URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: baldcover.com
Domain registrar:GoDaddy -
Domain registration date:2019-12-09 03:20:15 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-11-26 23:58:03 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 12:01:43 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-27 12:01:43 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2022-02-19 02:20:24 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2021-11-26 23:58:04 173.201.188.69ip-173-201-188-69.ip.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-27 21:44:10http://baldcover.com/wp-admin/oRwkRUWpbJ55/Offlineemotet ext epoch5 exe heodo ext Cryptolaemus1
2021-12-24 11:37:07http://baldcover.com/dnmbjkt/cUhGdpuBLj4LJWji/Offlineemotet ext epoch4 redir-doc xls sugimu_sec
2021-12-09 00:44:09http://baldcover.com/dnmbjkt/Ad0DM2BZq/Offlineemotet ext epoch4 redir-doc sugimu_sec
2021-12-04 01:40:14http://baldcover.com/dnmbjkt/QTkxQZ2Gnn0HHvRVH3...Offlinedoc emotet ext epoch4 heodo ext Cryptolaemus1
2021-11-26 23:58:04http://baldcover.com/dnmbjkt/iyu8nA/Offlinedoc emotet ext epoch4 redir-appinstaller Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-29 18:45:118d0954ebabc708b305288a3c6315c41f05473c2fd0f4d67a4604a59e1a838b63dll Heodo
2022-01-29 18:40:04a6404324f7728124fd66fe92072129b83a92f5ac82c5aea783b664bc06c2e9fddll Heodo
2022-01-29 18:25:32b1806d96849b045aab44bb193fbb0afcdd8606e789b86e01155c99c3e45bf9f2dll Heodo
2022-01-29 18:08:106a7d5e9a83125652939909b290f5c0074a3128770c3bab31a20f0f600a3dcb5bdll Heodo
2022-01-29 18:00:104bc6f81826d8805d9bbd1e824c4c776b3d1bc29e0118995c3e312df1c33351f7dll Heodo
2022-01-29 17:43:53947fe87f4d7fd74fa694d7ff93db83c0d7784712c6d68ba07a5583cfc547667adll Heodo
2022-01-29 17:25:348ece0a1abe7d323f6af3e5d67e334b155e3d07683ef913890fe09a4cabfe3fdadll Heodo
2022-01-29 17:12:0207bbbecaa0c847fea144ed2306591b052eb8cae3bb7311bb5311ed76f81a4699dll Heodo
2022-01-29 16:56:29e53654120724b8632419d61e45569ccb8614150e14e8327df31052a675c9bb29dll Heodo
2022-01-29 16:42:246f30cea80f226ed19a2247397db3e79e086344856f1719e2d402291b8420778cdll Heodo
2022-01-29 16:24:267ee6c01580d57abf22adfff90474223ca09ac3f4a086cba9d601ebb2c57d33f3dll Heodo
2022-01-29 16:18:32e936351418572adbe897d804156fce519ac9da3d394112add5598ad04816b9f6dll Heodo
2022-01-29 15:59:20286ed442fb50c305d7195fa69bf3e5b8e6151952f5d8bd08867f0352ea7ef53bdll Heodo
2022-01-29 15:46:14cc43d86225a6cdc891e4273a15157205bd65f6b3b5c65eb5e411d39c6d598593dll Heodo
2022-01-29 15:41:4933ac8c4c6f286cc5a979dd10bc00ecd5cd9215ad7bf6dbb5420eec5f1c6a1cf8dll Heodo
2022-01-29 15:28:08edc687801ae21b0f6886ac4fa9f7e3244cee5c053169603b28fb36a6a9266357dll Heodo
2022-01-29 14:46:41e2be54b52baa5a0250b68ef842902e6ca4cbcdfc148e500e67cd34ebec04e627dll Heodo
2022-01-29 14:31:430aed26bbb44d6575b83dffd45f2e3f698404ac7d80eae7d54f19b59c7819ed33dll Heodo
2022-01-29 14:18:406d1570376846ef69da688b678990448fb0762a1d7cc89e5d5b01148e5d1eab20dll Heodo
2022-01-29 14:06:58be63a499edc918f5998433bb3ced7dc199d5adcba96ae80e771e7fe0601f9af5dll Heodo
2022-01-29 13:46:324ee5a54149c13b81843b27cfcc3174f3cefeb0af98b28a048918c39b3bc26423dll Heodo
2022-01-29 13:34:284b0e9ca97487c16aeed2391d380f9a09b7ab95e15c7af12db73a910c131dc1a6dll Heodo
2022-01-29 13:22:420f4a23e68ba492cda45389747386f936abcfb6b4b7139f89aa3fc2abe3783949dll Heodo
2022-01-29 13:09:39b59c67fe1984dfca782a4974ee36ccf102cb5d58ea292290789729b8c8c9eba8dll Heodo
2022-01-29 13:02:317c20192cb7a0460647fb330de4992922f1de1d55b267a07d825bbdd92f54ac49dll Heodo
2022-01-29 12:43:210a778e2198027914d29a6a535c087627e0f0f5ca7b02163517bb087205aaa62bdll Heodo
2022-01-29 12:23:437ac3bc35182e99e27d0e56c06b9a6f0cfec8f83adeda82b1c34f28d1f6199f53dll Heodo
2022-01-29 12:09:32b0e62a31d18b383ebcc228b27b36dbf5a155559b960581b109563aa2e78a8ed2dll Heodo
2022-01-29 11:58:233f80a1c48f6679bf558fb76e72371c1cbbefb031cbf736ce11bc46e05f88b2a4dll Heodo
2022-01-29 11:54:36dcf8128b0df1d18ac6fc2bfdcd38373db8eb8753d786b4f5217e29665718aabfdll Heodo
2022-01-29 11:28:276b11c6ecd7dc08031829c2ea5409604974d9ec6459b6211211df714718247332dll Heodo
2022-01-29 11:25:552e6916e5b8fcb5c3518b04d3588d835c6d946206fb7e872ecfdadd6bccc1e2d3dll Heodo
2022-01-29 11:06:35123b8031bdf8d03779b59d7742e4998bc0570dfe1f6beb67aca7c40a8d740e8edll Heodo
2022-01-29 10:54:11d4450f1d97c0b9d4c280fd24c000054533e5ddfde5ec3d18f3cdb44b6b069d31dll Heodo
2022-01-29 10:45:03716b0b4b9765afb1c293e0ecaffdd491cf439e302b42be38579ba4ac0053390adll Heodo
2022-01-29 10:26:1334b3956b331e963fae2dc43f20cd903e7e8cac69c61db3364d62d88c35591a74dll Heodo
2022-01-29 10:11:52a2b7bbb3da202aff60773f9d4405f332ff17c8c48c595df8af9b8907175c3ad7dll Heodo
2022-01-29 10:02:0463b166d9bb6b9544f931313743496d43b8af46a22fcd3c853bbd5ad3f6275e92dll Heodo
2022-01-29 09:49:40b79bad80b7ee47e78922443b82362ee153ed160d102f55e3887f9cd28b8e9631dll Heodo
2022-01-29 09:36:27e5a9a58292687f6f520c651af53c1b18d9bf62b354dd8acd68d1b0bddcc9f376dll Heodo
2022-01-29 09:15:2446af0b3c7d8489ee17b0cb8f53aeecbda270060e9831219397063c0bc47600b2dll Heodo
2022-01-29 09:01:5632fc8751ba3c995b30efb7d833c58b4f9f061633ed59b5fa7989624158e4cb22dll Heodo
2022-01-29 08:46:40701f9c4ecc8fdf4999999e4183be8117c14e548346c386292e2fe46efa22bdcadll Heodo
2022-01-29 08:34:24e72946fc314af754601c2975c74f994ea46008091d9dc6f8b722d99e1ec617f2dll Heodo
2022-01-29 08:22:23f49ccb91625a591f4daa5feaf828403f561ffcbbe1c0100bf05494dd943bb51fdll Heodo
2022-01-29 08:09:41b23514ed52ca90df2b84e1e4c185058a96c45b22ad692d414d91a6288eacae2cdll Heodo
2022-01-29 08:02:53452fe94f3945bc60c6ad1534a079824cd3ebab6eade1da059b9bc329d80f3b97dll Heodo
2022-01-29 07:36:37d51b4ba3e93600724affd2736a68b0cae166465e7a0e1c1e51719009233d518fdll Heodo
2022-01-29 07:26:30cb798ee6b03c5c420a5bcf59bcfc3f3d30a41c733cb26adfac328631867ca962dll Heodo
2022-01-29 07:17:363c3fffaccb2f6fe1e16d1a60124c7c15cd1f7d809ed47ffd315716f7dded7567dll Heodo
2022-01-29 07:04:11c718c99f30707e236017e90ce9bebb02ce25d8b2d5f0b22c71d754b477e9cb63dll Heodo
2022-01-29 06:43:30a1f623b026f077a852cd82c5dca6ff9c8ba818b0b37823cb843d36c08c4d5657dll Heodo
2022-01-29 06:32:2931af39b9bd06a13b1c7391d6694c38ac6968a3ff767a66581ef831575855c72ddll Heodo
2022-01-29 06:11:562ac6a8c30f153ec112a57dee824ea1a095f3ddeb585139c255139f5884eb8c16dll Heodo
2022-01-29 06:03:42853d96449beabae5bb4e4a345ddf83ee0e92b17a84f72a086281847580d04a02dll Heodo
2022-01-29 06:00:36e21558776e16e9a50660b0dcd8a99237e0f1c792765d084cdd263f931c28eb02dll Heodo
2022-01-29 05:49:049646f8fa9c8e90de762479271d179f164c0da76aa6412890c2141dc92c1b0278dll Heodo
2022-01-29 05:31:11a23921b11fb19ac2156062dae41ba16be7f6ab88f961d72aa89b2cfefa2d3f4fdll Heodo
2022-01-29 05:13:53cdf7592640213036bed0c52d7b7ebd0aceac3cf853a0b9d444e56a6d83e5d9aedll Heodo
2022-01-29 05:01:33ab82a1e8ee693a6194723534f43e9204975a8ade00e081a17838f70600dddd27dll Heodo
2022-01-29 04:42:477e03ae2572e86a2d43ed64fb2b51d53502c2f3f64dfc414082f4cdea5d243befdll Heodo
2022-01-29 04:32:430b6bbc96f34ec383fba945119234428bf345e67508f04e62f0c78f32c1b5864ddll Heodo
2022-01-29 04:26:541fd0383e934bfa3cb80af6d3b704ff84fa6bf4cede442bf84f2f20080567bf4fdll Heodo
2022-01-29 04:00:336591413d0f5dc523d63927efc22e66ca14cbb4280c182c16c015254a9808a982dll Heodo
2022-01-29 03:48:40e819d280abc4ae6354aa15d82769ed4ddc349e8a39b61cb45afc8dc758be83dfdll Heodo
2022-01-29 03:31:355263f7e539712ea0528e93202d8ba6fa52b06ef3de12fba3019775c2bdd8c9e8dll Heodo
2022-01-29 03:18:09231d2c5530d72947004a4f15883fd86d5d02e2a07f837497ad43c46651b50c6ddll Heodo
2022-01-29 03:02:36d682ead92de759873ece14b55adb6db1490cad2c62ab6a252c168918124e9a71dll Heodo
2022-01-29 02:49:1490648d8cd658b30d47c493b2cc6b6b38177d059e8628bf628b08a33b3a3b45b8dll Heodo
2022-01-29 02:43:54331dd0b3e85237e842dd09a50cae9471187cec6c0bd44f6e5ac09b81bb8f215cdll Heodo
2022-01-29 02:15:4534dda49f22f4f3c8089557174799f5c101a3653975fd38b13e818093cf5f9f32dll Heodo
2022-01-29 01:56:077fca80b90d7f22b22e609e599e4eb1524545540bdbdf384d5659785350d2457adll Heodo
2022-01-29 01:43:38b18a1efb1147c590d2d1d10a7354856be8466b0d3e8ae9164bb316430053ff78dll Heodo
2022-01-29 01:28:36009b6235acc7225e1709528467ac860e5b4735a1310a6b94625b44cfe46a6e79dll Heodo
2022-01-29 01:10:021a9d928de29093a4ae2fa4a1572e6a2a74cf7d421260e254e44e449777072d1bdll Heodo
2022-01-29 00:55:175cea100b1581dfe7f50ad5a26c8929b4e280c8c375512adc092e40179973ed2ddll Heodo
2022-01-29 00:36:4901083ff316bd7053b75a6a83e2662f7a9ec1ec03c587c358925a12698f9ffec9dll Heodo
2022-01-29 00:29:52a846ef4ac3ce67c7d0961bd7acc3f97e9d0b342335c1be27fff77bc2ac822ebedll Heodo
2022-01-29 00:14:28a56508b813e2b53bd40c52549b7bf3ffa6da5c0e756e12b892e9f23aa7c69d23dll Heodo
2022-01-28 23:59:2501c14293774cc649a57c0bfe13e605bd22b27b24a6ce051bd935976169f7277adll Heodo
2022-01-28 23:40:32ac04af8ab6502f03359364e42bfe1319c073cf77002dd1e8b14ba35c0304d1e5dll Heodo
2022-01-28 23:26:1400af9a0694ae0aeafea43085a2cdb6746c1a0d93f48677d360e91c756b48c331dll Heodo
2022-01-28 23:09:436e02169d8270f07c55d30082cbfc7d429cccda61692976eb59798b5e3ede46b6dll Heodo
2022-01-28 22:53:561a023951ca0efea5abc13df910ca32e1401102a1235033d0869d2b4f892fed5adll Heodo
2022-01-28 22:44:01b6ae2240013c695c0a16d9a854c56b9a17f004172def4ca985338221f65820d4dll Heodo
2022-01-28 22:29:30a6fb26cf7e35e6b45555533a5af707a4a9cbe815268b68a1aa64591a87c76a53dll Heodo
2022-01-28 22:19:250be13561cbfa1c506ec159017e3c0bb3773191e9f104ef33d5eeb3fe56c41e9ddll Heodo
2022-01-28 22:00:36704feffd542b901f025feb559b012b563c636bf0c96d8e39723f02df0418c33cdll Heodo
2022-01-28 21:46:55b0fd0b4a813e84dd1497ca9fa3ff6939e24ae5b5b0abc5a19027b8048f21db97dll Heodo
2022-01-28 21:22:36f518b4ce6942a04453d02653d8b6f22a20a9d5296a89afe4171838ec97e1d0b1dll Heodo
2022-01-28 21:03:15d785782d0f3b17c27a6a5004bb94f7a91fe32584fa322db9b0eec1546c5d456adll Heodo
2022-01-28 20:46:316c823f5a0ac452e73742ba299b4e925f832bc133b335c4142b859f225f3c1c28dll Heodo
2022-01-28 20:28:44731fd353b6bd8be051829fee56aafee41d1da3f209d593220bb495f813f3627adll Heodo
2022-01-28 20:17:266c840f9f937999d4565dcafa3e8dc4778e4f7d00168c464eea2c7e41b1759536dll Heodo
2022-01-28 19:59:395bed9b2b787f0e36d31a7f88fe7c3002fc225d34a75110fb6ec655a303258d8ddll Heodo
2022-01-28 19:44:127c0f580147bd2e238983c53eb0b73168ef74e1db91b3791f0b7733dc08daa8b1dll Heodo
2022-01-28 19:31:33dc07872f7bf55eaffda86af5cee6635f1ab02340f5083bddea1ec717745de873dll Heodo
2022-01-28 19:13:165abd23f8eca95e5744892127c766fcf2268b586228bc921aa22dda7fb745f09adll Heodo
2022-01-28 18:59:142db3e8d3e3a2539d824c91373c47aca3173c1a369812db9074d857d23747c4d3dll Heodo
2022-01-28 18:48:23d4f6a05bec01070e42daa872837aa8ff1f761d658c7cae61c62c977d1409f26fdll Heodo