URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alifsaffron.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-24 19:30:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-03-03 10:47:05 166.62.27.171171.27.62.166.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- SGno
2020-01-24 19:30:06 103.50.162.86md-in-92.webhostbox.netNot listedAS394695 PUBLIC-DOMAIN-REGISTRY- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-28 01:16:04http://alifsaffron.com/kf3xn4/parts_service/sjq...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-01-24 19:30:06http://alifsaffron.com/zayb/lm/3alu3fq-061-0991...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-29 08:04:351534ccfe1534d9878a0a56cd190b78bdd2843a896a6d89a54d52ac95be848e2edoc Heodo
2020-01-28 09:12:34a42772fa59afc7ba2e87cf8a02a2080453cf603a67d65c61f4f997c1c2dadc06doc Heodo
2020-01-28 07:59:29726fe3a86f202ffbce80e52bd30501e05747819355ed9bd32f0c7346a497c7eddoc Heodo
2020-01-28 06:49:246f3fc64cc5874fc03f7e564c4c117aa694fbce96e69e40c4a52b96a5d6b84211doc Heodo
2020-01-28 05:31:163460ecdf6f2885cbca4dbfaeb9196093bcc127c677e3e966ed8f4ecb6f971a61doc Heodo
2020-01-28 04:41:217eff6e61b3df124ca02fd6ae860683afe4dddc1693d6ad935c6c72bc802e3aaedoc Heodo
2020-01-28 04:00:18854df2c5586d2b84b721ec3629949c9a2c869ad4f475cc430fff5c43c97f6fdcdoc Heodo
2020-01-28 02:59:2812cb9a696c928d5347914ba61c58f74f4325b953f17d1b61389ae0d83b3dbb75doc Heodo
2020-01-28 01:44:2258bdad9d43b30d842f24c31a148e0cdc1eece34f7cef371f645e629b24660d43doc Heodo
2020-01-28 01:16:0483d8bf9d5a0256280709583f3ad786defc1e58af3bd40d9bf8bcc5dedb0c72addoc Heodo
2020-01-25 09:11:4734aa6087e68b3ce662e6557691a32813facf9d5a8b055940a76193565f6473d4docHeodo
2020-01-25 07:52:2282502d97389b52420a89c59792e89c9012bad643c6efafc2ab355c42348061fddoc Heodo
2020-01-25 06:35:4706c3eb09c595f155b5ae5b2e8ac7def23fa2071d4bff2bc2971f179f13af8ef8doc Heodo
2020-01-25 05:56:16f6efddf78ac516b99d6d834ebe118415379d5593e4c70ac96e41652eccea183bdoc Heodo
2020-01-25 05:06:3577e2aa77712b7f311fea3b709151a169a167939c0f6b2b52fad53a9359c5a413doc  
2020-01-25 03:35:2592f9fc62eada40e103255379d9cada21ecde4872e2a831693013931114092d00doc Heodo
2020-01-25 03:21:2705bed2b23f26d7f17d926b8304834152c02bd583aeb18ddb18f2d337cbe79b4fdoc Heodo
2020-01-25 02:27:28c79fe22f5ce8e4bf2048ebeec0b3343dec9d1103cf25b2a4652ad99a71ff5601doc Heodo
2020-01-25 00:25:2210ccb0e6114b2932239292f029d8acd20c85228b81942340acfa1379b887ba02doc Heodo
2020-01-24 23:54:18beb418fac94ba2a2b91d0bac25451bf7db44d12526967fcf2ae4b68e4e111b4edoc Heodo
2020-01-24 23:25:20ec1f5c0ff3763fe4d47fa7ac7c202a880b346e9ddf76590b4c3f6a94c65c2cf4doc Heodo
2020-01-24 21:53:23e0eb5c2414cedd2eb2e4ab88353a5ec141b0fe03459be273d0bfe2239c066b07doc Heodo
2020-01-24 20:50:45724a5541c2dcfa538c7d02e7780bc282cd11b6a24d622368357e21d2889bf4bbdoc Heodo
2020-01-24 19:36:23896452af752808027107c0f7a41cb4de636717765e1af0637cb871dcefbbc0d7doc Heodo
2020-01-24 19:30:06c854be4327a261b1ad92b0ec41c4d62534b453b7b9b55ebe874b392b3aff9f98doc Heodo