URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: amaarhomes.ca
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Blocked
Firstseen:2020-01-17 16:56:07 UTC
Total malware sites :1
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-27 13:30:34 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-07-27 13:30:34 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-08-20 18:34:24 104.21.25.241Not listedAS13335 CLOUDFLARENETn/ano
2025-08-20 18:34:24 172.67.134.236Not listedAS13335 CLOUDFLARENETn/ano
2025-06-01 09:08:57 142.132.203.115ronak.blockspos.comNot listedAS24940 HETZNER-AS- DEno
2025-04-27 10:51:56 37.27.129.102static.102.129.27.37.clients.your-server.deNot listedAS24940 HETZNER-AS- FIno
2020-01-17 16:56:09 95.216.26.57c14.tez.hostNot listedAS24940 HETZNER-AS- FIno
2025-07-24 10:50:43 186.2.171.26REMOTE-DDOS-PROTECTION.PROXY.VPZNot listedAS59692 IQWEB- AEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-17 16:56:09http://amaarhomes.ca/scss/eGHgoiqi/Offlineemotet ext epoch3 exe heodo ext unixronin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-18 10:36:3160d8175e0a4a6e115ed79800717cc27bd3e8d8b88af2f81823623c1b3fead089exeHeodo
2020-01-18 09:10:5454f54810bcea0c746a74a59d61cf8a4c67c2e10bf3cc260f68459b55a2465bffexe Heodo
2020-01-18 07:49:35adab54b8bdcf46a8aac294fe80b2dc47c586c2f1a85ac8388fdb957718da953eexe Heodo
2020-01-18 05:47:29e72c68e714d715ed7f2191d78555acd49e0bcd0f0895e9f784c2b36f70951428exe Heodo
2020-01-18 04:13:2996b89a95761176fe9db0ca4258911d2feb752395c40078c0ee7b68c80cc88c95exe Heodo
2020-01-18 02:52:341c3ca4facaee11d7776b377abf3ab1ecf49be5ca3be08477c529b9841598718cexe Heodo
2020-01-18 01:48:05de520cf939df3c2d6761a7cb9b5de683afafd72a9ec2269bf736022d1dd5faccexe Heodo
2020-01-18 01:41:30bce0fa82f5e40839e13f98c63e16c87c92320b5c4765ab0a1733369982365889exe Heodo
2020-01-18 00:32:2703a83670a9ec11cadd480cfbc22f586565fd31122dbb07ca8775fc53e0d4b7c7exe Heodo
2020-01-17 23:25:37f2d145148f79c486e5c101950054c44310340fe15a8dfdac25be3d87ce6a8cf3exe Heodo
2020-01-17 22:20:3669ac727a603b267bbc91c7068802336553eca7e7001189a863daac3c4e3711b9exe Heodo
2020-01-17 21:42:17d3a3a9e5c48781d09e374301ef68fd62638857232bb056e061442893ac6e35e2exe Heodo
2020-01-17 21:03:29b8a9529a73f681c8e2894e040723fd43340b2fdf0221e8ba9c63d5cd3df94ebcexe Heodo
2020-01-17 19:22:207b721f468e3e66aeed7f46af4a5c7beee280bedce2e5704ae735a23ba0cda04fexe Heodo
2020-01-17 17:58:13caaf099849ef5df26ffcf2ebf683712c72681981cb53a526be3818ffb1b58238exe Heodo
2020-01-17 16:56:083bb036928ef279b4d8cc2f698a7876ea60425cb2ef83921eeb5723f9a53e3d5dexe Heodo