URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: it4work.com.vn
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-14 10:28:33 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 03:46:31 119.15.161.241ci15.161-241.netnam.vnNot listedAS24173 NETNAM-AS-AP- VNyes
2020-09-14 10:28:36 103.226.249.212Not listedAS135905 VNPT-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-14 10:28:36http://it4work.com.vn/f4cwa5z/Overview/swybz856...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-14 19:39:059f0ae988efa45dd5a31b192546bb881ebbf6b50e79bf2da69fa2256bbf4d845ddocHeodo
2020-09-14 19:06:32e1bc3bae87aa0a48be0f3828171ea815daa1a2f96a613cb7570907068bbd3dd4docHeodo
2020-09-14 18:47:188bffe2b8680500569488a5d758d2e9bd38112150a1897e88d03a94cba11c23f3docHeodo
2020-09-14 18:29:55894bb7216efcd37908b4ffa39eaee5a09c5a3c264cdaddb5918bfbb9e7b65860docHeodo
2020-09-14 18:23:38d0aad7574a29f26aa7b13b0d9ee67b527c0e4dfc5275c0a8e28e000adad26297docHeodo
2020-09-14 18:13:47968f255a72c41d86299b48628eb79d831741596e1383081eebaf08810ecaacdedocHeodo
2020-09-14 17:59:5818a08bfde32fec48dd39f4ba41cd7449d4169cd9252a6dcc077cd7fdca819191docHeodo
2020-09-14 17:35:43db5dc06cd13c8fe3e12b314bae4c8be7651a26ed861eecaac0e79a8f8bf0ef43docHeodo
2020-09-14 17:10:523e64b6ff86edb967541e4c0b1dc3667ccbd807e99af91d16f9682597b1352ee1docHeodo
2020-09-14 16:55:11875aadb39437a5366487bf9232ad64eb3d635fae59449e241d84be3133ed2a44docHeodo
2020-09-14 16:40:36a3f6b39e72cc5764544ad0f6abcdddcabce1f34999a2d78268a80c5b4f8546f2docHeodo
2020-09-14 16:28:08c337bb16756fc3e3e080c725f6b9f3835b7277c26e3c9203be11189c6dae201ddocHeodo
2020-09-14 16:16:52a153e7d47a196c8848cbd1aa6b81d15adb43a1cc0c6402dca515ea34723c0ca9docHeodo
2020-09-14 15:53:0065af960efb522275c12cbbc2902476854043df45ed96b435103aedcef02eecbedocHeodo
2020-09-14 15:37:05e4a9024be2fd969f3d64de3bcff992a2d29ad69e823b5ed145c96a395a013e19docHeodo
2020-09-14 15:15:17cfcf57cba19a0007077044365e06c2d6adb3e658011379a7e16796b25072d391docHeodo
2020-09-14 14:41:116c582c81ef9f686301cf1a663938a08c6f793a3f45403b3d4d87da94d5eefc00docHeodo
2020-09-14 14:26:282762b832d1111457d6402af3d53a4f516dd99507d963614d4bdc48855dc057c1docHeodo
2020-09-14 14:05:1055893c0cc8ef597e993ef13a63a900b29c09d7903bb693d3a0ff3f77b917eecadocHeodo
2020-09-14 13:38:0342c4b1eb39af3f83f49c39994431eb0a042d94a008313cdaf1831db93c45cf5ddocHeodo
2020-09-14 13:30:1121bdbf6ef88670da6f32d97e4d4d1ddaad79bbee1a8d10d476ef78b5a63e14b3docHeodo
2020-09-14 13:16:27358777fc6c34cc75ebc7d92ee6c2bd0b29eaf38c4a215fc317e920ab0f60476fdocHeodo
2020-09-14 13:06:05c2e8f7c925f56e68086ee279048349eaede27f3cff8aea65d4298610fd97a3d9docHeodo
2020-09-14 12:32:4135087d749d504d6fcc9959894bd3cec2ff4aed21cc086ec8f4b945dc25e0ceb3docHeodo
2020-09-14 12:29:51fbb786eb4a0f0a9ecf9da92977d330921554d0c4cbdc1218de3641c9a9a16933docHeodo
2020-09-14 12:05:4911cc4036d50f7e705e15ad8d6b14813b0f328d9e14d31aa6ca51ba7e13fd4f4edocHeodo
2020-09-14 11:57:16bed57dded8f474e1685273acb47e279b76b699d0e2c44ac0f299ee924329f3a1docHeodo
2020-09-14 11:47:46098897d4d3c482f9c893a2e5e57a45d28eae55a43d34b828145c427ec86d8145docHeodo
2020-09-14 11:18:31dc1c646e606fba7effc8189aa637674fb80c79e6227bf2751b9d734372e9dc29docHeodo
2020-09-14 11:08:2986499f4888585de10a1b85f63ecf6af52670ec0819b7387470d9d2b2f5610ae1docHeodo
2020-09-14 10:28:35a4382cf56e05d13630c7a129db107238817296f692f1eecf1822c8570b7cb51bdocHeodo