl9d_zq1tzij3hv6yg/","offline","malware_download","doc|emotet|heodo","socdev.mcu.ac.th","202.28.52.21","4621","TH" "2019-11-21 21:27:08","http://jma.mcu.ac.th/wp-content/i6ggtbs-htbcgtg4g-78/","offline","malware_download","emotet|epoch3|exe|Heodo","jma.mcu.ac.th","202.28.52.48","4621","TH" "2019-04-18 21:37:18","http://202.28.110.204/joomla/legale/sichern/201904/","offline","malware_download","doc|emotet|epoch1","202.28.110.204","202.28.110.204","4621","TH" "2019-04-10 16:36:17","http://202.28.110.204/joomla/z25bxe-qazd8-xrgy/","offline","malware_download","Emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2019-03-26 18:39:31","http://202.28.110.204/joomla/3oa48-qo137-bltwgjh/","offline","malware_download","doc|emotet|epoch2|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2019-03-12 16:51:14","http://202.28.110.204/joomla/LiJ8/","offline","malware_download","emotet|epoch1|exe|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2019-03-08 05:30:16","http://202.28.110.204/joomla/k9ll-ygjf7-ylmy.view/","offline","malware_download","Emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2019-02-19 20:36:06","http://www.pattani.mcu.ac.th/wp-content/uploads/secure/online/thrust/file/LwV24zPKaLQnRHsiI/","offline","malware_download","emotet|epoch1|Heodo","www.pattani.mcu.ac.th","202.28.52.21","4621","TH" "2019-02-15 20:33:07","http://pattani.mcu.ac.th/wp-content/uploads/US/xerox/New_invoice/yOkVu-OX_qQVzLsP-QjW/","offline","malware_download","emotet|epoch2|Heodo","pattani.mcu.ac.th","202.28.52.21","4621","TH" "2019-02-14 21:05:07","http://www.pattani.mcu.ac.th/wp-content/uploads/US/xerox/New_invoice/yOkVu-OX_qQVzLsP-QjW/","offline","malware_download","Emotet|Heodo","www.pattani.mcu.ac.th","202.28.52.21","4621","TH" "2019-02-12 20:41:07","http://www.pattani.mcu.ac.th/wp-content/uploads/US_us/xerox/Invoice_Notice/5179098/jRUW-jVOF_O-am2/","offline","malware_download","Emotet|Heodo","www.pattani.mcu.ac.th","202.28.52.21","4621","TH" "2019-01-25 18:28:28","http://www.pattani.mcu.ac.th/wp-content/uploads/XnUjR-IDqf_YIllRQ-Q17/PaymentStatus/US/Important-Please-Read/","offline","malware_download","emotet|epoch2|Heodo","www.pattani.mcu.ac.th","202.28.52.21","4621","TH" "2019-01-24 07:27:21","http://www.pattani.mcu.ac.th/wp-content/uploads/mJxX-fv_mKFuWjr-ho/Inv/2635684539/En/Past-Due-Invoices/","offline","malware_download","doc|emotet|heodo","www.pattani.mcu.ac.th","202.28.52.21","4621","TH" "2018-11-19 19:40:20","http://art-culture.uru.ac.th/9710739M/SWIFT/Commercial/","offline","malware_download","emotet|heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-10-08 11:43:03","http://art-culture.uru.ac.th/9710739M/SWIFT/Commercial","offline","malware_download","doc|Emotet|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-10-08 06:31:29","http://art-culture.uru.ac.th/Sep2018/En/Invoice-for-you","offline","malware_download","doc|emotet|heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-09-26 05:08:42","http://art-culture.uru.ac.th/9614OGUFYQP/oamo/Personal","offline","malware_download","doc|emotet|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-09-21 07:25:33","http://art-culture.uru.ac.th/28213PWSA/identity/US","offline","malware_download"," doc|emotet|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-09-10 15:41:49","http://art-culture.uru.ac.th/c3Dz1nQe039D/biz/Service-Center","offline","malware_download","doc|emotet|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-09-05 04:56:19","http://art-culture.uru.ac.th/621ZLF/WIRE/Personal/","offline","malware_download","doc|emotet|epoch2|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-09-04 19:11:12","http://art-culture.uru.ac.th/621ZLF/WIRE/Personal","offline","malware_download","doc|emotet|Heodo","art-culture.uru.ac.th","202.29.52.73","4621","TH" "2018-08-25 00:16:36","http://202.28.110.204/joomla/663591SPA/identity/Personal/","offline","malware_download","doc|emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-08-23 06:24:31","http://202.28.110.204/joomla/663591SPA/identity/Personal","offline","malware_download","doc|emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-08-21 14:43:02","http://202.28.110.204/joomla/xerox/En/Scan","offline","malware_download","doc|emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-08-03 05:19:10","http://202.28.110.204/joomla/files/US/Payment-enclosed","offline","malware_download","doc|emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-08-02 03:30:05","http://202.28.110.204/joomla/files/US/Payment-enclosed/","offline","malware_download","doc|emotet|epoch2|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-07-16 16:49:04","http://202.28.110.204/qr/Rechnungs/","offline","malware_download","doc|emotet|epoch1|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-07-03 05:47:12","http://202.29.95.12/axel.exe","offline","malware_download","Sage","202.29.95.12","202.29.95.12","4621","TH" "2018-07-03 05:47:10","http://202.29.95.12/spoitor.exe","offline","malware_download","Sage","202.29.95.12","202.29.95.12","4621","TH" "2018-06-21 12:52:16","http://202.28.110.204/joomla/Order/tracking-number-and-invoice-of-your-order","offline","malware_download","emotet|Heodo","202.28.110.204","202.28.110.204","4621","TH" "2018-06-21 05:35:25","http://202.28.110.204/joomla/Order/tracking-number-and-invoice-of-your-order/","offline","malware_download","Heodo","202.28.110.204","202.28.110.204","4621","TH" # of entries: 74