URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host phatgiaovn.net.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2019-01-24 16:31:25 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-05-30 04:59:13112.213.91.61mx9161.superdata.vnNot listedAS45544 SUPERDATA-AS-VN SUPERDATA-- VNno
2019-01-24 16:31:30112.213.86.116mx86116.superdata.vnNot listedAS45544 SUPERDATA-AS-VN SUPERDATA-- VNno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-02-05 19:15:26http://phatgiaovn.net/mLvz_cJexF-uUAmJOEM/A0k/Details/022...Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-02-01 20:02:25http://phatgiaovn.net/XUnGn_Es-WhsLLQCOi/y59/Payment_deta...Offlineemotet epoch1 heodo Clean@Cryptolaemus1
2019-01-30 18:00:06http://phatgiaovn.net/wp-content/Orders_details/012019/Offlinedoc emotet epoch1 heodo Phishing@Cryptolaemus1
2019-01-28 17:27:39http://phatgiaovn.net/wp-content/Amazon/Details/2019-01/Offlinedoc emotet epoch1 heodo Phishing@Cryptolaemus1
2019-01-24 16:31:30http://phatgiaovn.net/FEOD-XWKz_x-EH/MS095/invoicing/En_u...Offlinedoc emotet epoch2 heodo Clean@Cryptolaemus1