DomainMediumSignal 51/100
anhemvn4.com
Location
First Seen
Aug 29, 2025
Last Seen
Jun 15, 2026
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
51%
Signal Score
51 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
8 reports51% confidence
8
Source reports
51%
Confidence score
Category tags
access trojanacthactive scanningai applicationsai enhanced phishingai researchai solutionsai videoai-themed lureai-themed luresaithemed luresartificial intelligenceasiaattackbeyondbotnetbrute forcec2 ipcampaign abusescommand and controlcompanycompromised systemcomputer visioncredential accesscredential harvestingcredential stuffingdata exfiltrationdata theftdeep learningdemodigital signaturedistributed attacksencrypthubexploitation of privilegefileftp brute forceglobalhashhasheshttp brute forcehttpsindicatorinformation stealeringress tool transferinitial accessiocloginmachine learningmalicious activitymalicious softwaremalwaremalware campaignmalware distributionmalware signingnatural language processingnetworknetwork scanningnetwork securitypayload deliveryphishingphishing attackpost-compromise activityprocess injectionprotocol exploitationpythonratreconnaissanceremote accessremote access trojanremote servicesresearchedrmmrmm tool abusescreen connectservice discoveryservice enumerationshellsmtp brute forcesocial engineeringsoftware integrityspiderlabs teamssh attackt1003t1005t1018t1021t1021.001t1027t1036.005t1040t1041t1046t1047t1053t1055t1056t1059t1059.003t1059.005t1068t1071t1071.001t1071.004t1076t1078t1082t1105t1110t1110.002t1133t1189t1199t1202t1204t1204.002t1218.007t1486t1496t1499.002t1499.003t1518t1547t1547.001t1553t1554.001t1554.003t1555t1563t1564t1565t1566t1566.001t1566.002t1566.003t1588.002t1595t1595.001t1595.002t1595.003tcp scantelnet threatthreat actorthreat hunttrojan malwareudp port scanudp scanurlsvaluevalue typevietnamxwormxworm ratxworm remote
Activity Timeline
Jun 15Jun 15
Threat Activity Heatmap
· Peak: 2026-06-15LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
51
SIGNAL
Signal Score
51%
Confidence
8
Reports
First seenAug 29, 2025
Last seenJun 15, 2026
VirusTotal
Not checked
WHOIS
- domain rank
- -1
- raw
- Administrative city: Redacted for privacy Administrative country: Redacted for privacy Administrative state: Redacted for privacy Create date: 2025-04-25 00:00:00 Domain name: anhemvn4.com Domain registrar id: 1923 Domain registrar url: www.gname.com Expiry date: 2026-04-25 00:00:00 Query time: 2025-04-26 11:51:03 Registrant city: ddb75a553547a419 Registrant company: ddb75a553547a419 Registrant country: Vietnam Registrant email: 724f580acb626936s@ Registrant fax: 224ebce19c8a675a Registrant name: ddb75a553547a419 Registrant phone: 224ebce19c8a675a Registrant state: ddb75a553547a419 Registrant zip: ddb75a553547a419 Technical city: Redacted for privacy Technical country: Redacted for privacy Technical state: Redacted for privacy Update date: 2025-04-25 00:00:00
- subdomains count
- 0
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 9 months ago · Last seen 9 days ago
Appeared in 8 threat reports