IOC Radar
DomainMediumSignal 51/100

anhemvn4.com

Location
VietnamVietnam
First Seen
Aug 29, 2025
Last Seen
Jun 15, 2026
Aug 29
First Seen
299d ago
Jun 15
Last Seen
9d ago
8
Reports
source reports
51%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
51%
Signal Score
51 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

57 techniques

Feed Intelligence Summary

8 reports51% confidence
8
Source reports
51%
Confidence score
Category tags
access trojanacthactive scanningai applicationsai enhanced phishingai researchai solutionsai videoai-themed lureai-themed luresaithemed luresartificial intelligenceasiaattackbeyondbotnetbrute forcec2 ipcampaign abusescommand and controlcompanycompromised systemcomputer visioncredential accesscredential harvestingcredential stuffingdata exfiltrationdata theftdeep learningdemodigital signaturedistributed attacksencrypthubexploitation of privilegefileftp brute forceglobalhashhasheshttp brute forcehttpsindicatorinformation stealeringress tool transferinitial accessiocloginmachine learningmalicious activitymalicious softwaremalwaremalware campaignmalware distributionmalware signingnatural language processingnetworknetwork scanningnetwork securitypayload deliveryphishingphishing attackpost-compromise activityprocess injectionprotocol exploitationpythonratreconnaissanceremote accessremote access trojanremote servicesresearchedrmmrmm tool abusescreen connectservice discoveryservice enumerationshellsmtp brute forcesocial engineeringsoftware integrityspiderlabs teamssh attackt1003t1005t1018t1021t1021.001t1027t1036.005t1040t1041t1046t1047t1053t1055t1056t1059t1059.003t1059.005t1068t1071t1071.001t1071.004t1076t1078t1082t1105t1110t1110.002t1133t1189t1199t1202t1204t1204.002t1218.007t1486t1496t1499.002t1499.003t1518t1547t1547.001t1553t1554.001t1554.003t1555t1563t1564t1565t1566t1566.001t1566.002t1566.003t1588.002t1595t1595.001t1595.002t1595.003tcp scantelnet threatthreat actorthreat hunttrojan malwareudp port scanudp scanurlsvaluevalue typevietnamxwormxworm ratxworm remote

Activity Timeline

1 total obs
Jun 15Jun 15

Threat Activity Heatmap

· Peak: 2026-06-15
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
51
SIGNAL
Signal Score
51%
Confidence
8
Reports
First seenAug 29, 2025
Last seenJun 15, 2026

VirusTotal

Not checked

WHOIS

domain rank
-1
raw
Administrative city: Redacted for privacy Administrative country: Redacted for privacy Administrative state: Redacted for privacy Create date: 2025-04-25 00:00:00 Domain name: anhemvn4.com Domain registrar id: 1923 Domain registrar url: www.gname.com Expiry date: 2026-04-25 00:00:00 Query time: 2025-04-26 11:51:03 Registrant city: ddb75a553547a419 Registrant company: ddb75a553547a419 Registrant country: Vietnam Registrant email: 724f580acb626936s@ Registrant fax: 224ebce19c8a675a Registrant name: ddb75a553547a419 Registrant phone: 224ebce19c8a675a Registrant state: ddb75a553547a419 Registrant zip: ddb75a553547a419 Technical city: Redacted for privacy Technical country: Redacted for privacy Technical state: Redacted for privacy Update date: 2025-04-25 00:00:00
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 9 months ago · Last seen 9 days ago
Appeared in 8 threat reports