URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: demodongho.webdungsan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-30 01:21:10 UTC
Total malware sites :1
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-04 22:17:02 75.2.18.233ac1a2ad24832d38a2.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-06-18 11:26:21 34.41.139.193193.139.41.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-06-18 11:26:21 34.159.223.4343.223.159.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- DEno
2025-04-30 00:38:45 34.132.102.66.102.132.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-30 00:38:45 34.136.111.8181.111.136.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-09-30 01:21:12 103.124.92.99Not listedAS131353 NHANHOA-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-30 01:21:12http://demodongho.webdungsan.com/wp-admin/Docum...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-30 16:18:25a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47docHeodo
2020-09-30 14:53:4763d11b10d793151af69aa10ba45dcd9de40ca61834d018e42474786090043655docHeodo
2020-09-30 14:34:3974824146908abe5c7caad5b6c9c7f86a6aa087b0422fc5066abd490ae864f456docHeodo
2020-09-30 13:59:2589184bca1106ed62901477bceef09ee282bceca404d17c44630544fdd803cbbfdocHeodo
2020-09-30 13:44:53087b9ff622ebe92583a05a548a41b6384ca243ee1e54af69e35281cc16c6ee83docHeodo
2020-09-30 13:02:4505917a3d7daf2bc7de49c374fe7ec364e19f2aa1b60480a666ed224053f0fe1ddocHeodo
2020-09-30 12:42:27efa9c669d5b042ca0892a07861b3f039c3d61f0fa89c57348ee5058445f2db1cdocHeodo
2020-09-30 12:22:46f5e365e70de80b2c17172db5e9c99d037fe2d025161e0c78d7665734a2d108f7docHeodo
2020-09-30 11:51:489486db0aa8a33c286279563cf621d35b2509967587d82ebd13c2512dce68f231docHeodo
2020-09-30 11:39:351d5daccb3ffdca9e417370c654eefb0f6a0b2c3de51d7ca751c676d623cd57bcdocHeodo
2020-09-30 11:12:03cdc88da9dc92cd4bbf8e6de747dd552a54b99dce8dfc68b79373710fc7938e52docHeodo
2020-09-30 11:03:31a4ba9b07b2355a1be394ecf01c4d26aae440491439fa0db4e7905eaa82a79e81docHeodo
2020-09-30 10:46:46a5bc68599f8ed3a4cdd8e4894aad9cd9fa0753278b8a44af04debb277960d44edocHeodo
2020-09-30 10:10:49a8dae6d86f2ae529335810a70a6f959f195bf9fd10f2ade7549334ff2767cd04docHeodo
2020-09-30 09:29:14e001efbf2686566c49c1a6428a0d6574deeae2c830622f40f5cf6fd46c6d8654docHeodo
2020-09-30 08:59:196b28e785fb139d9950f37bf989bed92089e9f22d3160a16699b2fc8b0d3500efdocHeodo
2020-09-30 08:48:29dae3de0260b268fd89734a96196759e0a878835e38a868db1ec44194c212e1f0docHeodo
2020-09-30 08:07:3019377355e91331d5f2438275b1af46c6f266bd250c9e6a421feb6deaa86f7caddocHeodo
2020-09-30 07:42:46897b5043fa3f5453de07db0c956147c5a3eedaa6c2d83bd50b5da2b033da51dedocHeodo
2020-09-30 07:35:228cc454cbd44284ac4a4b398e7fb7e8ef64466cb44537458d884f54fea7d6374ddocHeodo
2020-09-30 07:18:208e31afb89d4b0d827dede24be0d862b7e6ee93b5726a90722e3d29f493922546docHeodo
2020-09-30 07:00:380008ec3cdaed6559d71c8368c3edff8fd35d8f85816c950e8a8cc049ee6bc812docHeodo
2020-09-30 06:23:560c169d8b50436ffcfc67dc75e5a8534829a932697bf5e79107b4ecc423e227f9docHeodo
2020-09-30 06:13:317a824b0902c4e58a3bc225caede89cabfc440904f63680f791b4a6421f1500c8docHeodo
2020-09-30 05:53:59fc6f0ac3e38b970866e30342911b1f72bc2a028a33a093badc8c5694321d5808docHeodo
2020-09-30 05:21:368c898e6465f4f641ea5dc6095375eb50772f4b2d7b0d50f197f74567af847cf8docHeodo
2020-09-30 05:03:43d0ce4cd7cb0a84604bbd7f40f0aa48a2f09e21fb9eb3d4b72d64cf88790f3081docHeodo
2020-09-30 04:43:53c648f66670c65dcb17a1ec6a90617481190da0ff1eced41135b2435893b66c22docHeodo
2020-09-30 04:12:16f69c957e912e4eb54ca00ba379a5808d47ebcb4667393b4b986d2d50ee35e7b6docHeodo
2020-09-30 03:49:413d322e72fd831b7624674c0a9ed650c75bf0cf2d05e5c2dcf7746ee4187260b3docHeodo
2020-09-30 03:31:55010d313ef5a6680acc6fcdaca0eed3e19f256a23cac861684466d6e7f7138030docHeodo
2020-09-30 02:57:5842c1f3bb9e1fae138c02e1447a93ea34c9c4859fca0078bdd3ea01145c4ed12bdocHeodo
2020-09-30 02:34:53d8f8b40e6c0fff5344fce0199e4fd683f50bc846af26963d53ea1554aa202e61docHeodo
2020-09-30 02:18:038d0311de9248f3fc0efd38e822a2d51fb26ec893e9cef6a0f81a2c2b2ea62bd6docHeodo
2020-09-30 02:06:35cf47fcf596bf3abee5508f311666cec1399ab7e9b1f1632056db94a3e3a54468docHeodo
2020-09-30 01:35:598649c9f23563646d5b0033bb729307388ddb4396da639cbf0385c08ec0a01cffdocHeodo
2020-09-30 01:21:12c23dbe57bf9ad222746ad89939427a3fec7c2b13f26a03922e9450f6d07ea0cddocHeodo