URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: akademik.upr.ac.id
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-22 16:28:03 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-14 03:50:24 104.21.6.7Not listedAS13335 CLOUDFLARENETn/ayes
2025-11-14 03:50:24 172.67.134.32Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-16 11:35:52 103.168.21.124Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2025-04-27 17:41:38 103.168.21.240Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2025-09-07 13:53:36 103.168.21.241Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2021-07-04 09:36:43 103.168.21.200Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2021-01-22 16:28:05 103.76.200.177Not listedAS135480 AGTI-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-22 16:28:05http://akademik.upr.ac.id/wp-admin/NUEpk0o2ztkS...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-23 10:00:54526866190c8081698169b4be19a6b987d494604343fe874475126527841c83a7docHeodo
2021-01-22 22:02:14377ccf81bc50553f09c559652bad5ec67c73c649cb60ba53cfd01f39a52e5ad2docHeodo
2021-01-22 21:47:41d369edd4ee295fafd1231bb5d370fff75a48505360a64708bce6418c7f2974a1docHeodo
2021-01-22 21:36:218af280e70fb92f35455e9f18296c0fbaae42288517c6925a9db673a9368e9bf3docHeodo
2021-01-22 21:27:5726e5e6911e1f51c17316418cb81c5e699c0f986235871bc9e8c1c473c6109655docHeodo
2021-01-22 21:19:49ab6d3be4c24da3e9c1df9e970119843a19dd372e08d3be797ce636117a71cb15docHeodo
2021-01-22 20:32:06d25d5d359b01bb46095375c553f2b4ea91e2e4abee77df10d21d6ab08740dc97docHeodo
2021-01-22 20:14:1714f0eae441176623b724e20538f6ac72f501b60f4c5c855b651ca9cb1e9d3782docHeodo
2021-01-22 20:03:16a1714164bf96046b86ee335216b926f51c376447578ad9dc401301d954033388docHeodo
2021-01-22 19:56:235b8a09ecc983f2bfa3c172b58755d141faaaa80c8016de77c9cbcdd83805d5abdocHeodo
2021-01-22 19:41:59fa1737d67834c7d10ef916c5a121bd48f8e7f0164065a6124aa0d0ab5e046cb5docHeodo
2021-01-22 19:27:1218eeb3c4acd968e5fb4a847ef4eb4953690be2b5a9ad36d6f82a9cbc7caa7a53docHeodo
2021-01-22 19:14:09c7f261f11d0e317860ef68857f8457e85439e702a7c90170b9b74b1508656b99docHeodo
2021-01-22 19:03:1818a322bc3bc173a8128d00e372d608c3251f083c2587e69c79ec037933928d39docHeodo
2021-01-22 18:52:38df5ff0dd34808825942b6b896c5129f63bc36f8fbbba7f3ce145cced467c662adocHeodo
2021-01-22 18:36:281d2d80a3a1d3ba28ca88d827cc5fb6b166f7d41b3f91065e8448f691275bcd3cdocHeodo
2021-01-22 18:15:46361afbb90589c1dbaba30c9c8b380772449df5b01544e084fe473b501f583129docHeodo
2021-01-22 18:01:43e26acfd8ba9ac131426a2d9667e8ad19344e9977a884531fd2a2127615481f99docHeodo
2021-01-22 17:46:15908db1a1a1782ad566ed5e71adade16d6f3d976df9e5481a602ddb4d7ad53557docHeodo
2021-01-22 17:31:48c56e64333878661b5c0a2ca6fafb49c64b2c59dcbbc71dfb9835e5b22d7a80ffdocHeodo
2021-01-22 17:27:120dc0f00a3ed385b6bff2f9188766ae977a173405c9bfed86474e9f7fccfde9c1docHeodo
2021-01-22 17:07:459508eee151055a57449b53d6489e0a5241de7ef21bdc4599af547a5f1831b538docHeodo
2021-01-22 16:54:20980a3949995d00c52383ec46cfdb15a05a9ad20aea7fc2a11a834a7ceffb5484docHeodo
2021-01-22 16:46:18fa73aaf86c492584aab024beb61b333cb383c5a742ae789e1c20f40d599a9457docHeodo
2021-01-22 16:28:05f7b23a3585cbaee380651fac4f092837b16af530c07e962be54d5a1d005a6300docHeodo