URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ngoctugroup.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-04 18:23:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-02 03:06:09 104.28.157.198Not listedAS13335 CLOUDFLARENET- HKyes
2025-04-28 01:53:23 150.95.109.197cda009.secureweb.vnNot listedAS131392 RUNSYSTEM-AS-VN- VNno
2021-07-27 03:45:33 103.224.182.242lb-182-242.above.comNot listedAS133618 TRELLIAN-AS-AP- USno
2021-08-03 14:56:32 170.178.168.203becrawl-show.flatreutic.comNot listedAS46844 SHARKTECH- USno
2021-08-03 17:57:50 70.32.1.32ip-70.32.1.32.hosted.by.gigenet.comNot listedAS32181 ASN-GIGENET- USno
2021-05-16 00:08:25 35.240.224.208208.224.240.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- SGno
2021-01-04 18:23:07 210.245.90.206210-245-90-206.shared.hostvn.netNot listedAS18403 FPT-AS-AP- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-23 00:18:09https://ngoctugroup.com/wp-content/RkIbwmIKHanf...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2021-01-04 18:23:07https://ngoctugroup.com/wp-admin/y3zQQDx9FaYb4xx/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-23 07:42:37526866190c8081698169b4be19a6b987d494604343fe874475126527841c83a7docHeodo
2021-01-23 07:10:0057d7ff4664c6bffcb350211f1d9cbc272747c201c3c784fcfbab0f49c986f53edocHeodo
2021-01-23 06:53:03d748bb7a8d447b8bbcbea5a3d20a404351c3ea3dacc3f332a41f44f138be5320docHeodo
2021-01-23 06:49:02e7ee687cd06e406cad317080de4ba7a41dc9bc8ee8f8a35c76003488b502dc5ddocHeodo
2021-01-23 06:36:15156db699149efcab714cb9f97ccef3b2179e9a3c53d20e6e0ad7e318e17ac1bcdocHeodo
2021-01-23 06:18:28f967919221798935016821892199d1eaf45960045a79bf0ecb89297edf4d4cfcdocHeodo
2021-01-23 06:03:11e3a0c8c17306e77db4fca51970cd0372508a59234fb62ae5e0cc6656e1fa5595docHeodo
2021-01-23 05:52:1810dc55d6131467b2ef53cc13475499dd9f34965a9c847672f707617fc6e2e6cddocHeodo
2021-01-23 05:42:21dcfb145c4f46a072e988cdeafc065f8116dc3b27d6bed447024677f3ea2f252adocHeodo
2021-01-23 05:32:35d25637cf316cb6635d17034fb9bfe5334c47f0ef16cc18b178f1a74a48c9b178docHeodo
2021-01-23 05:17:0325f478a34fccb4ec1f646b9200c1e2a858b23019bcc5b7b82a9378297f13f73edocHeodo
2021-01-23 04:54:581d131a111ffcfdeda18316ead79206237e3684246c4cb6ddc191994737f0294cdocHeodo
2021-01-23 04:43:45bda05c4ef660a15d781f9d7c44415a119d2137f46a63b124b6a154e382ad7fbadocHeodo
2021-01-23 04:39:0824093743cc1b5882bb6b43c3712d06a13dad73e41f2c95f44d71286d515a1120docHeodo
2021-01-23 04:25:20a5e5efdf01f81fd9ba75a7f4a0f2ff53fc5f9f7b3edb6b80036f3add9d1b370bdocHeodo
2021-01-23 04:11:31ac3a231f0035c95d710e53ec6dd86a4a915dc23b12238c4d118e7c2b656cad2fdocHeodo
2021-01-23 04:02:09c8772e6f063119876caf953c8fd7fab91d44c31fae432266a35b9cb66233da92docHeodo
2021-01-23 03:42:190d95efeb799d69a27255270804aa8efa5e91cd71b55943e37e88e772c961bca2docHeodo
2021-01-23 03:33:2676aa5ad0c47b29855238c26ef7af65678803515eeda4ea34984871a644c45086docHeodo
2021-01-23 03:16:27dc1657890758c8563c82d9c1bdb8aa05bc4c965868247d1ac28334925e1fe12cdocHeodo
2021-01-23 03:08:2888b4e1657c14287bb263fcb0ed92b0b58b294c9b6e822cc1dcd152e08346dc5fdocHeodo
2021-01-23 02:55:35e621537a061ede5d0f947fecfccc7e9568fbc21942c2b64801138b227e4f23e4docHeodo
2021-01-23 02:34:28843ac5a5070a8f77eeb150cf7963ea5a66dd5763b0e3ac3d775333219fa5b773docHeodo
2021-01-23 02:22:343b8c1a7288a8940c4785141389d323f7949b9639ca7821ebad1fc2182a2acf58docHeodo
2021-01-23 02:12:10d926e60d6b78f6b07a61842aa31c25077849e0921bbb8c454900a6b1447427c0docHeodo
2021-01-23 02:03:44d24e032bf95e95b0c1325688cb50b3eab851e90b9350f1a031668dd2bbfac3b6docHeodo
2021-01-23 01:40:2356e78f5aeb76d3b2002f79b51c0344a1bc95e0c171a56f5e7bae43028543e1cfdocHeodo
2021-01-23 01:37:1820b1f1c932f9ac88685c65ca2ed2d57ba42e6cc5d643c567fbff933e64e09797docHeodo
2021-01-23 01:19:591e6cf8d2575be1847bd2c4e53b2686b8346c940c315c68f3dcabe5fc53802dd8docHeodo
2021-01-23 00:58:39f2f810ac8d53caf7b5ad3fa8566ed61610f1ef80b7a9ef571b9bd112ba745909docHeodo
2021-01-23 00:43:44d02c5f5315f50e3865102448adebb8353c06fe90d4c08ed09cbac7572a83076fdocHeodo
2021-01-23 00:30:229fab5bfdf6aee085fdc28360f1a5473f5ac94a97722377c40c572e0fe20cd9b8docHeodo
2021-01-23 00:18:09d5da4dc5a6a3fc416aca8ffbfaa3b6cb18a1efd11b94eb7f40a584fd96813f8edocHeodo
2021-01-05 01:47:3438d17dfd9fc5d7eb04a6ed019750022081fd13b253d0eb08d92fd9109815ec52docHeodo
2021-01-05 01:38:558488d087b6010876c2aef93e85bcd715e0698b8c09e7c58e31a655b3c4860f4fdocHeodo
2021-01-05 01:21:33401e09065cc4fe70319e8924de8ab2ace957de8a65a2a1ac15330fdfe2f9c092docHeodo
2021-01-05 01:17:32f1ff8d81d84d73a186c72546b5efdc3abd4f4a91243d0f2bb537cc1418d8bdaedocHeodo
2021-01-05 01:05:21773a15b11264f83c09890cedbb7aedc943a30430f5b355d38e5625f2ebd3fb8fdocHeodo
2021-01-05 00:47:47269b7e9055041b22adcfd3f3d1d0a4711292eb08c8674a535071c2ccf27a31fddocHeodo
2021-01-05 00:42:4078e661214ba706c2776e03b8bd53e16ae8c2423a80ad63f16ad5f2436817f5b4docHeodo
2021-01-05 00:31:0963162fe833789ed99b85cf9524ce3254d7f676c2a187f7e2c2ecd23ad59ac5c0docHeodo
2021-01-05 00:18:25dd827cfba8fdccb5a71c530cd9d1711b0d01c1fa3933347d729ca9fb3d4bd98fdocHeodo
2021-01-05 00:02:393a7192ae0a86e22de203cd0bd9c3b2ddae45e918207d4ad84f4cfe6b1d975c95docHeodo
2021-01-04 23:48:52bf2f59ecb85a6029a908bdf90f5dae875e68196bf1987cf72959bd568355c702docHeodo
2021-01-04 23:35:179e43571bf7a712feb6f6f6f2dbbef7876ee0a5895f2219bb76775b6809d98f09docHeodo
2021-01-04 23:22:42c468614a769e571b1c2ca14280030b4c2ba662c84c293f1c8eba3013acedb1dcdocHeodo
2021-01-04 23:18:210daffdebae76adc451e7450a0655b6cdb1755cf372b24c67e462531a3a535469docHeodo
2021-01-04 23:07:005f524f83210cb14f613d46f3f38da1d4986603056494361ac8ae9386e92a678edocHeodo
2021-01-04 22:47:34a5510a203c4d4cc423b2e4a321e9e2fd2a9b9afa62195780841d60cda74614afdocHeodo
2021-01-04 22:34:4770364c0d02f4a1d61a76caf33b3c7b6349e382fc465685ce6ff04f6b1f422b1edocHeodo
2021-01-04 22:24:54f5e030f99b3221f7b2d8b52bce2b0b913b2d183c3f7bd5016bd17ddbfe0be793docHeodo
2021-01-04 22:05:21335244fcbcc6009ad28d75a6dfe0349e05900474914247fa1170d8aa92d7e988docHeodo
2021-01-04 21:56:5017c93d81b95f2b725804776e87495cb9c024cd0c25c389dbb1931bfe5b335824docHeodo
2021-01-04 21:45:423d566983c8d1eebeb69ceafa423e493e04f3ca7fa686084e2c2e064a363a9d07docHeodo
2021-01-04 21:37:5259d432f6a9a6ae545627150d20e18ee5b8184da41df3aba0397cb1868cc3b618docHeodo
2021-01-04 21:23:563d21a5365d2e1f9d0e3d3e86dda15dc5ad052808764acba64fd1bdeb9ec0fcf7docHeodo
2021-01-04 21:14:345b5a5d832bc2ab16da7304396039c9b4d15d3fabb3bb41386578505f0124b0c4docHeodo
2021-01-04 20:57:43a4ee94729b7d72887bd48e1d2c06d88cdc624f878fd079085fa6713200e712d0docHeodo
2021-01-04 20:43:34e97db26e13f169b40f74fe23eaa0e04516b0558c91091d6378e38a80ccbea210docHeodo
2021-01-04 20:38:26bfb1730113cb5053d74406fb4fef94281848b94a36f77692bfa06724fb26712fdocHeodo
2021-01-04 20:20:31dd6c7639d37dd74a6c38509064836fb8ad9d39f8f7dade457d5bc5557bcf64dadocHeodo
2021-01-04 20:09:48dc7402e4f4e6065329fea3c892ee177a617798028d65439d253b4a64674a6d6edocHeodo
2021-01-04 19:56:50f8f286a03f9077ad8f3a28d55f3a36839714d8939a2d5ec9b6d1fa0b6f15a2d6docHeodo
2021-01-04 19:46:16eaa2a7a6ead0fb817d96de5539291d86caf887cbba94836c246755105a7a1429docHeodo
2021-01-04 19:35:43fea083de9b31b49497005d6f38cc508f73e1853f6563eb2775257b8a48b9ff42docHeodo
2021-01-04 19:26:353e6c95986909168bbadeb54008cc614db9543ae1565814c8aae4682d690e4cfcdocHeodo
2021-01-04 19:14:34ac2433d19823522a5239c92113bcd6b6e9bd92a56465ec572b75490cdbe14ea1docHeodo
2021-01-04 19:03:056dbcc0255f24c2876b32acaea6ac383eb2995ef52d51806db60df781d4b15e54docHeodo
2021-01-04 18:44:417a51e8dcde57b5c660458c92066f4c69487cc97443671507243168528155c9e5docHeodo
2021-01-04 18:37:299c2c5917f69605a3c17204d2d1aa7c95b2e6cbd92840c85e52c6dce965b9ba98docHeodo
2021-01-04 18:23:060b982bbe3bf779563600280ede9a0f1909aac792b4c3f1e792d504ae47f78531docHeodo