URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: amoy.biz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-21 07:26:30 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-21 07:26:34 159.138.22.127ecs-159-138-22-127.compute.hwclouds-dns.comNot listedAS136907 HWCLOUDS-AS-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-21 07:26:34http://amoy.biz/wp-admin/statement/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-21 16:51:19fbd63265ff2f62db6c66adcef3562a678b0243b77f9be2a726d4bcf87f68a9c8docHeodo
2020-08-21 16:30:45c6a5cc3476c048456af1997e698dc72231c1be3e590f6c9783e8adf136320f46docHeodo
2020-08-21 16:06:1577460cc133315ccdfbdaf1546ce45acc79abed14bb832947ca2dd33c1425dd49docHeodo
2020-08-21 15:48:59c8ec1a9b7d385d96166c22f142d0437768d0db460b1cbfcc53cd796bb0662569docHeodo
2020-08-21 15:25:0933da171c98a915b6b46ee6b15f06b10f57557c479fe659f138921a4578264ab1docHeodo
2020-08-21 13:53:093e8208734b44f5600a38c69cd3cd3275d2fe8dc82af7ec78c8619383741b66d7docHeodo
2020-08-21 13:32:407e98e23799012588113a6d4c049b1b61fc8e47b51c62af6f7f6ce336f28057c1docHeodo
2020-08-21 13:13:07a733a4e6024de8fb8639c32f10763eb1350346440beca5654a2d0dcb93ad94f0docHeodo
2020-08-21 12:50:5292ce63816306ff769b615c927a2677d7a4d1eecdbe7e6bc825ce4a446df1bc7edocHeodo
2020-08-21 11:19:376eb69e6bf953f664d116b1f723231c894c54ff4b2482e3f9d1120b10fc541bd5docHeodo
2020-08-21 10:57:25d88027c8f802a9c670d326835d3153aadf2dd191cf9bf60148bc6532b6614402docHeodo
2020-08-21 10:40:59433bd7014b1db029a665161fac7e7d4bb209d6f0f7792f575de1d3696e80c064docHeodo
2020-08-21 10:26:45a8f4d3cce2e44d80f854033bc5abd85b25fef08d58f6cd0c2e3624ab6c5833bbdocHeodo
2020-08-21 10:08:2883912e356ffc063006637864e3ceed204efd7141ac92b7ff91fc4e3372c2552cdocHeodo
2020-08-21 09:42:45a4308cd5bf5a11d526bb77831b37c61fd990824875e2f12e11ec5a6ef1fbc863docHeodo
2020-08-21 09:37:37eea83be73bb6b63138b070ecbc75bc0af0a8f6540fb9125735eda75701adc2b5docHeodo
2020-08-21 08:05:519bef601df3e482ea5b723a710c2086bab43312b7c275da979b1765cb7660f060docHeodo
2020-08-21 07:45:4528f2d62905428be69bb94405cef4459871fb4d34be7d8e1cd99be4088802ce60docHeodo
2020-08-21 07:26:34dfa53b1ba591b08dacd3b798dedee90d559b092102517b46cd1a04bccf51e386docHeodo