URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alifgame.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-23 22:13:34 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 20:11:02 52.60.87.163ec2-52-60-87-163.ca-central-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- CAyes
2020-09-23 22:13:35 51.75.16.151151.ip-51-75-16.euNot listedAS16276 OVH- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-23 22:13:35http://alifgame.com/pharmagen/browse/h7QKm5TXoQe/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-24 05:58:1324e031fb985e7f9a012366503ac58c163c138850f5707b5029a5793b27857ba5docHeodo
2020-09-24 05:26:367e1702f3524958efa4f4593977306fbc177c3bdef1bc8c04b3e900cd4aa2c5e9docHeodo
2020-09-24 05:07:143255f1ed97c4519f14543bd413301a4ab6e48765f7a405b5efdb7428b2a586d8docHeodo
2020-09-24 04:43:31f936c9284d2c66663fbc538babb06de38024bfe3272f41be52eec3fb8025bc6adocHeodo
2020-09-24 04:09:452f8c5f8173199d582e3535ffcda34ccfa553e9b5d8ab915b54d4d0307061ed19docHeodo
2020-09-24 03:59:43031a4e9cda99df5d982b2b59480f2354ba7a4f13a3f6d6366feff317bf4820f6docHeodo
2020-09-24 03:26:529b6ddc314258dd07193fca458631855ec60eaf598557379f4bfb34cf178a0d41docHeodo
2020-09-24 03:03:480bf5cdd3f37f117e4ae69a13ceeb2d812055e6bb5b5119bf9adbf69d4218d63cdocHeodo
2020-09-24 02:36:32d459ae5f366703f6a9c1ad00f597a966ab17bbe733d0eb970e94a9e1ed912dc7docHeodo
2020-09-24 02:07:17a1eadd639edafd2b4c14ee3c756169cf8cba0b790c132d2a40f21f5febfecb77docHeodo
2020-09-24 01:58:39f6dcaaa7b1e36ac14966538d45c8a37232030e1426436a26542239f6c4b15eaedocHeodo
2020-09-24 01:25:4394e4fe6c73db0e80100417fe60ab8d9b1fe7fc9ece7a2923861e1e1d42717d4ddocHeodo
2020-09-24 00:53:36e70e596d135c977fff3ac2431028c138f7a11cea81bfb9a9ba46ea0e0109a67edocHeodo
2020-09-24 00:36:34627da70ae807d43827d68ed505588ad930a9e5c02c294477c5910f844b3a7c30docHeodo
2020-09-23 23:54:25a8f0618803466ed187aec2039b42491adb06253fdb89c826203fcd757992967edocHeodo
2020-09-23 23:43:01bf610aa108a8cdb11b895e0c49cbad7b781810f1c4b95a051d0a75ad830563badocHeodo
2020-09-23 23:16:50f3d1c3c53293c401bc39848174a8b6877d25542de861e94b8e6560c63a4e94e6docHeodo
2020-09-23 23:05:331ffeb45aff1c0f5aa29bae90eae313b09ddbf7345bd6be0e2d8c1daee921b873docHeodo
2020-09-23 22:24:368034f804eb73d852e44f3747467758493a197f329723f30b0ab6da31d8e40acfdocHeodo
2020-09-23 22:13:3510bf4255bb35705c86bfc4a5baf98ad46011a82c6c1af9285cf8074cafab5ca8docHeodo