URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: abanstone.nl
Domain registrar:Realtime Register -
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 14:26:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-03-24 23:02:29 81.16.31.38Not listedAS47583 AS-HOSTINGER- NLyes
2022-01-11 14:26:05 161.97.169.254m23254.contaboserver.netNot listedAS51167 CONTABO- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 14:26:06http://abanstone.nl/cgi-bin/2DllKxle/?i=1Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-01-11 14:26:06http://abanstone.nl/cgi-bin/2DllKxle/Offlineemotet ext epoch4 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 00:11:0005dc48ca9e5d5feb04a32c1ef3a8d18453a2a679e7257ce24856895a5dea268bxlsSilentBuilder
2022-01-11 23:46:4366f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6xls SilentBuilder
2022-01-11 23:19:13429e0de91bc404f5fc886f0618177f5bc49fe0da3940e98426c5d5cd8aed57cfxlsHeodo
2022-01-11 23:06:285c5fd037c414e33a6538da72a5ea4ae89c8dac15b396b6a10e8504a0b5a7ee75xlsHeodo
2022-01-11 22:44:08e48f10cc12e08a32f523982c024f49dca076b06c6bd47b5cdf3d43aee5097091xlsHeodo
2022-01-11 22:13:5015808d5cf09ee4a60ed9e18d0b403cd762cbf7613246e2cdfa6fba88eb654dd8xlsSilentBuilder
2022-01-11 21:43:42e7065618e785e98792d570656fd412ecf695c45ec5a8123d04cf4ee302d225bfxlsSilentBuilder
2022-01-11 21:32:079ade9daf48cb63c929cd8e7ec03ac77ed41d362efaa79453d0eda4553747c404xlsSilentBuilder
2022-01-11 21:08:3877d7199bee787fb17ba47e4461be479b626921734ac55b7b76d42531c3b1a211xlsSilentBuilder
2022-01-11 20:46:20fd3087fa953ec989caff35845ec2bc3cc41303ac26e0f0d0b8e25a325fee3a29xlsSilentBuilder
2022-01-11 20:19:45e8b123fd61bfeabe7b45797f6cceaef77207d8d93d2a2b38065976603120c558xlsSilentBuilder
2022-01-11 20:03:4103319a0f6c37911983650f91c2a01b29eac84b17bd99133626d11d08952ad9d4xlsSilentBuilder
2022-01-11 19:36:25a43e422bf49682cd2dd5c53f5e3c8b8712c76cd9f082309e92decc55f0f8f92exlsHeodo
2022-01-11 19:08:56afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292exlsSilentBuilder
2022-01-11 18:51:40fbc4a5db3ab48741c10a226dae4e2b64d924110962224bef57910478251cf3c7xlsSilentBuilder
2022-01-11 18:32:03a5a1c304ab3b2351a82da736cf9c022ea2ad1cbff6321b64b0a741b575c8a6c4xls SilentBuilder
2022-01-11 18:04:40e540aa4c8a0a7eb9acf80aa3e76a804c5f492a69e052e33584c0ce432b33de75xls SilentBuilder
2022-01-11 17:47:2338b51ee1239079bda9d7d55d94ad241f9595a1bad8a9538a140cd3504ce559c0xlsSilentBuilder
2022-01-11 17:27:460c9de24621d73ddfb33b0d2607b84d523a103ff59e318980f134dac1726e11a6xls SilentBuilder
2022-01-11 17:04:1237e872cc3b4e9e0f9e1472f6865ac985496582ef138fd1646fe13bd14bb92c0fxls Heodo
2022-01-11 16:47:22b68760371e947df68d4f69a1f9b43a56de082932df771b0ef088adaae130931cxls SilentBuilder
2022-01-11 16:24:567955874a069fbde3eb5144ea8420f8b9e80d0c8ccd822c21b54150e53608116cxlsSilentBuilder
2022-01-11 16:09:317dcde20dd26c5388d734d658830ebb48bf5c1170cf9ec39a3e084d8e728715e8xlsHeodo
2022-01-11 15:50:49bf91c04f3afc1afa9463c2080147703205f02618813ec6f779bea1d66de714cfhtml  
2022-01-11 15:50:350b52372793be51e4313df2cb64a2b43650e47eb55920506fa6ac3f0726da0a89xlsSilentBuilder
2022-01-11 15:14:46bdb3e9a556bc850867023c8e1c5ea1e20cda48c72bd0396ef667d3352b14d65fxlsSilentBuilder
2022-01-11 14:54:31125d84a3e35c42f4464704bc17b835fd488c8116476a7c61d170e47def200dd6xls Heodo
2022-01-11 14:35:06920b0df7acc9b9a74fead2dbcc553c65efc98e729a593ad21402109dcb6f66c0xlsSilentBuilder
2022-01-11 14:26:0566a275ed40d53482a083d622640f5fa713fa327a7659d31df6c0ede4f4902755html  
2022-01-11 14:26:059272f102aa79bc52b9a154a55c4252c52e1136a9ec4fdcb5356be76ba17236a2xlsSilentBuilder