URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 1.33x.us
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-20 19:48:13 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-20 19:48:18 119.28.226.73Not listedAS132203 TENCENT-NET-AP-CN- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-21 05:26:08http://1.33x.us/wp-admin/9WJH36Q/Offlinedoc emotet ext epoch2 Cryptolaemus1
2020-07-20 19:48:18https://1.33x.us/wp-admin/9WJH36Q/Offlinedoc emotet ext epoch2 heodo ext ZLoader ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-21 01:01:19296943dcba8c391e81d42bf4b7887bd2929bfa9cb511d3e1a9056ca64013f00fdoc  
2020-07-21 00:48:3174fdca7126b9d049956422f500ca2a0257fb7956f385a45c6b5c36230fd3a2a5doc  
2020-07-21 00:37:11e341cca78e446c93ee00c387cee3517341c104ac0587512879a602ff58871c64doc Heodo
2020-07-21 00:18:33a7f4f8b9dddb70414bfdbbffd5c446c88b517c104a441be19151c8a711133686doc  
2020-07-20 23:58:35cff09d732ea9fe1f128dc29bff9f5d5d8ff78ea22eadb52fa4b5b8d7c056928bdoc  
2020-07-20 23:54:425ef34d47ef171a2b5cab01782a4a45d9a12f01d70dde381936b6975ca93dfad7doc Heodo
2020-07-20 23:37:17f532fcd4387475d48960a5f0863e003f7eba0281354728bf832162a0ca5673fbdoc Heodo
2020-07-20 23:30:2549f90436f418a86b0f4e55e14bcf74793954cc90596ad08dfb6355a1e50a8f27doc Heodo
2020-07-20 23:22:1280b27b3a7242ea8cdfbcc0d266c4fe489cc0b035fb614b755e2546c80cdfbed5doc Heodo
2020-07-20 23:03:1386dc2706e8cf0a78688e5a503d6e8db55275a7ec3de655ec33a9db2f6ffeef57doc Heodo
2020-07-20 22:48:31fc5b7108a0eaca8bbecdbea0d3405756a6cdb3dc9911363730b275e1e29acc4fdoc Heodo
2020-07-20 22:35:564ec7f2a0359b740dbbc849705f2856818bccc8fafa5a2237fd79640e61423255doc  
2020-07-20 22:31:08a6ce3b9c522d36ac4e91cf8e2cf1581bc9d7e6548f1e66ff998e11662f6894cbdocHeodo
2020-07-20 22:18:20148aa06dceabdc99c7588bd48277867f3d0528fcf04463562707fd66f953045ddoc ZLoader
2020-07-20 22:05:35d076c294bf588b7c9f8db6b5f35a63758c5710feb5920c263ceb77a501bb9133doc Heodo
2020-07-20 21:54:47cfb6588d9181a97aa1f93b2b9f8af82134836e916938a80a217cd03fe4294811doc Heodo
2020-07-20 21:41:50eb0f6632e1ec41f11634db7c691a38cdae71cd06268568eebbd34ad96fd37618doc  
2020-07-20 21:17:3333c897cc3c1d11687231644af13032e24358c594f4b484a7040a3eeecfae7145doc  
2020-07-20 21:12:204fdba539896383e37ec2383fb569df4f17395dd40115ba8caba62127b7ebe949doc Heodo
2020-07-20 20:59:4970fd23e6a829661f7fe775e5b73c20b09a4dbeb5b97648d0851dde0591a3b304doc Heodo
2020-07-20 20:41:22265c8a20b2d97de3e6464bbc718b00cb55562ca2512c7ca4f8fd6034613fff53doc  
2020-07-20 20:29:068811f4498f1b1d8729556a61a5683ce20c4270a64ee5ad0223185110adac5f2cdoc Heodo
2020-07-20 20:14:519ed5c3020adcc781d330dd21b20134e4ae6fec3d1eb087be0d8f89e1c7af99cbdoc Heodo
2020-07-20 20:08:3069167697c3c077b3ca6449ae55750d1712c20bc33196537fdbbe05e463aab195doc  
2020-07-20 19:48:181e146c18d65265b27e23f9ee84a8f1d20c046aa76c30ed386710a10cb0da2960doc