URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alfalahmarketing.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-11 17:21:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-21 16:36:46 64.37.52.22rapid.nsjet.comNot listedAS33182 DIMENOC- USno
2020-08-11 17:21:05 51.79.176.44ns5002356.ip-51-79-176.netNot listedAS16276 OVH- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-11 17:21:05https://alfalahmarketing.com/img/multifunctiona...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-12 04:49:499e95cffa8cb342aefdb7f8c1a029adcd48d1304b400d07318215436dd2894341docHeodo
2020-08-12 04:32:09e5c2116828d317efeac4ff3a7fe2092bae369fbb5265db371d919a3ffa037cefdocHeodo
2020-08-12 04:17:0797c96d516ed17d4020cd6eb8bc30414a3c99e2d192a3ac91fe520cca444b1924docHeodo
2020-08-12 02:45:22106b70745b6bbcd2a3b1590f596682076f039f584ccde6df0ca12dab353fb701docHeodo
2020-08-12 02:29:356fa74bb52572c68bce1d712b488aea9184f884d85ef22b26492011dc0fbec3a8docHeodo
2020-08-12 00:58:43972372bf61555e5ac2960184e0c02960b7ecafaf9af5649d7ab2c7d0ef73e090docHeodo
2020-08-12 00:43:472d9d999204b6190a6e91bc1da7b0330466f17a916b33c2cab9bd681bc5060e10docHeodo
2020-08-12 00:27:31d61bfdfe3cb1c215d30ba7049a17251c36f1029c9d6bca013dd3bbbbcb8d6b64docHeodo
2020-08-11 23:43:07db2aadedc60eea4a3a77bfbd6c1334cfca2091f721e34c196cde4f47624bcb90docHeodo
2020-08-11 23:00:33d135bfa839f7aced43217658d78cc59d8c51a7120940e59b3c805612e1b276eedocHeodo
2020-08-11 22:50:260241b1ed7a1656dab5d9fe64b7e59fec547126495769ca53d78220090b494889docHeodo
2020-08-11 22:32:138f5d6af71053c703ef6ac42971b9c19766bb0682e793b8f295af1453eccb5023docHeodo
2020-08-11 22:17:37593a1eee983e1c66c480fc52ce564f0ebb60c48d5cadef3f5ed4367d32f1112bdocHeodo
2020-08-11 22:02:057100d7486bcccf991906541b709fd020c8cf3aebaed5025f37c19ea15924b034docHeodo
2020-08-11 21:48:29fd98e040494ec96249be1460752ad33da1d1a230de136873e2c99e72fdbc336fdocHeodo
2020-08-11 20:15:076bbbfea0979ddea7c5b31d79ead31b118ac7455812560b7e9bea64b8d1cc3366docHeodo
2020-08-11 19:57:181bd68b07b524ffb4ddcd903f20522ebbaf7108f9f695e901551f5d4f90013345docHeodo
2020-08-11 19:44:34505bf00a3f0c6b5d8ececc410f78de1bdb0fffc8fe7a3324166448fbb3a213f0docHeodo
2020-08-11 18:12:17e589ae383d2dda4770ca6a4cd98ae21ad8e8230567a0c3c2dd5fe33395d90cefdocHeodo
2020-08-11 17:54:56308dd9d0b4a83eed9cf0f4d5014a22bbb9f37b197d9f8304612cb48397cd5404docHeodo
2020-08-11 17:39:519081c21cb26135e8d85675222746dc6dd85b90f195e45ca7cc051103751fa512docHeodo
2020-08-11 17:21:0543dfe63eff9212397ee2b7be571cd22d59ee8e88b32968034a655193a6ff6b71docHeodo