URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bawn-steel-and-fencing.demo9lec.co.za
Domain registrar: n/a
Domain registration date:2021-04-01 08:09:35 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 19:21:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-11 19:21:05 129.232.136.231dedi703.jnb3.host-h.netNot listedAS37153 xneelo- ZAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 19:21:05http://bawn-steel-and-fencing.demo9lec.co.za/b8...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder sugimu_sec
2022-01-11 19:21:05http://bawn-steel-and-fencing.demo9lec.co.za/b8...Offlineemotet ext epoch4 redir-doc xls sugimu_sec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 02:19:01769ecd4d91e53cc734ede1b06a3935096e838020e44061032964dd769dda3968xlsSilentBuilder
2022-01-12 01:52:029b11e81f1bfc3f451bbdd806e824f0d31da068337b6cb9917dd053e1ee6f1e80xls SilentBuilder
2022-01-12 01:24:57926c822e2c4d78b252f788d3fa75a77bfed1380ad50cdacf21f3efddf15b0b26xlsSilentBuilder
2022-01-12 01:02:299d277bf6e9b937c6b9d79db16b78f65ef5346b79c5c68fd3fda71a4e18171fe7xls SilentBuilder
2022-01-12 00:32:19f9cbf3cdfa7ed91bca677fd8d8e1f0f53c193323abfbbb1ce4d7c6d2f1b9feeaxls SilentBuilder
2022-01-12 00:00:431bd3d0d3bef771b182e3de5670d6f9515c73b76cf971203cccba88fb2dd3ddbbxlsSilentBuilder
2022-01-11 23:27:065a9b4efcbf4e2f0517f9d0b39ad038e37ec003dc7c2021213c7db00147268727xlsHeodo
2022-01-11 23:03:088848a32eda2f17266608517b33ea18c0d44d21b4d83801010309aac48c5aa5bbxls SilentBuilder
2022-01-11 22:34:21cd8e0110b182d3afd4d91cc9be83efb4de17b54e76e93d861acbd9e981906fb0xlsSilentBuilder
2022-01-11 22:13:0215808d5cf09ee4a60ed9e18d0b403cd762cbf7613246e2cdfa6fba88eb654dd8xlsSilentBuilder
2022-01-11 21:33:36244f3b421f675868b3b87f562c2b307e3f4c3b914d67008406a8f9ed0594b4c1xlsSilentBuilder
2022-01-11 21:12:16c7cc8c98988b0b5cdbd103db7c61f01a6e92f96f525c36f15bfaae039bb46cd7xls Heodo
2022-01-11 20:52:30fd3087fa953ec989caff35845ec2bc3cc41303ac26e0f0d0b8e25a325fee3a29xlsSilentBuilder
2022-01-11 20:26:320dec37edf7d179a139b89569d030dc83a715e5d9a945d9dedc410c3fcdd09125xls SilentBuilder
2022-01-11 20:03:2603319a0f6c37911983650f91c2a01b29eac84b17bd99133626d11d08952ad9d4xlsSilentBuilder
2022-01-11 19:32:13e8ada03261f05e1c91d784bf58d10322d3765c686bb4a52278362e0e62288d1bxls SilentBuilder
2022-01-11 19:21:05a0a6e55d2714273e7c3866776a187cc320e9bfa5086632fc12ed94db2efbfc3dxlsSilentBuilder
2022-01-11 19:21:051258f7eea6264ed8b017fbd3d17cde677e2d555500e728113051ca1fc5cf8cdchtml