URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host 140.227.27.252.

Database Entry


Host: 140.227.27.252
Firstseen:2019-02-11 17:20:12 UTC
Malware URLs:5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-02-11 17:20:24 140.227.27.252Not listedAS2514 INFOSPHERE NTT PC Communications, Inc.- JPyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-02-25 15:10:34http://140.227.27.252/wp-content/sendincsec/legal/verif/e...Offlinedoc emotet ext heodo ext Anonymous
2019-02-22 07:27:05http://140.227.27.252/wp-content/eirJDz6P4X/Offlineemotet ext epoch1 exe heodo ext @Cryptolaemus1
2019-02-15 17:51:05http://140.227.27.252/wp-content/En_us/company/2606783750...Offlineemotet ext heodo ext @spamhaus
2019-02-13 19:34:06http://140.227.27.252/wp-content/verif.accs.docs.com/Offlinedoc emotet ext epoch1 heodo ext @Cryptolaemus1
2019-02-11 17:20:24http://140.227.27.252/wp-content/file/Invoice_Notice/Maad...Offlinedoc emotet ext epoch2 heodo ext @Cryptolaemus1