URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 37app.ir
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-06-27 14:52:23 UTC
Total malware sites :8
Online malware sites :0 (0%)
Offline Malware sites :8 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-06-27 14:52:30 194.31.194.193Not listedAS39368 Serverir- IRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-06-28 07:05:21http://37app.ir/uais/uvarsesititttloevpaOfflineaa Qakbot ext qbot ext TR U523 zip Cryptolaemus1
2022-06-28 07:05:13http://37app.ir/uais/aruqmueriOfflineaa Qakbot ext qbot ext TR U523 zip Cryptolaemus1
2022-06-28 07:05:13http://37app.ir/uais/rmouaeovttevlpOfflineaa Qakbot ext qbot ext TR U523 zip Cryptolaemus1
2022-06-28 07:05:10http://37app.ir/uais/mqcmuuuanmOfflineaa Qakbot ext qbot ext TR U523 zip Cryptolaemus1
2022-06-27 14:52:51https://37app.ir/uais/aruqmueriOfflineaa Qakbot ext Quakbot ext TR Anonymous
2022-06-27 14:52:43https://37app.ir/uais/mqcmuuuanmOfflineaa Qakbot ext TR Anonymous
2022-06-27 14:52:40https://37app.ir/uais/rmouaeovttevlpOfflineaa Qakbot ext TR Anonymous
2022-06-27 14:52:30https://37app.ir/uais/uvarsesititttloevpaOfflineaa Qakbot ext TR Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-06-28 09:38:4091025ed9cdee6701a643750bf65244839c7669387d2b02eceb8566ec6d766af1zip  
2022-06-28 09:27:2286d264ddcab9f7cbc8281e52e8db4fd3cb80d3a4d43956f5135f938cef19b921zip  
2022-06-28 09:00:1009d6e8261b492d6deae8ce0c42ce186db679774f0521d2c271a6d0101b128228zip  
2022-06-28 08:56:30a05a2610c2e72a1819b01935b4c6969769ffe6d5eeb6379e4a601c9654e46c0bzip  
2022-06-28 07:15:390f38311d688892f5adabb93722bc7f8cef1382c0bfdbfba054c97ccb11b13494zip  
2022-06-28 07:14:52e7fa36b9cc34744dbdb86f1aed4d165cdd62e6a5a991699b94238136f5457b13zip  
2022-06-28 07:08:0004152c7912d38db17d2964ef93d6c38479d277fa7fac875c67e608b5aa3f5e30zip  
2022-06-28 03:36:52576a84d9a8f0f99786223de390974db5e31aafe3b0fd16609ba1e98acfc4b66fzip  
2022-06-28 03:26:13700143c3095e4419fd29ecc45f1091435bf14af76f65fc08069996794e655f82zip  
2022-06-28 02:59:344c114aea341964f8dc2cb1747ebc96258621263360d5c1b299d5eca4d7049c0ezip  
2022-06-28 02:55:414d12fe5ab185c5e45f47a76af4cfb0c51de605b9e5bd9b5fc0e0b7ee6f81be6fzip  
2022-06-27 21:16:0382dbb8e28d95e2854113ff536ecb1918a9c08c3c9c53e0cb5ae1cc59f04b4cf8zip  
2022-06-27 20:54:288148fa509a1dad01f9b40ad8c2c319651d5f1586ca299a8816114809fc379932zipQuakbot
2022-06-27 15:17:148ed7030cf00f1effa094db601096a377e75500cfa947c471eb9974363ab711cbzip  
2022-06-27 14:55:548a11d180da53a54b9be00b8b8bd6630e5d02e56d880af07df6bf093c20998166zip  
2022-06-27 14:53:44273176c250008c1da207f3bd4533f12fc5c3fa038a855c22122b7b8956b710a0zip