URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: asahalpha.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-28 12:25:13 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 17:46:10 154.38.182.113vmi2132141.contaboserver.netNot listedAS40021 CONTABO-40021- USyes
2021-03-11 16:56:20 51.195.217.183vps-9f7f9179.vps.ovh.netNot listedAS16276 OVH- FRno
2020-11-16 22:35:43 51.210.43.87Not listedAS16276 OVH- FRno
2020-11-11 09:17:35 213.186.33.5redirect.ovh.netNot listedAS16276 OVH- FRno
2020-10-28 12:25:21 129.0.160.15host-129.0.160.15.mtn.cmNot listedAS30992 MTN-NS-CAMEROON- CMno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-28 12:25:21http://asahalpha.com/wp-snapshots/tmp/7/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-29 17:18:38155ec21f70dc0e5b970649eeca09e5063d267c66df5c64dbaae1776cd18da4bdexe Heodo
2020-10-29 13:11:17d87a800c200c19de09158e05ddef63aa31363392d131c17a3edaed2ce342805bexe Heodo
2020-10-29 10:57:0218168dad05ec12ad6a11f6dc8f07d1047fc35004af72d410909ec942275709d3exe Heodo
2020-10-29 09:29:53f3bd52df6ee3523a463832f280546a0f4ac3507854e2cdd105a0a02a186e26daexeHeodo
2020-10-29 05:17:329ccab37e04e704482988452531033513f578ae675a13a1ff3b7feffecfa91998exeHeodo
2020-10-29 00:16:35aeb05fcfebc7a6d15ff37ec69e004d452279e760b5de530cf23da5adc612df32exeHeodo
2020-10-28 22:40:167b60ec64a6303f454282a7cec7b606608482a148f0e88d2a00ea97daffc1a4a9exe Heodo
2020-10-28 22:08:071e15ebee05608f301c336b11553e21e3b3b2b31d596440be76a4e0096ab7bb28exe Heodo
2020-10-28 21:48:47fb29b0be5c77d0282b5fbb35d7cd4d43fa93b760ea561ca6da9182fce54086d2exe Heodo
2020-10-28 21:28:19727529ba91321d656f0ab16f623d9570e11c8b506a518d84cceefadef4a24e29exeHeodo
2020-10-28 20:56:37db7559b11457bb523c3a2a38abded44a83565886021efce7b71691e9ccf3c7c2exe Heodo
2020-10-28 20:42:4314c148d0cb4328698cd0060ac00e14e97831d4f2ea6c3d904416abee8967cae5exe Heodo
2020-10-28 20:07:41564bf386a695771e541aa7cb739e53d14837095e78b796bdbdc6573b7d957bd2exeHeodo
2020-10-28 17:00:2829e383ca48b63ff3871dd44879870c6624003ecf80b7527c4e75d35122c93d77exe Heodo
2020-10-28 16:28:000c79bcbf425afa705c3e017690768bcfce02f380cbed68ebc365fcb9d6277553exe Heodo
2020-10-28 15:53:407aa6fa0631005f9ca227aedcc12a60eb96d53d17387ccb4fb2f3cc06d1ba3771exeHeodo
2020-10-28 15:04:1000e8861900e43c0d7514bcd93ea33d19146944a600752ca29f23d90207480454exe Heodo