URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host armourplumbing.com.

Database Entry


Host: armourplumbing.com
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Not blocked
Firstseen:2019-02-05 19:33:13 UTC
Malware URLs:4
A records observed:2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-04-12 07:37:42 162.241.224.221box5216.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1 - Unified Layer- USyes
2019-02-05 19:33:16 108.160.156.65host.strategichostingservice.comNot listedAS63410 PRIVATESYSTEMS - PrivateSystems Networks- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-02 16:57:03http://armourplumbing.com/wp-snapshots/sec.accs.docs.com/Offlineemotet ext epoch2 heodo ext @Cryptolaemus1
2019-03-07 20:36:03http://armourplumbing.com/wp-snapshots/b726-cqj0tp-bdek.v...Offlinedoc emotet ext epoch2 heodo ext @Cryptolaemus1
2019-02-07 20:21:03http://armourplumbing.com/QwtG_G0udJ-dWggiWt/bB/Messages/...Offlineemotet ext epoch1 heodo ext @Cryptolaemus1
2019-02-05 19:33:16http://armourplumbing.com/iNTw_mA-dr/WV/Clients_informati...Offlinedoc emotet ext epoch1 heodo ext @Cryptolaemus1