URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: administrasi.utp.ac.id
Domain registrar:CBN -
Domain registration date:2010-05-05 13:09:05 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-19 07:59:04 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-09 15:52:20 202.91.10.28Not listedAS38150 TELNET-AS-ID- IDyes
2022-01-19 07:59:11 202.91.10.92Not listedAS38150 TELNET-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 15:27:12http://administrasi.utp.ac.id/-/BBIAP5x/Offlineemotet ext epoch4 redir-doc xls sugimu_sec
2022-01-20 15:03:06http://administrasi.utp.ac.id/-/BBIAP5x/?i=1Offlineemotet ext excel heodo ext zbetcheckin
2022-01-19 07:59:12http://administrasi.utp.ac.id/-/L-36/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-19 07:59:11http://administrasi.utp.ac.id/-/L-36/Offlineemotet ext epoch5 redir-doc xls Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-04 22:58:2397456d73d2f8c5772f0674124f1ef5134c47ab288867c300d95ae1314a8b183eunknown  
2022-01-22 17:02:55fd83649a426e706a363449d7dcb503e4bf5b59cc3ab5d5a346e4ed308ec2e2f3xlsHeodo
2022-01-20 21:31:432dc878cbd56aa3817a893c118a8257f705517f72326c6d5424d2b498fcb0c54bxlsHeodo
2022-01-20 15:27:12a85b2c4b7934947e62afc598726f7b15d704574502db7875d7b1e3cd941fb872html  
2022-01-20 15:03:06edefd18d0580d8d25297bcddc843c3478c20f650b124224460ca9ae267529878xlsHeodo
2022-01-19 18:58:5684edb0a7a964669aefad50dd27f6a69ab2f4fc6cc70c1f10288a87104775a801xlsm Heodo
2022-01-19 10:42:42acc9c41ba96ed8a91406bebc1f1d41b88c26bf7e1446c8fc4301ee0b840e1759xlsm Heodo
2022-01-19 09:50:19a675b7d974851232b65d25e7fcd87697f9cbbd9a6bac4d21b14a1e249015d321xlsm Heodo
2022-01-19 09:27:25607f4df6b7ab8a7d31bb402433e135024645cbc3df474b2d4d4144e093a654d3xlsmHeodo
2022-01-19 09:26:11fb52c8cd5527da88fe38a96ea9bb45772d3a2e6e317d1e6249a301ae8ef05ed5xlsm Heodo
2022-01-19 09:01:42ff21e0d799e7757351192a77594d12cce77faf6ebc669816ad4bc37ded38d952xlsm Heodo
2022-01-19 08:54:17fbc47a25d026a1d3aabf04c65781142ef8d17ce0071e44f5925e33a2e3f715dexlsm Heodo
2022-01-19 08:31:17e48f46cd60cb0b369d14352daf83f4a07f78332ff849bf8acf3729fcfd19cd47xlsm Heodo
2022-01-19 08:22:37443dd2d26f74bfa06fd47b8f66378fa889268f0f6c4ced9fae74d7847811681exlsm Heodo
2022-01-19 07:59:12d145d8bd97ef82aed65a01e30b7523f9380bdef7e4af3cbb706c3fe571d2accbxlsm Heodo
2022-01-19 07:59:1193c882f153779c76d54d188d31e9bd7e62503b0429a138fc49a472a642edd03chtml