URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: activeserviceprovider.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-18 20:52:08 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-18 20:52:09 95.216.246.100static.100.246.216.95.clients.your-server.deNot listedAS24940 HETZNER-AS- FIno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-18 20:52:09http://activeserviceprovider.com/wp-content/005...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-19 08:43:2392d96fb1b1020da8494603f46e6a2fa6264b69688537b879fbd01f229d3ca1a9docHeodo
2020-08-19 08:34:0020694db459b3cb2ccbf97a5f2923759cac13520542fe78e84733947045a860e8docHeodo
2020-08-19 08:09:00c94255c1e218f6578be80a7dd64f4d75acb2c91812aa436908f37c81d531df90docHeodo
2020-08-19 07:44:38da820b108be2808d9d5d1909a3d8683f33f902abe5ae4e5e319d6aa766aba61ddocHeodo
2020-08-19 07:17:59a09fb497ce5738081489fafa343ed354128eba16cc5f8f6bfbb26ff79e19ceebdocHeodo
2020-08-19 06:57:551c98753feb43790bf0b2979ae0d73c4760638ab1d9c5d6b6336ce2241ba31aa4docHeodo
2020-08-19 06:42:42305d205cdb3c030f05543db463c783753137d91a3d8c2721189a94fb36e4f7c6docHeodo
2020-08-19 06:16:477065577cfc7f1d2a71a9044c23838d7703f1a1e02b2c222ab507407a778aae24docHeodo
2020-08-19 05:57:31f6feee3a8137cb0cab6667842f06e07f96e54fc2f15ebe079dc30b4060d52452docHeodo
2020-08-19 05:42:3900ae8c566e55be2bcbcd11072f67a71e34b8b28b3e3dcb0f949043c17c398ecddocHeodo
2020-08-19 05:21:458ecfd0e0dbd4257b0b0f97f99517f9d1d825e32d7862b1ceb1b6bfdc67b205a0docHeodo
2020-08-19 05:05:349f95680d93e52258b33600da99d066d953f0aa373f991d850e83ae0e050fdb4edocHeodo
2020-08-19 04:49:095194005835c1f487f14f03ea67a9300ad9821c5d0922e5549321d2629448f630docHeodo
2020-08-19 03:17:585a63ce9de6a721eaabedc5a95a579a3eee404a94034db171f646e24517fed367docHeodo
2020-08-19 02:59:55682cb4ff880f1a6a000f5a227f8dba42abd73d836308162dc519644d9dae94efdocHeodo
2020-08-19 02:44:5440ba73d22e9dab3b78ab066b7fce42d3bc541832c4d6a8ce3c564f2290c0b308docHeodo
2020-08-19 01:32:537833c0d39d11142241550af1fa9cb743026dc00c841f79a52d695fd8e9bfdd43docHeodo
2020-08-19 01:12:32eb36ddd9edb9f64c1d10743135f87875826990fee2cde8abfcc653b1045c9061docHeodo
2020-08-19 00:56:335df568ab274842e91a3f5717af61fdbe6827249fc71e135fdc493f5177ccac7adocHeodo
2020-08-18 23:25:4585d051184c78737bf858c74a6fe5cbf9d30ed82b3ace8cad4b7555c5132cb11edocHeodo
2020-08-18 23:15:0896ff6e1cf0debb38b542d25de485f8bbedbebacc99a76bc427946603266b19b2docHeodo
2020-08-18 21:42:50f7f2b55cdbf9f24f6e1850b32aa87b859717f840d46caff776674a973d28d51cdocHeodo
2020-08-18 21:28:398f47cb493376d43a1a8f2ccadec7a4cade6df8e86bf5159d54781451519064c3docHeodo
2020-08-18 21:14:35942ccd6baa3b3eea249f01497d82b6835ddf27ab79c9db9561a3f473e05eceaadocHeodo
2020-08-18 20:52:093c164014bb20fa3467611d29e951e5bd1638144cc2e17de0156c8cc694f9b6abdocHeodo