URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: andreortega.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-10 14:39:14 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 15:38:17 191.6.210.241web2153.uni5.netNot listedAS27715 Locaweb_Servios_de_Internet_S/A- BRyes
2020-08-10 14:39:17 177.12.163.106Not listedAS28299 LWSA_S/A- BRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-25 10:18:09http://andreortega.com/erros/esp/k43sy9-04244/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1
2020-08-17 07:54:35http://andreortega.com/erros/sites/tw0xkh4giy22/Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-14 15:29:07http://andreortega.com/erros/browse/8xyfr7g9n4w...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-12 15:22:05http://andreortega.com/erros/9o9jvmr8315552613s...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-10 14:39:17http://andreortega.com/erros/nt_ozq2y_k6s88xxcau/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-25 13:02:234871a197b77fb46d935ba43171514c1656ea539726b2f6ce8f25e1ea2ee7bbbcdocHeodo
2020-08-25 12:57:051bf5d7614469da00b63a08e12e4bf47d770e513d25b3ea2b7c5d1c41efce2f56docHeodo
2020-08-25 12:35:00405654615f3911822fb1308fb3ce06b494f56022f5936e7a5688f6837127d5dadocHeodo
2020-08-25 12:14:384122524c8bf16e1b806ed06f83c63d83e0778049148c4e9b4d4e7f5a6484a9fcdocHeodo
2020-08-25 11:53:55421fe6eb17eadc9ab409e323b454b959d8e2a07533f1f9f1020040e691c5162ddocHeodo
2020-08-25 11:40:47a25cfe50842cba43845ecbc8ed2718a837b93bc46253d719ef1569122e9d4df9docHeodo
2020-08-25 11:13:51ce0d9a38622cd500c47b8abf0f739db8b9247dd7c5e430d0606955fbfcb5b919docHeodo
2020-08-25 10:51:3652b6c67df2a895a98d3cde7dd664e2fa6ccf834e9efe8ce45666b2cf3ef79594docHeodo
2020-08-25 10:32:33aa82e8b60d6b43fb494d39d8377b7f650a9947c940fbcc492d47f4c56a2e0afedocHeodo
2020-08-25 10:18:09ebbc68d1c28b7a52b1670721b36dae6c8949cac5d18db750dc40ec5ed94ca78bdocHeodo
2020-08-17 13:41:03e133b2532ff82b4c7a856fe6a8733a9b037dc379a78bcbf225fc48adfd05dc8edocHeodo
2020-08-17 13:14:49d5e5ecfa8564cc761ba6a5d09a86d46d724b9ba7290069aea93081d4a64d0f7bdocHeodo
2020-08-17 12:52:4013def6e8f5dd2909bd67cbe188104f4478248a4488bdce7087b9b5f82002344bdocHeodo
2020-08-17 12:46:55e09f8b16fcd72b48f4d5422bee8e3f6be9141f7e26e325b4a0c63298c9053e87docHeodo
2020-08-17 12:30:339540841d5a15ebb8280e5a0b0c4e0550866c812b17a52e82874644551b877d73docHeodo
2020-08-17 12:11:565703c758f1686aafaa3e8b0dc664b5956216319aa48e2188e759ffdcbf68aa02docHeodo
2020-08-17 11:48:57da9dc42c7c6633c150e79f8c1cdbad078bd29454742d4b23a921cf5e30442a09docHeodo
2020-08-17 11:24:2208c731bebb1d85d885be1410af6889e2eb74e0336043a575380f9f098b5c73fddocHeodo
2020-08-17 11:10:525a5b97fecebf06a8a144646d11dfa2f6914a38a973036bee20c75d221747f487docHeodo
2020-08-17 10:48:4798b945d93a035bdab99b81e33963dd916377a238e5127137af130547bb458500docHeodo
2020-08-17 10:33:126c1889f65b8bc270a14f3add96e10072161fa6ddfeb215d558f3cf77943cb94adocHeodo
2020-08-17 10:15:234c92dd4427eeab992c68a28f70dd48f4976aed5fb0212c9c84151d09fb3dec15docHeodo
2020-08-17 10:01:15290a88fd37c8a07eb104a0bffb5fb13c1b784057a87bd7f9f96ca35fdb1836eedoc Heodo
2020-08-17 09:27:408d38a6081eae6f7f5138a9186763cbde03a86957d7d6ae4fbd60076d38acd5d7docHeodo
2020-08-17 09:10:320cdecb6053ad442fb90c7079c9a9c448230a460e84f64b1e5a72c9f7b2387a9cdocHeodo
2020-08-17 08:55:304363fc523995de2f965e7508de32dfa577fb373b56ff499d9fd33f05a4f5c909docHeodo
2020-08-17 08:39:49d1c764b60735bda5bf33569cde881f5fd48a931fcdfad23b1f48ef9ed9d15242docHeodo
2020-08-17 08:27:2573516f060b142c5c05b09d416c699d03bf8cb6181e2e8176d228aeff9218776cdocHeodo
2020-08-17 08:10:197399bb9b029f65a9a4528dd38c3a41536101a606d7bd9c68358a5e51923527f4docHeodo
2020-08-17 07:54:34ca90f587858edd139ab61a341e6700e32893714aeeec9af430132658c2c6b3a2doc Heodo
2020-08-14 15:29:0709a12e9a564989724153522d0689745cf96517c1ea384b92eeb0f66628f5821edocHeodo
2020-08-12 16:45:08272b2ee94e735c0b96219372ae505aa8689e9790ff6390568311fe3eb01a9f2fdocHeodo
2020-08-12 16:24:42a271c8c4e792f23b038df5aa420090f4cad1de687dea9c0926e46940966b462ddocHeodo
2020-08-12 15:53:5215e6a2e86090b828cc6be0aba08cfc3ed663209595f77e8c6d06c1ddf494a4f2docHeodo
2020-08-12 15:22:05c5e841364744d13971dc52d0aece885c8a87fe5c27109085ec2f5047ee7e826ddocHeodo
2020-08-10 14:39:16009b31d6cd7e088556899ad8654f87acf3b73f455ca07a8c9fe6f9c11b1de356exe Heodo