URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | amirahajjaj.com |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Not blocked |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Not blocked |
| OpenBLD : | Not blocked |
| DNS4EU : | Not blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2021-02-01 11:27:03 UTC |
| Total malware sites : | 1 |
| A record(s) observed : | 9 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-10-26 13:51:04 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-10-26 13:51:04 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-11-06 07:05:58 | 104.21.84.85 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-11-06 07:05:58 | 172.67.190.78 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-05-02 11:12:41 | 91.195.240.94 | Not listed | AS47846 SEDO-AS | DE | no | |
| 2025-04-28 03:15:32 | 209.124.66.12 | nlssr2.supercp.com | Not listed | AS55293 A2HOSTING | US | no |
| 2021-02-01 11:27:08 | 67.225.142.208 | Not listed | AS32244 LIQUIDWEB | US | no | |
| 2025-11-05 03:19:38 | 188.114.96.12 | SBL687667 | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-11-05 03:19:39 | 188.114.97.12 | SBL687666 | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-02-01 11:27:08 | https://amirahajjaj.com/s4mcmvqtt.rar | Offline | Dridex |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-02-02 04:42:17 | c65243e51ddff712ffe22c8251980cb60c6b4d067074abe23695d2aeb7bf99f9 | dll | Dridex | |
| 2021-02-01 22:12:20 | 3640f528016f39c4b2fd18f140d7cac8032cdaa21647affd7e92f1b5a0705949 | dll | Dridex | |
| 2021-02-01 14:29:19 | 0314272b35a3bd50abff3aedee1bb29145c24287801e3972c9b661e3d204a793 | dll | Dridex | |
| 2021-02-01 13:51:41 | 4b2a101f9e7e0119409b6faae798c1e9fada080f055509f477c598365e1f6618 | dll | Dridex | |
| 2021-02-01 11:40:46 | dd6039f57c72056748007b0dd5070aa7deac990972d33e8a9d5118122e559590 | dll | Dridex | |
| 2021-02-01 11:27:08 | a596c128ffc4901382848459d568fcb9d9b01efdbb375b0a0d3f785cf5457a3f | dll | Dridex |
DE
US