URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: khoahoctiengnhat.ngoaingufpt.edu.vn
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-23 03:30:16 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-05 07:24:08 117.122.125.107speakers.vnnic.vnNot listedAS24066 VNNIC-AS-VN- VNno
2021-01-24 18:51:20 172.96.185.192172.96.185.192-static.reverse.arandomserver.comNot listedAS133752 LEASEWEB-APAC-HKG-10- HKno
2021-01-23 03:30:23 112.213.89.85ns8985.dotvndns.vnNot listedAS45544 SUPERDATA-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-23 03:30:23http://khoahoctiengnhat.ngoaingufpt.edu.vn/pyth...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-23 07:38:18526866190c8081698169b4be19a6b987d494604343fe874475126527841c83a7docHeodo
2021-01-23 07:24:5433c3b2856eefdb51dd0d8798ddaeac57d3a1b63fe1cf86732f08d2cc5b1b851fdocHeodo
2021-01-23 07:14:5357d7ff4664c6bffcb350211f1d9cbc272747c201c3c784fcfbab0f49c986f53edocHeodo
2021-01-23 06:59:013f67cebcc062ff44206ad6b1c356021133426bcb3a4070824b03036e36ba17cadocHeodo
2021-01-23 06:44:08e7ee687cd06e406cad317080de4ba7a41dc9bc8ee8f8a35c76003488b502dc5ddocHeodo
2021-01-23 06:31:47156db699149efcab714cb9f97ccef3b2179e9a3c53d20e6e0ad7e318e17ac1bcdocHeodo
2021-01-23 06:22:2328b78d04a0fa5ba6b6c3504f9d9a7664f16710d02d2e92be72e97f03ae3a690ddocHeodo
2021-01-23 06:03:24e3a0c8c17306e77db4fca51970cd0372508a59234fb62ae5e0cc6656e1fa5595docHeodo
2021-01-23 05:57:5810dc55d6131467b2ef53cc13475499dd9f34965a9c847672f707617fc6e2e6cddocHeodo
2021-01-23 05:42:42f44e4ec9321617fcdfcb91fa516a2c17f3d14fe21ba167f0db47e448fd37a0bbdocHeodo
2021-01-23 05:28:11d25637cf316cb6635d17034fb9bfe5334c47f0ef16cc18b178f1a74a48c9b178docHeodo
2021-01-23 05:16:2925f478a34fccb4ec1f646b9200c1e2a858b23019bcc5b7b82a9378297f13f73edocHeodo
2021-01-23 04:57:131d131a111ffcfdeda18316ead79206237e3684246c4cb6ddc191994737f0294cdocHeodo
2021-01-23 04:49:22bda05c4ef660a15d781f9d7c44415a119d2137f46a63b124b6a154e382ad7fbadocHeodo
2021-01-23 04:31:57a5e5efdf01f81fd9ba75a7f4a0f2ff53fc5f9f7b3edb6b80036f3add9d1b370bdocHeodo
2021-01-23 04:19:423e2601aa7c53742f621bec3989a72e0c2db710586817cfc0067b9557e7346935docHeodo
2021-01-23 04:12:38ac3a231f0035c95d710e53ec6dd86a4a915dc23b12238c4d118e7c2b656cad2fdocHeodo
2021-01-23 03:54:01bbefec31ea0c2301e8202d73acf49ca0d72f4a3b80b6a81836e49b1591d3d78cdocHeodo
2021-01-23 03:42:41a2d525c9bd8128160c64990fa84afc4da2bea8a72cfb4ca42f14cddac1343df2docHeodo
2021-01-23 03:30:2076aa5ad0c47b29855238c26ef7af65678803515eeda4ea34984871a644c45086docHeodo