URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: anaekppystdy4initalymedicalconsultancy.duckdns.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-04-27 05:50:10 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-04-27 05:50:18 103.89.90.2Not listedAS135905 VNPT-AS-VN- VNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-04-27 05:50:18http://anaekppystdy4initalymedicalconsultancy.d...Offlineexe Loki ext oppimaniac

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-04-28 23:38:47773d5474e464c6837ea51b61c7b40d85e4644aa5f93b2ffe668c02568970c4e6exe  
2020-04-27 05:50:174118da509f4aace1799d5880924a4101d8ed8ee746e0a03a7f47f3cec76eaf58exeLoki