URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bh49.webdungsan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-30 11:29:03 UTC
Total malware sites :1
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-08 01:31:30 75.2.18.233ac1a2ad24832d38a2.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-06-18 07:25:53 34.41.139.193193.139.41.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-06-18 07:25:53 34.159.223.4343.223.159.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- DEno
2025-05-07 06:35:46 34.132.102.66.102.132.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-05-07 06:35:46 34.136.111.8181.111.136.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-09-30 11:29:05 103.124.92.99Not listedAS131353 NHANHOA-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-30 11:29:05http://bh49.webdungsan.com/wp-admin/VDP2218Y7UB...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-01 05:57:4746a59f3fe0efcffcdfcd2c366c3cda5205ab4f7c79e6c11c1bac4ea7247906d5docHeodo
2020-10-01 05:37:15f4aeb1fb3ee7a1e47154bd3b5b2209626b73ca9812072ce7597fd191cc384e93docHeodo
2020-10-01 05:06:08bca937c5b07cf43a6469fae63640f655c5bbdacff9c671b53965974a5203c262docHeodo
2020-10-01 04:43:31bde7001edeb6f299d49c1bd80bfa2368ed58033c8a6f3da6fc35e3b77b6fb79ddocHeodo
2020-10-01 04:02:48b3776f674d9ce6db3d98ad056a43c66c185a8109320db88ec042c4224ff2d5ffdocHeodo
2020-10-01 03:41:39c37536624e100c6928618bde49c7c002a4795fe400199b57806f7e5a6bfb1c4edocHeodo
2020-10-01 03:37:382ce45b11fa32eb63d439d9a9faeda5a4bbf6739316516a3d5d9e3a3d9e44f0d7docHeodo
2020-10-01 02:58:122316491908b1b0175a9782d21fef85f16d29b5dd05d72c00c8dc943ee110afb4docHeodo
2020-10-01 02:51:39ccf93c2ab74f6f2f92abeba4a4ee4d1c5cf50928906b1793fd008b8284409e51docHeodo
2020-10-01 02:12:38bae61d952a3f4eced141514b551812240ae6ef483a185a834760c8421992f1e3docHeodo
2020-10-01 01:55:14bc473e3c095e5c8fc312b29ee596cfb5c7f89bd4795e09377e0a3258761b3c25docHeodo
2020-10-01 01:26:5987441c831ad7808d1f9a4fc6533c65071a13b9ef979ab68ffd24565426558597docHeodo
2020-10-01 01:21:141127939b95fc439579b8513866e2a50ebeb5657a717a1d6425d49782213b55aedocHeodo
2020-10-01 00:59:28d0b0c89fd70b604e0abda15a2af6e8d0fcef712db05d5b15705862e2dc1120f2docHeodo
2020-10-01 00:22:021065e6daa80b86a72a1d83d506754e2095355742ba0162e798a32fe05d39c265docHeodo
2020-10-01 00:10:231a4225aa9c57fb8c97a5859dc3d004a323c5a31ad17def4ea965f4ed6fb8dd88docHeodo
2020-09-30 23:48:15f7454110fc14b94a8de1a15f118873db33d5dff0040b860e7a74775a986c8196docHeodo
2020-09-30 23:39:5783528dd86f27eafffd6b8b9bc31bcd40ce046ae2f1eadc585ccc3125af320625docHeodo
2020-09-30 23:27:0122fe0364950c229cd81ec4900c5082c63179d87b3475e0ba2533f7d02d0a9658docHeodo
2020-09-30 23:08:5724a4f7d8cf601311928b7d9c78fd6067e4b6e6a47c641fbdc86703b0dd3f1ee7docHeodo
2020-09-30 22:20:4559218dd633aa6e55d901c1a8227ace241e21d80c34af6fbd4dd99400832ef122docHeodo
2020-09-30 21:49:5958cada3d143a20c1a566b797ab0871b4c7a6c143c0d51d22eeac95e24589054bdocHeodo
2020-09-30 21:04:42ace7c44fed1f38871ec370fc6b6c083e3834294d3f6430ffafce94847c4ac514docHeodo
2020-09-30 20:38:409cee1e4dc71831888865312ede140d40ea8091824bf6af5428fb7ecdce64ac4ddocHeodo
2020-09-30 20:19:44e92f158f2faa36f1af7c6995a3e4433ef891eb4dcfa6a15c6ad994527c01d680docHeodo
2020-09-30 20:03:099bd5e78a295d861307808771659e53c1312461fb22f61de2b49e870ff1d7ce81docHeodo
2020-09-30 19:32:5502198f1315ee82122a2ea1c3eca55fbe9a061bf7d75e9db6c7b0e49bbd7108fddocHeodo
2020-09-30 19:14:27b04512682b99769e9f703d6e0d527806605144a0c723b530c2467182ad6cd807docHeodo
2020-09-30 18:56:01b5b866b081ab5635245d905b5930119b2c6073f82ace246a7e96f888e383f5bedocHeodo
2020-09-30 18:33:58869d5b2082b0c1a89c5d21da9e33c8303d9b8dfc7d0eee88d7ef36e9cfbce3cddocHeodo
2020-09-30 18:03:217b88d7d16e92fe2b43237503e65687bab67b65fb283976f5bbaf6118da398422docHeodo
2020-09-30 17:44:2159dc761e6cc40f26f13153151345a32d29f02d5c200698531f5b0b62a133cf4adocHeodo
2020-09-30 17:24:4678c3d9c43524e6cad2289a2edef0f563b37f586414c83c73c0e57050d79f6f58docHeodo
2020-09-30 16:49:32531099fb2b364e3b25a4860725ed07bca198e56c1a53c47a7d2655cea71f9122docHeodo
2020-09-30 16:19:05630fcaa83e8ddecae338656e228ee0cc446a52ab96dc4b0ac86090ac7da136c5docHeodo
2020-09-30 16:09:19c69355e7d2f37fb8a04b2808e24c6abe076f296b1063e2fa5eadb435d4105da3docHeodo
2020-09-30 15:48:219bb6af66db7bc220db800f2603c9b7be39fc865d85a75d9ddfb7a2ac031b0d19docHeodo
2020-09-30 15:10:547f8d213072a938b3dec61b257ef1f7e16e73b1404964364f3c2bd1f7fb24a8f9docHeodo
2020-09-30 14:52:24bba8eee6c7052816d44796927ca6001f69f76e479ac041cf0331e13e167d0b99docHeodo
2020-09-30 14:24:51ccd09c9d5a3e23cf11d4573a5ce8d84c634f8cdcf7188378a94ab61d27544009docHeodo
2020-09-30 14:10:36ce437cd41adb6661b0e4389bcb5f69ac300b5e9c7fafe156dec9f8df767b625bdocHeodo
2020-09-30 12:52:11f6ed8a2b25a6f8f693aa0aa17e1a77c02888113452cbbb4efae319131fd375ffdocHeodo
2020-09-30 12:34:59c4d36a8bed7042aa9abc38d0883bc4e7916b275ffb51147b6ca9572e5fb496f4docHeodo
2020-09-30 12:19:39705815086d9b5ffb5a5ae923afbed8b2ca6166551fa3374e71e5feddb6430b66docHeodo
2020-09-30 11:35:44be1d469e7f434641202ffde45e666cd4b1d255814f8cbf344a3aff1e78e86768docHeodo
2020-09-30 11:29:05ce1d7fe9a715dbd5b408b17ff12010a67d3d1d002a9484370931304e35254f12docHeodo