URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: thuong.bidiworks.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-14 22:19:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 09:17:30 54.168.170.178ec2-54-168-170-178.ap-northeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- JPno
2020-01-14 22:19:28 125.212.221.64Not listedAS7552 VIETEL-AS-AP- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-17 01:33:21http://thuong.bidiworks.com/wp-content/qq2-9q0-...Offlinedoc emotet ext epoch3 heodo ext spamhaus
2020-01-14 22:19:28http://thuong.bidiworks.com/wp-content/q2TO1988/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-06 21:03:16fe50434ae1fac8ca537e9da19c9ed0e887de46908e618707ea81be7c372868e4doc  
2020-03-20 02:18:30003129adc36e6d7ae2f8329614579aa0b48142c63a25e242dc0ebc3b160cd27fexe  
2020-02-19 20:10:04d19bef5d33c6a0a7dbaf6733c532fd2c62beacfc1ef19f9d3b8b8682ee95eb22doc  
2020-01-16 22:58:076b6bb6160907d2963607bb41ec0f1c7d391905cd7f582564de3069bd71563aeeexeHeodo
2020-01-16 21:33:575b6ec9e14cb8f184db7aab9cfe09abc4f5c22e63809c0f3e8a2ca6657ae3a35bexe Heodo
2020-01-16 20:08:1341e37685e1549b54544d9f909065c769d29b2f4f509aa3c0c77b98fcd4adc648exe Heodo
2020-01-16 18:46:473d45588b485e71d3cce18d981ec0f1b217300fca770d42b9ddea65892d98eb8fexe Heodo
2020-01-16 17:23:13218226bd85f6c2de19dadfca664cdd6f08c563a2beb00abddda0774996a36175exe Heodo
2020-01-16 17:20:2866a7a95bc660d34c491f55bba82a1b855a5efbb00f5dd322b3cdded6deb8e635exe Heodo
2020-01-16 16:15:339df8a0817f3d2d5c8c38cda5e544d4bd83b8c390f1092ea658d0a80609b1d0daexe Heodo
2020-01-16 14:17:19d64cbb8bd3719bb94fa9f41d0517de4ac3a4263e94c10a53773473422db2b2ffexe Heodo
2020-01-16 13:36:2677642c95a13d78fd7b19c923fd1c6594c11e95c455afe99f9f5b690f121860edexe Heodo
2020-01-16 12:59:369552e0919a4676c8089eeb5ec4411039262bc1c8cd4af4b7279d315abc7e3316exe Heodo
2020-01-16 11:34:42c73c08f5d977d0bcf811a42f078713f46e4e885eab70ed5c4894a1c7ceb07296exe Heodo
2020-01-16 10:10:419e0255b6b5c9297e998b374ecb1f89ef6be47c421be9d16b8daff219ba999fadexe Heodo
2020-01-16 09:53:42e7a0da3cc8e16e13aa88b72bebaa0069f1bf6d865a40e24008033a068d53fb9cexe Heodo
2020-01-16 06:50:29f4a5804ad4ef8ce195027766679919d3eb26b3c568b7ff5e88de1b6d5c3610d3exe Heodo
2020-01-16 04:50:48b0c94a73def41f05ff13be8846aa025feb5ed75131dc81267fdd4bac852b4c27exe Heodo
2020-01-16 03:32:2507b1fdc265e7f84929249ce25b60d866490185af865d82881b3d41112f53d738exe Heodo
2020-01-16 02:26:08ec24ac74429bba488431e69250ccfd3354f1e25e8a14859f3a01ae10b714ecaeexe Heodo
2020-01-16 01:09:52d469328c0037312e08e784a815e2041b912c9375e05de0ed66fd8e60548e14edexe Heodo
2020-01-15 23:56:2919ff6c807c4267a7ccfd032ce1406d74f36ea63644428cb8034df8591d6c3c1aexe Heodo
2020-01-15 19:44:597fbc314f9ef020fdd1e1e5b3326fed20525538fd2aa0f245ce31f69038b8b634exe Heodo
2020-01-15 18:38:0491478dc31e7d4fd423cbc98b6c99898dbb6c16dc77074f29602e46fbf9b28d91exe Heodo
2020-01-15 17:25:518d617ac4ee979cf26aac32927ac85ad5d5be53d27ccab9e5b62b9bbe10fd473aexe Heodo
2020-01-15 16:27:37555850e863dd682ece7944857b1a82ac095cb99640d3e73209153419f1a2bec2exe Heodo
2020-01-15 16:11:53ece17740e93ddf2899abc2b2a0087cff467d29f291ea67d94284c015ac0e93c2exe Heodo
2020-01-15 14:26:487df07e2bfde9be3d3235887378de97f36dc68894ad8c730299efdaab7f1d84d2exe Heodo
2020-01-15 13:17:34a665f28be61e46b3670dc15be76fea22ff7b3e0e5698fe9eea2c73d655d18f72exe Heodo
2020-01-15 12:07:393986b6de95ec84668bd51060c960ae2f1e3e05d5107fd4815b0b42394cff2f77exe Heodo
2020-01-15 10:39:403dd61e9c4a0c259c7cebcfe2295cb736cc65959e23408526b16fe91e240a5ee8exe Heodo
2020-01-15 08:37:36fd83c72e85e4df0eb890efc210dcdada8ed75d3a3e4c4d4e37e00944dc221861exe Heodo
2020-01-15 06:13:293a8435df5ff02eb7664c16caa1713f1881a891f8fb13a45a4c099f808f0c5e01exe Heodo
2020-01-15 04:39:28d33997e5f209057f5e408893f0d2afd2bd9552b0c57ccfeaf4da3f6e7cf5858eexe Heodo
2020-01-15 03:41:45a354d4d300d5f12577a95c48f96f79ee838f3a4a9226ea0fbc1bac2e5d73bc25exe Heodo
2020-01-15 02:38:21eb318ee1ca3c433776e1a5ffbf59a13f533b8cb97b4e2ee493434e02f34eed98exe Heodo
2020-01-15 00:37:366fd6da9270d03478dadfe4375e533b2c5a1f1092c39dc364e69bdc8e1a97f711exe Heodo
2020-01-14 22:36:161746c81d1d2bcd7bca7346b2a1e0bb036c927b3e9d8629af8c7a442dc03785caexe Heodo
2020-01-14 22:19:277f77dada2fe25ce423a169d1229b4aa926b4b5b3be976d1981c2b5cae48e9ee8exe Heodo