URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host 159.65.142.218.

Database Entry


Host:159.65.142.218
Spamhaus DBL:Unknown
SURBL:Not listed
Firstseen:2019-02-11 20:57:01 UTC

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-02-11 20:57:04159.65.142.218Not listedAS14061 DIGITALOCEAN-ASN - DigitalOcean, LLC- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-03-25 22:08:02http://159.65.142.218/wp-admin/UPS-US/Mar-26-19-12-48-01/OfflineClean@spamhaus
2019-03-20 09:31:35http://159.65.142.218/wp-admin/organization/business/sec/...Offlinedoc emotet heodo CleanAnonymous
2019-03-04 20:03:20http://159.65.142.218/wp-admin/phlc-m0em3x-herwn.view/Offlineemotet heodo Clean@spamhaus
2019-02-27 17:26:04http://159.65.142.218/wp-admin/q5b8-jd6q6-jzfu.view/Offlinedoc emotet epoch2 Clean@Cryptolaemus1
2019-02-25 17:08:02http://159.65.142.218/wp-admin/llXVvIU4FGluqa0/Offlineemotet epoch2 exe heodo Clean@Cryptolaemus1
2019-02-20 14:22:08http://159.65.142.218/wp-admin/organization/business/sec/...Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-02-18 12:33:03http://159.65.142.218/wp-admin/De_de/LBYFVB4427436/Bestel...Offlineemotet heodo Clean@spamhaus
2019-02-15 19:25:25http://159.65.142.218/wp-admin/Amazon/Attachments/022019/Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-02-13 19:37:12http://159.65.142.218/wp-admin/file/rlQCK-AEA_TOLYw-ti/Offlinedoc emotet epoch2 heodo Clean@Cryptolaemus1
2019-02-11 20:57:04http://159.65.142.218/wp-admin/llc/04418048552093/nUfSR-u...Offlineemotet heodo Clean@zoomequipd