URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nhadattyhung.com
Domain registrar:P.A. Viet Nam -
Domain registration date:2021-06-01 08:36:16 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 11:50:08 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-08-15 19:11:09 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-09-15 10:57:29 172.234.26.236pebble04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-14 09:44:08 172.232.25.17pebble03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-15 00:23:20 172.232.4.89hickory05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-15 14:19:31 172.232.30.16hickory04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-18 19:34:40 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2022-08-15 12:17:06 162.255.119.87Not listedAS22612 NAMECHEAP-NET- USno
2022-01-11 11:50:11 103.1.209.225Not listedAS38731 VTDC-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 12:02:11http://nhadattyhung.com/wp-content/uploads/u4Cp...Offlineemotet ext epoch4 heodo ext SilentBuilder xls Anonymous
2022-01-11 11:50:11http://nhadattyhung.com/wp-content/uploads/u4Cp...Offlineemotet ext epoch4 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 05:02:24aa65a34067b0c50e89c1078d0c7ff08de43e5036241404574f846265de6ff6bdxlsHeodo
2022-01-12 04:29:331e8ed8d61ad3f66e9acac149db12bf6f3db13cef81cbedc8bf9602c391450c43xlsSilentBuilder
2022-01-12 04:11:57228b8793653662088991f7cfa3b368bce32931a7516a2f8c7188a437eb03a856xlsSilentBuilder
2022-01-12 03:43:56fea0e3dc5015a4f0d14555e51520aed1594e9b0a3310bac2598db38f11e311c7xlsSilentBuilder
2022-01-12 03:20:25aaa15e90e9bb12fae4b2e72b32897244c2ef286adc0e58d7570de362b8c342b1xlsSilentBuilder
2022-01-12 02:39:55046d125d4eaf4ae30ad4a794405fd7c905b58db18824dfbe24dff1cd4cfd13b6xls SilentBuilder
2022-01-12 02:18:27769ecd4d91e53cc734ede1b06a3935096e838020e44061032964dd769dda3968xlsSilentBuilder
2022-01-12 01:52:018642a84875b30eeae2bec0b16db37715f4a2ff15caf6e5185a4012107ec1e87bxlsSilentBuilder
2022-01-12 01:19:39926c822e2c4d78b252f788d3fa75a77bfed1380ad50cdacf21f3efddf15b0b26xlsSilentBuilder
2022-01-12 00:59:531b7581c8be4bf9197005067c42e581bcc1c41b10d6d9768daa8c4642f6e3ef7bxls SilentBuilder
2022-01-12 00:29:45f9cbf3cdfa7ed91bca677fd8d8e1f0f53c193323abfbbb1ce4d7c6d2f1b9feeaxls SilentBuilder
2022-01-12 00:04:1805dc48ca9e5d5feb04a32c1ef3a8d18453a2a679e7257ce24856895a5dea268bxlsSilentBuilder
2022-01-11 23:57:07034eaef52f3dc5154e7a94121703ea759fd19784df604e48c8e73ff4fa06cfdaxlsHeodo
2022-01-11 23:29:32b5207887a27a42330a6b8e863e0550008a6375de1f4c9c6c0edcc7a9bb6d548fxlsSilentBuilder
2022-01-11 23:09:47a7fe36211a0be63df4c3929830b8fc4e21fc0548b5446377ce9c83b3d1fd9339xlsSilentBuilder
2022-01-11 22:34:35f326b9b9af87bd43878455ac75b4e61fadd71bdfcebf5b4508525cbbb4e8038bxls Heodo
2022-01-11 22:16:1912e3064b327fef718bd5c25b6d26ad24846b3612bfff59eb566107d957b9f854xls SilentBuilder
2022-01-11 21:39:52b6221570f7605955141baf72141654a10cd2269e0c9c328fd7339bd40b4f83dcxls SilentBuilder
2022-01-11 21:27:160bce8c631bc35e734c8be9fefb75ea3ce0e66a22e217c7ff6385afb1df2d0878xls SilentBuilder
2022-01-11 21:15:348183c2318ca3074812c65267bfa07f37152cf4fd78fce24265a3847e91f00be2xls SilentBuilder
2022-01-11 20:52:01b5d8116e0b4f01eb2affa09d857d1be4df2e18dd793e4ab0b6ad28e0d5eadc15xlsHeodo
2022-01-11 20:17:16f9e789531cb031e9e6767f54a780f6ee8b53a417acb2b2012dbfaf1579aee55fxls SilentBuilder
2022-01-11 19:59:493f4ddde39dc20ae5a2558fe48b7341187c1bba0dbd1c95a32644b14592a38653xls SilentBuilder
2022-01-11 19:28:503d2ad015f60956cee32029cb7d6fee846f34a91d0f6dae2b68cfde31c99b4a77xlsHeodo
2022-01-11 19:15:14afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292exlsSilentBuilder
2022-01-11 18:46:3418e24e9b03fde05fa41b9d86aa612dbbd5deabcebbe97ee5b3a3b7fa8fb43f51xlsSilentBuilder
2022-01-11 18:26:5060fdf680c8e0272784588bf87ead2814df683a2fcb697522ddd4ef323166440axls SilentBuilder
2022-01-11 18:12:04b8600d1365521e1a2f83ae356900d38cf8c44b60594bbe30df2ac04418cd823exlsSilentBuilder
2022-01-11 17:48:0838b51ee1239079bda9d7d55d94ad241f9595a1bad8a9538a140cd3504ce559c0xlsSilentBuilder
2022-01-11 17:28:250c9de24621d73ddfb33b0d2607b84d523a103ff59e318980f134dac1726e11a6xls SilentBuilder
2022-01-11 17:13:45659c21119c192bd5c4c698d0e9c0ef6c5d0ed38bf40907318ccbc4dece45ec76xlsSilentBuilder
2022-01-11 16:42:572709ea59d34478c496b08e82eb77182fba9c9af001b75cfab5aaa44621d359bdxls Heodo
2022-01-11 16:31:059e3e47f20134301b475d2d5477000f2ff061b7e2ccf7c02aa892d300c3da3b36xls SilentBuilder
2022-01-11 16:18:36071d6c9a40d6721f41c7064edb52f46d766703ea2e9bbe033939b6d60f24604bxlsHeodo
2022-01-11 15:48:015b8d0b12d4a393432ef70e1832915b20c0a39b948c524ac301e3ae5f9794b84dxlsSilentBuilder
2022-01-11 15:41:00df48c5adc26e47df969b120a0306644ba21de633cc1c51602c462bda5275d560html  
2022-01-11 15:13:343a3a5f5444557caa3c86b58560956c0a0452818a2349ef7328bb8c948e36d465xls Heodo
2022-01-11 14:56:22d2c48bc93b2b0711be6bafd81a7eeddc944514e110ef2e1014151dac42e8ab62xls SilentBuilder
2022-01-11 14:36:1489224af568d4e29e7836c2961d33045490b337a9d5d40db852137e1f2dbbfbf9xlsSilentBuilder
2022-01-11 14:22:227c1004454dd200c8e01f09e796c996a70ee951164ec546ae10634a41c1eb4d22xlsSilentBuilder
2022-01-11 14:01:3706b383970ed4fab68a430bc021dd0744b77518ec82ef09f6d167c8edbf50fd53xls SilentBuilder
2022-01-11 13:42:337550a2a99fe2768446351c653515cda693fc4978cdb437177efcc2133117efbcxlsSilentBuilder
2022-01-11 13:20:46ffd39f522cb9bcdb3dac93c34aa136be3cdc6cc6f6b878cf756a5a53443546fexls Heodo
2022-01-11 13:01:1454517f5914c526589a1b1ad61249c75209d239c1885cd72f638d9924d53983dexlsSilentBuilder
2022-01-11 12:47:48f218c6867a0a060d313d1592c39f606f2193f4d587a404b4372971a6344d0f16xls SilentBuilder
2022-01-11 12:21:1525a3e55a8c505687b78fb62ff041db36ed577b17dbd1b9ebf4e8628b9cf7b18exls SilentBuilder
2022-01-11 12:02:11244e38598a1d03f533889b35b310f7e2a83cbf5b57b93c116b57a73482176a22xls SilentBuilder
2022-01-11 11:50:10ddb74d5adbef3c3d4cc9409f63a4f13e31649ab0579aa9269444826a4c987ffahtml