URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bocnemdanang.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-29 15:47:04 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 23:21:01 103.221.223.39Not listedAS63760 AZDIGI-AS-VN- VNyes
2020-12-29 15:47:06 103.221.220.216Not listedAS63760 AZDIGI-AS-VN- VNno
2021-04-26 21:32:34 112.213.91.61mx9161.superdata.vnNot listedAS45544 SUPERDATA-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-29 15:47:06http://bocnemdanang.com/alfacgiapi/olnMao0HGVTk...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-29 23:37:342ac4c55baa15d3719031c845766adf59717598fe67e7434f595f28120c916528docHeodo
2020-12-29 23:27:062527707f508b47e4031c1bf43ad94b728ab6a4847c208dd3f7e592ed49d36f6edocHeodo
2020-12-29 23:02:29cb5d63f90240367ececfe0c32a70c72082527a0040fe434a6f463bd4574d4157docHeodo
2020-12-29 22:43:19cf47feaaa13dd8578065c7ff33e3b1f716e4b71f679b8fe7d10fd33cf1ca8b70docHeodo
2020-12-29 22:27:185ede6ac6d693be37c6eccad46485cb39e33d1cd99649329d0424215f3d404cc6docHeodo
2020-12-29 22:13:29d6480e873d81be6637d3ba474138b40d9773c0d9294fc530019ed6f3d1fcb1d5docHeodo
2020-12-29 21:56:46e7fe9ca43e289dc2bd9bf4266a4626a9383a283009072a247ecc6c1f84c45e0ddocHeodo
2020-12-29 21:40:2613d0f6d6781f118733432842c8144f7e2470b4afdb146cb9312dabf5a2b797fedocHeodo
2020-12-29 21:27:57d61737a9f3206f943c7569e31f9ce318fc7f361f86b01309bc476a1e2c7571a0docHeodo
2020-12-29 21:17:07c646ad33be355d18204f947f227e88997569facb081f5a09a9f0b82c5127dafcdocHeodo
2020-12-29 19:20:10eb762ceff6eec6519ea345df6e5eff8b01a57f121c2a12ae7c3b8a379df36691docHeodo
2020-12-29 19:07:09a4054bbf81bc4f704dc9ee14d6f2e5df7b22f91edcd2fb569c14c1fc82064bdadocHeodo
2020-12-29 19:01:057d77b9454a806c93be95b1d074c15973e31b0b0c91b3c708d4202c88b9e09dacdocHeodo
2020-12-29 18:47:554ce448dc3c0b2a786f0f0de325a7955364c6b13783c5dd27f2f721496bc783ccdocHeodo
2020-12-29 18:30:31bebd8b69fdc463522ae3279b65b75959d443315eb96d862429b1aee2c217c8c0docHeodo
2020-12-29 18:15:38abff62bfa148c0606f2b0f545934c0ddaf4b00cc13c5f3c051a22f8d53b089eedocHeodo
2020-12-29 18:00:27d1b055f730d56fef75cd826b96c669e9aa16832079dfa132b8a1e4ef76e2351fdocHeodo
2020-12-29 17:49:389fa52c70fcab1c705956b5dce3f72bf83251745b40bfee40f746d15ba50f1f74docHeodo
2020-12-29 17:43:48494a26f5709a52d89db5822a1418d544fd4aa3f9e2e051ee517f2ad32432592ddocHeodo
2020-12-29 17:32:327e3a0828f54f87c238b13d6aa6de650da7e32e1309211ff09fd9113646454428docHeodo
2020-12-29 17:14:232b998037b5b5525e6d7db5d1ee65710a4d25ffdb4a0082b76c2a58a58ed70b74docHeodo
2020-12-29 17:08:36976cbb476135bec88e0c027ca567bece0feb9f03a777d1ff0d0be97288df5068docHeodo
2020-12-29 16:46:355e4eae5b36795c653f766853756f64d8b52ae90fb156eff926aa40f2540239a6docHeodo
2020-12-29 16:32:07e1b4b9220e75c5eeb36a17070699eff10144d4def48bfbed1c5698447740ea48docHeodo
2020-12-29 16:22:389e8e9da79ceb229ae85c9db0b90211541c80c35d6b07b45031fbbed646bff3b0docHeodo
2020-12-29 16:04:54124887797dca2ad4d4a16a53439033033cdbec96a28b5ee788dcef410b4a42bcdocHeodo
2020-12-29 15:47:05f6b6fffe0fe89481910e5173abb556c5fbd9e6e8f9006bc12e27fe996c9358ccdocHeodo