URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bengal-gazette.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-13 12:28:05 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-13 12:28:05 95.111.234.168ip-168-234-111-95.static.contabo.netNot listedAS51167 CONTABO- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-13 12:28:05https://bengal-gazette.com/customerl/2ZjMz4M7G_...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-13 19:21:435bb4b84296ec60184ea017e657bcea6f6d3acaa986abdfd64cecbbd4ee027731docHeodo
2020-08-13 18:54:48b70ef5272311329771dc7aa2f6e62affd540bffa733e6f8360abfaa99e14ff07docHeodo
2020-08-13 18:14:232cef09e3fc1b53814d9a5338dc7c7c56dadd6395f2141931c4de351956132085docHeodo
2020-08-13 17:50:18658b81e912c908e06150b1351a244262cf277f4c99003a8f7599354d478a4657docHeodo
2020-08-13 17:22:44f4ec266b14464dadad86630e4f028e4e59dd7e7b806925e1ea65fa9e277abf11docHeodo
2020-08-13 16:50:29f9c8ab13c75b9b4f583962eddd9376163fe85a8e12736648689168bca6f49511docHeodo
2020-08-13 16:31:35b67ea7bd82a7a8cc26c3587fd81972d4475a5c342f5980f400a1c8184a142867docHeodo
2020-08-13 16:19:2092ef252d93dc57fe3b08c5ae7b0d8a6054d85e3b6f378af68a5c184099aa75e5docHeodo
2020-08-13 15:56:50f3a8e7b9b6078f48976580a7ae7ea2e3ffb077b9d68285f6ec7de8e3972a9d92docHeodo
2020-08-13 15:30:49e946007ca584996c15a16e621741968ac65868ef3d76a451669f37f0d0be1d8fdocHeodo
2020-08-13 15:09:26ed5cf96ce29d25d0ed178015e7bfff38df7088dfb18ff6b3443bfa7ab107286ddocHeodo
2020-08-13 14:46:204d9fb0fc21364011b0155c51ae24085a4371dfad9f32a0569e54d330fdf068ccdocHeodo
2020-08-13 14:13:03a29171156f8613e2fb07ecaddce758a942371a5df390af684dd26d9eb8c58629docHeodo
2020-08-13 13:50:58a8a916f66d089d2a2c23ed7f30163860cc91269fb71b2415123cd57e3e424593docHeodo
2020-08-13 13:24:3621daf21da8f0b098290789d2482e138e7d7aa4cee35835b46dd8684136aa0a2cdocHeodo
2020-08-13 13:04:144cea566229c73afde8f711ab3753d32bc35a21d9667dd73c709977964aadf3d9docHeodo
2020-08-13 12:47:5859cf60d70be84cb50173a843815e0f1e700e02794af516037a781dec3a6d6be8docHeodo
2020-08-13 12:28:059f729a199518aff47368826d6036e6de95ad82b7d52e78e2fb268a993fbe7634docHeodo