URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: arrozvaledosul.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-07-16 20:28:52 UTC
Total malware sites :9
Online malware sites :0 (0%)
Offline Malware sites :9 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 12:57:06 191.6.208.61web154.kinghost.netNot listedAS28299 LWSA_S/A- BRyes
2018-07-16 20:28:59 177.185.192.138Not listedAS28299 LWSA_S/A- BRno
2018-09-12 10:31:30 187.17.111.96Not listedAS7162 Universo_Online_S.A.- BRno
2018-08-03 19:32:25 177.185.193.52www.congelado.kinghost.netNot listedAS28299 LWSA_S/A- BRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2018-08-03 05:11:15http://arrozvaledosul.com.br/sites/En_us/Recent...Offlinedoc emotet ext heodo ext unixronin
2018-08-03 04:23:54http://arrozvaledosul.com.br/sites/En_us/Recent...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-07-31 13:23:25http://arrozvaledosul.com.br/Tracking/EN_en/Offlinedoc emotet ext heodo ext Anonymous
2018-07-24 05:29:35http://arrozvaledosul.com.br/files/US/INVOICE-S...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-24 05:29:34http://arrozvaledosul.com.br/files/En_us/Order/...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-24 04:10:07http://arrozvaledosul.com.br/files/En_us/Order/...Offlinedoc emotet ext heodo ext Anonymous
2018-07-21 08:09:49http://arrozvaledosul.com.br/files/US/INVOICE-S...Offlinedoc emotet ext heodo ext Anonymous
2018-07-17 04:38:25http://arrozvaledosul.com.br/newsletter/EN_en/C...Offlinedoc emotet ext heodo ext p5yb34m
2018-07-16 20:28:59http://arrozvaledosul.com.br/newsletter/EN_en/C...Offlinedoc emotet ext heodo ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-06 19:18:21207f084b0cc2eb26c4a7c680a886e3f9bd65f45eed695d504743d6bbaafa9856doc Heodo
2025-11-03 11:36:42497be5f773cd826c4e352aef2ba0ceac18117e7709a3353a413eef2fddfef2aedoc Heodo
2025-10-10 23:06:448bfdf6fe5f6a3aab367939407088cab9cdc7215d1220770b5a857fe832d2ea02doc Heodo
2025-10-05 09:34:55ded0188704539af363423444158a1e9a652ca587b4c76d1a4f4eac4e64cce1bcdoc Heodo
2025-09-24 21:26:247411a3de5ed22351f99283b783d220317c83f854e4053e7bdeff393042238186doc Heodo
2018-08-03 15:33:50497be5f773cd826c4e352aef2ba0ceac18117e7709a3353a413eef2fddfef2aedoc Heodo
2018-08-03 15:31:39497be5f773cd826c4e352aef2ba0ceac18117e7709a3353a413eef2fddfef2aedoc Heodo
2018-08-01 20:47:23207f084b0cc2eb26c4a7c680a886e3f9bd65f45eed695d504743d6bbaafa9856doc Heodo
2018-08-01 16:39:06ddfa667a6805bf8b9216feb8df15b1590c340914d7142aa142ecb858d117ba9bdocHeodo
2018-07-25 20:30:29ded0188704539af363423444158a1e9a652ca587b4c76d1a4f4eac4e64cce1bcdoc Heodo
2018-07-25 20:29:59ded0188704539af363423444158a1e9a652ca587b4c76d1a4f4eac4e64cce1bcdoc Heodo
2018-07-24 05:29:357411a3de5ed22351f99283b783d220317c83f854e4053e7bdeff393042238186doc Heodo
2018-07-21 16:58:327411a3de5ed22351f99283b783d220317c83f854e4053e7bdeff393042238186doc Heodo
2018-07-21 15:53:338449b8b0faadcfab22485004ccc56e221ddf48083c8569741996115ef56452f2doc Heodo
2018-07-21 09:51:3625dc7d8c8e8880651752382dd3bd8bb32d363bbc5b4d75b8f8ca91105ff4d509doc Heodo
2018-07-21 09:29:488222a199549f259a4b3d2dbb1d1258957c16ff4df0d37eab65a05891de34c091doc Heodo
2018-07-18 18:59:158bfdf6fe5f6a3aab367939407088cab9cdc7215d1220770b5a857fe832d2ea02doc Heodo
2018-07-18 18:56:138bfdf6fe5f6a3aab367939407088cab9cdc7215d1220770b5a857fe832d2ea02doc Heodo
2018-07-18 11:10:20e7db2087ef7f0f80640c7f62a493da43eadb8db5f5af90ef1cb55e68a465696adoc Heodo
2018-07-18 11:05:13e7db2087ef7f0f80640c7f62a493da43eadb8db5f5af90ef1cb55e68a465696adoc Heodo