URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alfapress.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-04 13:00:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 16:30:39 64.190.63.222Not listedAS47846 SEDO-AS- DEyes
2020-09-04 13:00:08 201.87.225.8ns8.twi.com.brNot listedAS28660 OPEN_SYSTEM_LTDA- BRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-04 14:30:18http://alfapress.com/form/http:/browse/mt5wzrld...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-04 13:00:08http://alfapress.com/form/http://browse/mt5wzrl...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-04 16:01:31b246ae5854fc909f2e54163de7a8e78ef5de5a8648ec2768c6533c0ad65a15d5docHeodo
2020-09-04 15:59:17b246ae5854fc909f2e54163de7a8e78ef5de5a8648ec2768c6533c0ad65a15d5docHeodo
2020-09-04 15:37:5260417a3fac59e91bb0031c7e6fc97a808021296c159f11631bc3ac3e34ec5603docHeodo
2020-09-04 15:35:2260417a3fac59e91bb0031c7e6fc97a808021296c159f11631bc3ac3e34ec5603docHeodo
2020-09-04 15:22:5720f0a0ba4cd0dac615e918dd489d36a9dbe9da8eccd28074379ccb9297f44202docHeodo
2020-09-04 15:22:4020f0a0ba4cd0dac615e918dd489d36a9dbe9da8eccd28074379ccb9297f44202docHeodo
2020-09-04 15:11:039b5118c972be1fdccab96caaa3644530d5a73cefcb8b7a048497c43b3e1867dadocHeodo
2020-09-04 15:04:379c82f57cbccf6ba04020fd7828aff371796a2f69e908f5ecf8c25d921a13abf6docHeodo
2020-09-04 15:02:25edbc22e742e12b2af45a775673812f2c751b4f9071a83b9565d3d547fa380655docHeodo
2020-09-04 14:53:380568526f45b6dc177cf7e11a8bf286cdd2b253a794da1153795aeec136ba3313docHeodo
2020-09-04 14:53:340568526f45b6dc177cf7e11a8bf286cdd2b253a794da1153795aeec136ba3313docHeodo
2020-09-04 14:36:40ba82dfa2da1757e5cb6ed6f9bb2d2c820d055dbab664b798475fd4a94d8476b9docHeodo
2020-09-04 14:30:18d7452abd23b4d0a252d67436bea5f98b177d6d4a707ce10ce71852940cf97a3cdocHeodo
2020-09-04 14:10:047160ce21f102d1b919bee53947094d83fd11055b2eadb90b11d5923498d504c3docHeodo
2020-09-04 13:44:49cba83b613d73f634da924685c3cfdd701edddbc80bd28399548cbdee1e5f4df1docHeodo
2020-09-04 13:26:224f1efb479047eb160b579acb41f5f020b5c98546b837d8f74862d98ffef4840cdocHeodo
2020-09-04 13:17:2322541ac301b5c8fdf15f74cc06df0c5a237bfe5593f910699acdaa3ae869edd9docHeodo
2020-09-04 13:00:0792292a49939cb6ff5b8d8da77b4c5a898f4d833bbf5ec9fc2ec997e254c91e35docHeodo