URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: thucphamsach.webdungsan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-30 03:08:04 UTC
Total malware sites :1
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-03 18:24:40 75.2.18.233ac1a2ad24832d38a2.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-06-20 23:38:03 34.41.139.193193.139.41.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-06-20 23:38:03 34.159.223.4343.223.159.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- DEno
2025-05-04 07:36:30 34.132.102.66.102.132.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-05-04 07:36:30 34.136.111.8181.111.136.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-09-30 03:08:06 103.124.92.99Not listedAS131353 NHANHOA-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-30 03:08:06http://thucphamsach.webdungsan.com/wp-admin/LLC...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-30 15:11:15a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47docHeodo
2020-09-30 14:44:18530127d3f61abec3c59e2202a0ddfa9b8f5623205bb7c115b951ef7af56cdcd8docHeodo
2020-09-30 14:24:305fa75a02b1c855828a4a11cf3cf8da64502f2b4023c776b5f37c98ef894df875docHeodo
2020-09-30 14:07:56b131abadbdd99b90888c049f0e4ff59936adb011886d570d1652cef7c209c4d1docHeodo
2020-09-30 13:34:5186f7e3cb36503bd4d36820857fa1cf349e4e14af26612ebbf4855fe68b2fde22docHeodo
2020-09-30 13:25:39ab2174dbc996a6ca6be7f5960e380efecb73f034abbd133ff78f4d14d6f48df6docHeodo
2020-09-30 13:04:3505917a3d7daf2bc7de49c374fe7ec364e19f2aa1b60480a666ed224053f0fe1ddocHeodo
2020-09-30 12:44:41efa9c669d5b042ca0892a07861b3f039c3d61f0fa89c57348ee5058445f2db1cdocHeodo
2020-09-30 12:10:07d206f9b0e7b447444d1f5d592716186fac89b660509dc88efa51a5701e795a77docHeodo
2020-09-30 11:41:401d5daccb3ffdca9e417370c654eefb0f6a0b2c3de51d7ca751c676d623cd57bcdocHeodo
2020-09-30 11:13:2567d5b3c3ed94416daadf1bb5fd4eba9c72b57c7b8f1d7d1e40a7a3def981adc4docHeodo
2020-09-30 11:08:22a4ba9b07b2355a1be394ecf01c4d26aae440491439fa0db4e7905eaa82a79e81docHeodo
2020-09-30 10:42:457d2c8d827a62c501876d11119d9989eae86dc953f1f0ced0c65a9567cb616fbbdocHeodo
2020-09-30 10:02:59110b8287dac073cfd63cca6a49c82963d72e5883bd93e56f99445993e41bc097docHeodo
2020-09-30 09:45:47380569af88b834f9d208236fa12e84cab31e0caf8793dacf54e7d8bcb290e5addocHeodo
2020-09-30 09:06:143e6e31b97b51015205df9e5043f01adddd0e5cd8248bac5bb0a7e7d75b5684bfdocHeodo
2020-09-30 08:31:28cdd0c1df94d8411b9502cbba720232d682901752e9c2adca68104f2d07f1b2e1docHeodo
2020-09-30 07:55:22c5d3f7beeec8a157185d5c01ac991e0357cb0d55f5b4335f3846792136692714docHeodo
2020-09-30 07:32:185bd1dec77e268f1da221047d95d57981748b9f359c04a76b1b80de3a2144c67ddocHeodo
2020-09-30 07:10:224ec76c0d7c5f6a2a489dcc31a5670f9d7194cf38c6e29b0e002193b6750e1ffedocHeodo
2020-09-30 07:01:130008ec3cdaed6559d71c8368c3edff8fd35d8f85816c950e8a8cc049ee6bc812docHeodo
2020-09-30 06:29:000c169d8b50436ffcfc67dc75e5a8534829a932697bf5e79107b4ecc423e227f9docHeodo
2020-09-30 06:04:305535272f513a3009b7bfb9a6614f96d6d4ed1c65fcfd7c416583ff2f35173267docHeodo
2020-09-30 05:59:08fc6f0ac3e38b970866e30342911b1f72bc2a028a33a093badc8c5694321d5808docHeodo
2020-09-30 05:34:0224e3ba16d86892e3c786b97123151b7a2294602a61bafd3c546475d0597a2a37docHeodo
2020-09-30 05:00:09a9b4569007c2822d7d717a8ea3a4e3a496c52a3f2011519ca3c4dd5e42011465docHeodo
2020-09-30 04:43:02c648f66670c65dcb17a1ec6a90617481190da0ff1eced41135b2435893b66c22docHeodo
2020-09-30 04:10:29a1cbbf8abb7c17079dd727968cf72dadead6f70a04ffc9f51b29860c9a8d4801docHeodo
2020-09-30 03:48:373d322e72fd831b7624674c0a9ed650c75bf0cf2d05e5c2dcf7746ee4187260b3docHeodo
2020-09-30 03:22:025b04551305572c828c0ac8143249ef7e94223b0fbf7d12b43f77c4e3da8bda45docHeodo
2020-09-30 03:08:051a2856f6dfce0f239bb89c2fa41ba26f9d1761dd09caa8312e58c26aa1411369docHeodo