URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-05-14 14:04:36 | 104.21.63.92 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-05-14 14:04:36 | 172.67.145.27 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-04-27 11:56:19 | 91.195.240.94 | Not listed | AS47846 SEDO-AS | DE | no | |
| 2020-08-10 16:42:07 | 172.67.142.89 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-08-19 09:08:05 | https://anike-cafe.com/wp-content/payment/cr6ng... | Offline | doc emotet | |
| 2020-08-17 08:55:17 | https://anike-cafe.com/wp-content/available_dis... | Offline | doc emotet | |
| 2020-08-14 08:09:04 | https://anike-cafe.com/wp-content/Scan/5rki97gd... | Offline | doc emotet | |
| 2020-08-12 07:46:05 | https://anike-cafe.com/wp-content/MSXAYXNH28/ | Offline | doc emotet | |
| 2020-08-10 16:42:07 | https://anike-cafe.com/wp-content/thpn8-kbqar-371/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-08-19 09:08:05 | 4589b2c9c55160cfba586f5c761b72a4ccb854efc8d976fbc866e4da3fdd7ead | doc | Heodo | |
| 2020-08-17 08:55:17 | f98994a898e97dd2173021aad49d223a8fec7b5320dc209cc1ee76335433b672 | doc | Heodo | |
| 2020-08-14 08:31:49 | 2eebfbd4ed595d6a6754f0d2d3290d0c641d2b43989d4f6181b757eba278cb8a | doc | Heodo | |
| 2020-08-14 08:09:04 | 43c592e78307702281f1105969aad4a99aed3a1cd8b87965c1724b3e0e2f08de | doc | Heodo | |
| 2020-08-12 07:51:50 | c1fa35b6c7a58f242d40e16aff41da8efdbf7797bc4664439e5915811a02a7b4 | doc | Heodo | |
| 2020-08-12 07:46:05 | 1e1197d27bc4e2c81bf36570d41052b3f74d24df43ce0250b2d53d7b2269c20b | doc | Heodo |
DE