URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: aabeds.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-19 09:10:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:58:51 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-04-27 10:58:51 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-01-13 11:44:53 104.21.4.140Not listedAS13335 CLOUDFLARENETn/ano
2020-10-19 09:10:10 172.67.154.30Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-28 22:08:07https://aabeds.com/wordpress/O/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1
2020-10-19 09:10:10https://aabeds.com/jtdla2131/Y/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-29 02:54:3641ab55ae223deea97eab6d134ac6082ebef4160aaa8cb6538a57803ef24c7221exeHeodo
2020-10-29 02:41:54d75b1da67dc3c51e35dda5e82528dd96bf0eefd4b65b817fe270730351d9022dexeHeodo
2020-10-29 02:31:0707dcee141f0c69cd3d0c75ab8557b6b07bb739a27b3c3492cfca355aec70bf0eexe Heodo
2020-10-29 02:19:5318fa8f0a6f792986d1cebb999abe14756a7153b3003aa67ce4cd3813c1ac1192exeHeodo
2020-10-29 01:40:538ac523d50cb7f5a106fee116a598eafbda6563fb336e67427ff1c76d19c739a2exeHeodo
2020-10-29 01:23:04151953210903870a9ed2bcc1ebdde0bf14687cc614d8b6b7feee1aa0230ecbe8exe Heodo
2020-10-29 01:09:01f16489bf2857d2e4ee77a13493c35008dbfc01ff1cf6ebffdc6283338d434ff9exe Heodo
2020-10-29 00:54:125b25405b365a5c6bb66842817c3cc0b81bceb5ff79179ba7af0d38a724076b6dexeHeodo
2020-10-29 00:29:17a0fba710014b74aae0e4d2b1c42abfac9dfd8ef822006f44833b303b7ae2eddaexe Heodo
2020-10-29 00:12:2122bbc3c551ded441b1d9d6cd7429e79cc080384f9d69ff8f9cc2f219b0e3ea5bexeHeodo
2020-10-28 23:42:544f04759696be7ecddbb0fa6322cdfbe5719b6be76645695ddf85564925d4ff3bexeHeodo
2020-10-28 23:20:13037cccc756f6f3503eff469c6f425ad7e5071169e3c7885cddfed56486f51de4exeHeodo
2020-10-28 22:52:598eb53243759cc48baa1d4b39fa9a3c063ec2c75f11bf403c81f4855e08f0dd5cexe Heodo
2020-10-28 22:36:335e92740962b7d64f1f33e49fa5bb15878fed2bb060264344976fbd5e39698578exe Heodo
2020-10-28 22:08:0772584fe66719ba99ad010c870e1dfcb26d9ffeab80f1ce70e37c128ec5e1a812exe Heodo
2020-10-19 09:10:1085e74e21e0f5a856f85418d840cade7a95604bf44ba9d15840f117d0f6831d41exe Heodo