URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host anja.nu.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-11-28 17:59:02 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-11-28 17:59:0291.189.41.170da-www11.ballou.seNot listedAS29024 BALLOU-AS- SEyes

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-05-16 11:16:19http://anja.nu/FNNjSOdy/Offlinedoc emotet epoch2 heodo Clean@spamhaus
2019-04-16 23:11:06http://anja.nu/1_oq/kxIz-Ib4sIxgeM2KkNc_tTkmJZkNL-aNR/Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-04-15 05:34:09http://anja.nu/1_oq/8_3/Offlineemotet epoch2 exe heodo Clean@Cryptolaemus1
2019-03-19 22:34:03http://anja.nu/a9maK/tygq-e18oxb-uifqpt/Offlinedoc emotet epoch2 heodo Clean@Cryptolaemus1
2019-02-07 21:26:08http://anja.nu/PxWO_BNXS-DIEN/8ql/Transaction_details/201...Offlineemotet epoch1 heodo Clean@Cryptolaemus1
2019-02-05 20:23:08http://anja.nu/llc/Inv/ehUD-HlD_GQ-4QD/Offlinedoc emotet epoch2 heodo Clean@Cryptolaemus1
2018-12-14 04:48:08http://anja.nu/LXCJ-Yfkdih3I8qVHGB_LHdzTQBtu-kaR/SWIFT/Bu...Offlinedoc emotet epoch2 heodo Clean@Cryptolaemus1
2018-11-28 17:59:02http://anja.nu/EN/CyberMonday2018Offlinedoc emotet Clean@Cryptolaemus1