URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: luatsukiengiang.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-10-04 07:47:04 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 21:15:59 172.65.190.172Not listedAS13335 CLOUDFLARENETn/ano
2019-10-04 07:47:06 210.245.90.232Not listedAS18403 FPT-AS-AP- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-10-07 07:30:37http://luatsukiengiang.com/demo/3w044meix2_d7e9...Offlineemotet ext epoch2 exe heodo ext Anonymous
2019-10-04 18:07:07http://luatsukiengiang.com/demo/kc2yis5j0o-ogx5...Offlineemotet ext epoch3 exe unixronin
2019-10-04 07:47:06http://luatsukiengiang.com/demo/f9ooyn-5gaxez9-...Offlineemotet ext epoch3 exe heodo ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-08 20:27:21108dc570ca53f3c58723bd9ccc4a9ea521e2f160d658c5ce09fa6ddc4e87afdaexe Heodo
2019-10-08 15:55:16e3f941f1ac56fd58b6a11081aa33e46d27e7795438511f71a92e73b96f464ae6exe Heodo
2019-10-08 12:25:22308b8072ffc142d8aeb9e53d05f7c0a77da0ccc9cefbcf306794afaf70775fe8exe Heodo
2019-10-08 08:47:19daf460173fb28788aff06ec8e766d4d58f39819b870ecfc7c9061c8a4cd3504dexe Heodo
2019-10-08 06:05:18ae694cb80da86747b4cd4209dfea162635679c00fe6bf81c5d4a9ea15df18fdbexe Heodo
2019-10-07 20:51:13bba060e5e798cb68bfdc07b04d045b0aec12dbf427593c9643b7a22403138340exe Heodo
2019-10-07 17:32:1116d007d650d117c68da005747378f16cebe820e75a2565be70602fad2cb6e1feexe Heodo
2019-10-07 13:04:1210437ba864b8d797419eeaf8d99717aaf2a96499f375d9ee2903803c0a5908e6exe Heodo
2019-10-07 10:12:1126e6336dd5210c84e4e64f6590d7169322886591fde13fe158cd310305ad4f7aexe Heodo
2019-10-07 07:30:374cc2af78a3fdbfb10a78bdaeb14fd8ce7b697905b9a3a595c868fcd458c66285exe Heodo
2019-10-04 15:10:161c32f6366e4b2c472479378eba9549307b81cbf61edcb2ee80c601937e70e3c5exe Heodo
2019-10-04 11:53:36e34221ff87593fe38573d3c0d4881cdfa0a7cd98e81d752672baed18b2d378e3exeHeodo
2019-10-04 11:07:189bcc2390b0634fb44c6e20240ccbc088668e9cdf96f3e295473ed335c1ab2385exe Heodo
2019-10-04 10:04:52597a638d54584622e033ea66b85165e589e79ce1d02b1dbc20e9b9bbcc5daa45exe Heodo
2019-10-04 07:47:059936d47b871ef345ceca55fd54205ca0d420c581fecbd96c1d6cf98a25d62005exe Heodo