URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alliedhealthmoh.gov.my
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-21 04:08:07 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-21 04:08:10 103.6.198.158borer.mschosting.comNot listedAS46015 EXABYTES-AS-AP- MYno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-03 18:18:13http://alliedhealthmoh.gov.my/AVIS/https:/Repor...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-03 16:52:10http://alliedhealthmoh.gov.my/AVIS/https://Repo...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-08-21 04:08:10http://alliedhealthmoh.gov.my/AHPiS/balance/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-03 20:50:21a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612ddocHeodo
2020-09-03 20:50:16a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612ddocHeodo
2020-09-03 20:31:032bb99d9824b62fad58399309008db0c35224a435f3128a9f1104bae218fff192docHeodo
2020-09-03 20:30:32e5115c3e86dd21ece011508d8b1b576b6b5b38eefde8dea14cdaac4a6a06f4e0docHeodo
2020-09-03 20:25:16349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cdocHeodo
2020-09-03 20:21:46349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cdocHeodo
2020-09-03 20:07:303d79b0e046a8c799ccb81e9bac59c0b8f45b767a92e8c32465ebb56975ddbbc5docHeodo
2020-09-03 20:01:19bbb8481db8d91e443182bfc4898ed75ed829f7120eec1117572bc21d3c7f611bdocHeodo
2020-09-03 19:54:08c6100db3ca252938aefab6362140d6d30f93610ca723dc5fcc71f3caad117317docHeodo
2020-09-03 18:18:135fd0bf16f99dcc3a2daa90cb5c60a390dc2f606e53f7456676d02fdce15bd282docHeodo
2020-09-03 17:04:535fd0bf16f99dcc3a2daa90cb5c60a390dc2f606e53f7456676d02fdce15bd282docHeodo
2020-09-03 16:52:10b14443ae26e257ef4d41a942b378470af758b31d9c8d7946861ebb13f8f853dadocHeodo
2020-08-21 21:22:36200499c68dcc60878ae71de919f5c504609c692cabee5d1c61193cff8ae83cbedocHeodo
2020-08-21 19:51:20f916381df1861ea591a02695d5c3c47c0f322c985d141897e6b8da198a94c718docHeodo
2020-08-21 17:55:078907a6bfe58eb538c48ed691e79d7df49c9371412cb30a157f323e7bae524b19docHeodo
2020-08-21 08:05:51a8d9be27c76a90124652ea8d92479f9651ed136612532d9f34b4c0b8bb78fc25docHeodo
2020-08-21 07:45:3528f2d62905428be69bb94405cef4459871fb4d34be7d8e1cd99be4088802ce60docHeodo
2020-08-21 04:34:48dc32f2320e3eea2867f2d17d7b197d17d280e5c08d14b6d978c34c1c2338e4fddocHeodo
2020-08-21 04:08:107112a5a9264a099d9056f3d980c95fead062c56ea04362528c505bcc6ddd2b1ddocHeodo