URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bawatingbarter.com
Domain registrar:Tucows -
Domain registration date:2015-04-14 16:11:18 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 13:27:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-11 13:27:05 66.49.200.140Not listedAS33139 CANACA-210- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 13:47:06http://bawatingbarter.com/wp-admin/Hj7/?i=1Offlineemotet ext epoch4 heodo ext SilentBuilder xls Anonymous
2022-01-11 13:27:05http://bawatingbarter.com/wp-admin/Hj7/Offlineemotet ext epoch4 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 02:18:34769ecd4d91e53cc734ede1b06a3935096e838020e44061032964dd769dda3968xlsSilentBuilder
2022-01-12 01:53:059b11e81f1bfc3f451bbdd806e824f0d31da068337b6cb9917dd053e1ee6f1e80xls SilentBuilder
2022-01-12 01:25:02926c822e2c4d78b252f788d3fa75a77bfed1380ad50cdacf21f3efddf15b0b26xlsSilentBuilder
2022-01-12 01:07:389d277bf6e9b937c6b9d79db16b78f65ef5346b79c5c68fd3fda71a4e18171fe7xls SilentBuilder
2022-01-12 00:37:21f7d338277f13461262faa21c960479146f4261acc6efe564964f5cd0370afd6exls SilentBuilder
2022-01-12 00:15:3759f00806db4a68a10acb6aa0f9ea1d21c2e8527ff2b82d0ab36196ba0bda9183xlsSilentBuilder
2022-01-11 23:49:0966f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6xls SilentBuilder
2022-01-11 23:22:37b5207887a27a42330a6b8e863e0550008a6375de1f4c9c6c0edcc7a9bb6d548fxlsSilentBuilder
2022-01-11 23:02:18207177c3c5eb0fe56e8614f9107063106f39167ae239ada435312ba0455fe349xlsSilentBuilder
2022-01-11 22:44:099b3fb2f88edc75661d9aba9ccac4bd15607dbf2fa7542c47be3d533c0db5cbe5xlsSilentBuilder
2022-01-11 22:15:0614222deeec10d32091a2947e045833bd25c041a662f4090df26e50381cf922c6xls Heodo
2022-01-11 21:37:40a88137e6086255207269b721d3cdb9d6a67cbb8861ba98d4681f83945fa29299xls SilentBuilder
2022-01-11 21:28:598ea7ac4cc4dd1576b45451813ade47420f9196a212e173e174aada937cb8f4a7xls SilentBuilder
2022-01-11 21:04:461db259b0063d26f9af684e7246d336250e289514a4e900eab1337ee9981a866bxls Heodo
2022-01-11 20:48:47b5d8116e0b4f01eb2affa09d857d1be4df2e18dd793e4ab0b6ad28e0d5eadc15xlsHeodo
2022-01-11 20:25:44b3a64afe3a1360279c7354909eb0733a15870549ca068a851cb8dc7b672ee168xls SilentBuilder
2022-01-11 19:59:56426fda840765e44250686f1102e902242babe0cea36a756beac6c0757a73c28axls SilentBuilder
2022-01-11 19:30:05e8ada03261f05e1c91d784bf58d10322d3765c686bb4a52278362e0e62288d1bxls SilentBuilder
2022-01-11 19:11:48afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292exlsSilentBuilder
2022-01-11 18:54:02fbc4a5db3ab48741c10a226dae4e2b64d924110962224bef57910478251cf3c7xlsSilentBuilder
2022-01-11 18:29:5060fdf680c8e0272784588bf87ead2814df683a2fcb697522ddd4ef323166440axls SilentBuilder
2022-01-11 18:04:28e540aa4c8a0a7eb9acf80aa3e76a804c5f492a69e052e33584c0ce432b33de75xls SilentBuilder
2022-01-11 17:37:311e4e0feb94cf74d61c7557fd8b7883f71b80547083bc339bc808b9703d4c03c1xlsSilentBuilder
2022-01-11 17:24:360c9de24621d73ddfb33b0d2607b84d523a103ff59e318980f134dac1726e11a6xls SilentBuilder
2022-01-11 17:09:000237b96acc934eba1b920d0b6fa654c22128101417298a9f940ca2e53c85dab9xlsHeodo
2022-01-11 16:46:37b68760371e947df68d4f69a1f9b43a56de082932df771b0ef088adaae130931cxls SilentBuilder
2022-01-11 16:26:357955874a069fbde3eb5144ea8420f8b9e80d0c8ccd822c21b54150e53608116cxlsSilentBuilder
2022-01-11 16:15:142f80ecbe8f3eb45c354fb36640dc4be6b13064be8550f2d49e41090e5c113b72xlsHeodo
2022-01-11 15:53:41b2da6497f1aa462b4a1d85850ad5678c234ce46599e4a574a23be7c9219cedb2html  
2022-01-11 15:44:36445e137304a2c43b06f0c98f4655f6fc4d69db7ae73ddf9094295c48f0701047xls SilentBuilder
2022-01-11 15:24:30373dd0fc010f3afa78272ed7188d737887d6a5cfe8bbf35a5264f5c1984ffe9chtml  
2022-01-11 15:14:51bdb3e9a556bc850867023c8e1c5ea1e20cda48c72bd0396ef667d3352b14d65fxlsSilentBuilder
2022-01-11 14:59:23bcd9548679c87026f7119b2a46f731fa2d1c20fdd1ba546f5e20281b30ade8e9xls Heodo
2022-01-11 14:40:4912db004e136ba9f8fd95d9d6e3a08d5b3cfde159c0ca3f99a75df8922fbdcd85xls SilentBuilder
2022-01-11 14:21:45b5772788406d55232df72c3ea2ae90ecda40f165c5246b1328bc173905630adaxls SilentBuilder
2022-01-11 14:02:40474cb0554cd5fb8976244c74a115a07164b25952cbbe6e7868a99045b435f535xls SilentBuilder
2022-01-11 13:47:0547a014028cebed64173cb46e977d3e69a2e2f9093b15d2b3e4aecb9d9edce1a3xlsSilentBuilder
2022-01-11 13:27:040bc3a67cc8ee714a707af57645b4581ba61e32336d59b4d071c0f43ba3bf35b9html