URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: alphasheild.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-17 13:20:13 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:26:36 68.178.153.221221.153.178.68.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- USyes
2025-06-24 15:37:56 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-06-24 15:37:56 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2020-08-17 13:20:14 151.106.26.182Not listedAS29066 VELIANET-AS- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-21 16:58:12http://alphasheild.com/havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:58:10http://alphasheild.com/493havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:58:07http://alphasheild.com/489havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:58:05http://alphasheild.com/453havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:58:03http://alphasheild.com/414havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:58:00http://alphasheild.com/400havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:55http://alphasheild.com/294havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:46http://alphasheild.com/26havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:43http://alphasheild.com/258havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:30http://alphasheild.com/24havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:21http://alphasheild.com/23havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:19http://alphasheild.com/215havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:16http://alphasheild.com/1havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:14http://alphasheild.com/18havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:09http://alphasheild.com/176havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:07http://alphasheild.com/16havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-21 16:57:05http://alphasheild.com/157havymetal.exeOfflineexe Trickbot ext p5yb34m
2020-08-17 13:20:14http://alphasheild.com/metalf.phpOfflineTrickbot ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-21 16:58:12cb14cfde1a13ff2af4e59b91ed9dca3bb0e024dd24cd671271fe98da8dd16b48exe TrickBot
2020-08-21 16:58:10c512b38e476dada9b7b00d34625c8d543fa927068893482d8f521cddf2aadaa6exe TrickBot
2020-08-21 16:58:07ef0378180ee06c4ea1ec113e9a3a81c528c958e2ba57d820f1e0b79839931192exe  
2020-08-21 16:58:059bf3b7bc3edb97d5100813d5552ef3d3f30c733c19d73088a557c7c35e41b91fexe TrickBot
2020-08-21 16:58:0353827c2bc5a14548fc69edfab8e05aaeae25bc6f7c3127e55a139a04cf47e7beexe TrickBot
2020-08-21 16:58:00dc3e693b38502748bd4f72193705fbbc87bec00d38f62353f0d86079bea7e527exe TrickBot
2020-08-21 16:57:55671c9537d12d7d62425dcd7260a20cd4b360403a9ac96c4c75670e3bd07ba21aexe  
2020-08-21 16:57:46a3b1da76ef8f66bbba22d9c6af1f271737c8430ad18aea981ea54dfd913bb345exe  
2020-08-21 16:57:439ce8e43223dbe77ae6eb93c9b52c4167324de5af4dfefc8dc769364ac0c06d73exe TrickBot
2020-08-21 16:57:304ae7c82b0152b375a4e1279d7df7ee6ebd44f5e3d6ecbfe53b81d3044ba25bacexe TrickBot
2020-08-21 16:57:211f281fc8459610058e7a884b51fb73347730853759b4acdb5dbb9d8dcce0868cexe  
2020-08-21 16:57:1983e8b4e8bfda13e8c079c87624bfe25808cc9aa4b74b00b6543f9c0f11984242exe TrickBot
2020-08-21 16:57:1685125d31afb7e4e43c181645e084eb414ca27d0f174b19cf9fe6bed39b8f8721exe  
2020-08-21 16:57:14c71ab925c9e567f64d8229d912b8380f302dab3648f51b0e8284ebef0504d1feexe TrickBot
2020-08-21 16:57:0999dc1e6c7b821f9931a796496e2daf6fd4b6d71112fbe4db628346500754ff33exe TrickBot
2020-08-21 16:57:07c35df2c45016aac3807290fd0a5fc5ccf2f11cd9ff8aa90cf9185fa1e1fa0632exeTrickBot
2020-08-21 16:57:058bd6232899bb78f16deaa1b35ea040027c74c7f0d7028cd5b35507bbf79eca97exe TrickBot
2020-08-18 02:45:3153827c2bc5a14548fc69edfab8e05aaeae25bc6f7c3127e55a139a04cf47e7beexe TrickBot
2020-08-18 01:54:2899dc1e6c7b821f9931a796496e2daf6fd4b6d71112fbe4db628346500754ff33exe TrickBot
2020-08-18 01:23:33dc3e693b38502748bd4f72193705fbbc87bec00d38f62353f0d86079bea7e527exe TrickBot
2020-08-18 00:40:49c512b38e476dada9b7b00d34625c8d543fa927068893482d8f521cddf2aadaa6exe TrickBot
2020-08-17 23:01:52ef0378180ee06c4ea1ec113e9a3a81c528c958e2ba57d820f1e0b79839931192exe  
2020-08-17 22:49:1783e8b4e8bfda13e8c079c87624bfe25808cc9aa4b74b00b6543f9c0f11984242exe TrickBot
2020-08-17 21:04:47c71ab925c9e567f64d8229d912b8380f302dab3648f51b0e8284ebef0504d1feexe TrickBot
2020-08-17 19:24:379bf3b7bc3edb97d5100813d5552ef3d3f30c733c19d73088a557c7c35e41b91fexe TrickBot
2020-08-17 18:36:42a3b1da76ef8f66bbba22d9c6af1f271737c8430ad18aea981ea54dfd913bb345exe  
2020-08-17 18:03:2685125d31afb7e4e43c181645e084eb414ca27d0f174b19cf9fe6bed39b8f8721exe  
2020-08-17 17:45:29671c9537d12d7d62425dcd7260a20cd4b360403a9ac96c4c75670e3bd07ba21aexe  
2020-08-17 17:14:28c35df2c45016aac3807290fd0a5fc5ccf2f11cd9ff8aa90cf9185fa1e1fa0632exeTrickBot
2020-08-17 16:59:591f281fc8459610058e7a884b51fb73347730853759b4acdb5dbb9d8dcce0868cexe  
2020-08-17 16:44:318bd6232899bb78f16deaa1b35ea040027c74c7f0d7028cd5b35507bbf79eca97exe TrickBot
2020-08-17 15:12:169ce8e43223dbe77ae6eb93c9b52c4167324de5af4dfefc8dc769364ac0c06d73exe TrickBot
2020-08-17 13:42:16cb14cfde1a13ff2af4e59b91ed9dca3bb0e024dd24cd671271fe98da8dd16b48exe TrickBot
2020-08-17 13:20:144ae7c82b0152b375a4e1279d7df7ee6ebd44f5e3d6ecbfe53b81d3044ba25bacexe TrickBot