URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: akuntansi.upr.ac.id
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-22 17:24:03 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-13 05:16:09 104.21.6.7Not listedAS13335 CLOUDFLARENETn/ayes
2025-11-13 05:16:09 172.67.134.32Not listedAS13335 CLOUDFLARENETn/ayes
2025-10-07 13:04:50 103.168.21.124Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2025-04-29 16:18:14 103.168.21.242Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2025-09-10 20:32:32 103.168.21.243Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2021-07-05 01:39:21 103.168.21.200Not listedAS142329 IDNIC-UPR-AS-ID- IDno
2021-01-22 17:24:05 103.76.200.177Not listedAS135480 AGTI-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-22 17:24:05http://akuntansi.upr.ac.id/dist/vY9I74AvaQNUc99...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-29 15:13:550ccb445a3ac3105e0441ad64f7aa8b0f34ceb186bfd4cde4ee582f9efffb6587doc  
2021-01-23 15:25:56526866190c8081698169b4be19a6b987d494604343fe874475126527841c83a7docHeodo
2021-01-22 21:59:34377ccf81bc50553f09c559652bad5ec67c73c649cb60ba53cfd01f39a52e5ad2docHeodo
2021-01-22 21:47:475baed32dcd265a53a8f5f4182bfa79336ffa1acc17f1ab71e8387529a82b10cddocHeodo
2021-01-22 21:40:478af280e70fb92f35455e9f18296c0fbaae42288517c6925a9db673a9368e9bf3docHeodo
2021-01-22 21:25:19ab6d3be4c24da3e9c1df9e970119843a19dd372e08d3be797ce636117a71cb15docHeodo
2021-01-22 21:04:13912f6f38547eca79cdd2f66b1252ac5b777f454c8d4da059d319ca9a42d1cf24docHeodo
2021-01-22 20:22:24d25d5d359b01bb46095375c553f2b4ea91e2e4abee77df10d21d6ab08740dc97docHeodo
2021-01-22 20:05:44a9e7d57e01fc4d6f2d10be4bf46a18c3ee912fd05dfbaf30a11ee950efab43a1docHeodo
2021-01-22 19:54:330c12f24715c776b1cca7c4fcae52f35da82d11bc17f962cbc7a01b7baf4e0078docHeodo
2021-01-22 19:42:11df7956bed96a8d21cc40f5f0abfb5fd98df9ca8f98982661f6ad3c9bf38a2740docHeodo
2021-01-22 19:26:3318eeb3c4acd968e5fb4a847ef4eb4953690be2b5a9ad36d6f82a9cbc7caa7a53docHeodo
2021-01-22 19:19:581d6af24aae07d7b11397907b44aa3108efeaaa211b182a6dc28246b79a36a2c4docHeodo
2021-01-22 19:04:57c47dd140c6bc057daadb9ee597e65f4354bd84521ed7631a0f100eb027f6adb8docHeodo
2021-01-22 18:47:20e35524adab62617f979bf2093ed1c81d50ea11bbf40b3f32bc000a58fe99a39cdocHeodo
2021-01-22 18:34:5579901cb00c81b1c2bb626096ee6bdf18e1bb6e757f7c48c0bf1c0377e9d3cde8docHeodo
2021-01-22 18:20:38d22a8782e2f9702d603cc082a1578d1b26f7fce4c1d01ecbff337d9b68e2a21bdoc Heodo
2021-01-22 18:08:2119eabf766e8a1eab6d6736638f9331a3ed1606b329cf336e4a564c8b0ab220f4docHeodo
2021-01-22 18:03:21e26acfd8ba9ac131426a2d9667e8ad19344e9977a884531fd2a2127615481f99docHeodo
2021-01-22 17:47:04cb61a7b158e7abd85d3eae1f24f813429ca19d16a207e7263022e5ffa0b16fd8docHeodo
2021-01-22 17:36:44077fd7de4590c86cef6c92180c5d65a613bc17a38f749b04ac9ec8d2bee2ecafdocHeodo
2021-01-22 17:24:050a1a62f399d64c1fbffd740358974f855e76f9dc173292b27ce0eee5abb689e8docHeodo