URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: benson.com.ua
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-26 18:53:33 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-26 18:53:34 185.68.16.204web661.default-host.netNot listedAS200000 Ukraine-AS- UAyes
2025-11-05 17:02:21 5.39.10.93park.dnshosting.orgNot listedAS16276 OVH- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-26 18:53:34http://benson.com.ua/wp-includes/xcl3d6n/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-27 13:02:20952538ff917ab5d3ee99b631731526300164f3b607818d2cd99d019ca5add14ddocHeodo
2020-08-27 12:44:39bf913198774af473c451fa304746ed1434412a8f1c7706b2e5f12c6cf1827249docHeodo
2020-08-27 12:27:459a31c5f1b201f416658cf758ebda7480d9a6aa0b3330b71b8c71e73143958cdfdocHeodo
2020-08-27 12:06:252136cb67c60f9d08a5305401c1c4a33d58bf58038a9ce7d125d6ecf71e73655ddocHeodo
2020-08-27 11:47:141f7ed0ccd130a0b63ad568b735ad629f439919389015594a0a8c62b9f7e2460fdocHeodo
2020-08-27 11:31:530b996a31427775476402581dd429db57db41e3a98ed148776a2ba8f0b6cc1a75docHeodo
2020-08-27 11:12:138b1e85e899250ae238664c29df61c908610d31299f75ab0da17ab24d8e89725edocHeodo
2020-08-27 10:54:0659102c908645acebebbe3a0565e89b326f3ae44dd1f0babf9d10a47a01e1b46fdocHeodo
2020-08-27 10:38:11151815029e695cd4af22c16d6eb0aa00c3ad74ba422c20d22e9bedf220485490docHeodo
2020-08-27 10:20:014ed2cd6c5535cd7ce956db26cea56e2cb6ccd3679ae409be2b5c4288480a49a4docHeodo
2020-08-27 10:01:50ad2830d53332799552182a550a4d3f874618ab44fb3fd5ed52083ec516bb2227doc Heodo
2020-08-27 09:24:0036fb27cf99357200eb9f20c0df17118c2af72cafa095e7e4de4a9a0d00db4ef3docHeodo
2020-08-27 09:00:146aa58a4fec778614d948932485867bd12462484a07436b65b4039c413ba6955fdocHeodo
2020-08-27 08:52:53cc726b1b282963ed12f0894d0adba0ac1fdbe450c1db6761bda676005b7cb051docHeodo
2020-08-27 08:20:3493119253f1efad2c20d3a96b3298fd4188c306d45adb0d544c895225e276908bdocHeodo
2020-08-27 08:00:45e145b5be039742a0b89435111a34036fd1d0316c27f2ad4781450cc43073dd5edocHeodo
2020-08-27 07:47:284b21ed50ed79a420217fa1a72731b1a30d251a06141cd56f00a0fdd17ee11493docHeodo
2020-08-27 07:29:57acfcabc48ac33fb560b1f8b103eab9dcec9d15938b713a81f07ed018d24bc8d4docHeodo
2020-08-27 07:11:4041213a4adcc07029d82e0c00a9932eb28ea7e5c9a41934e40ee35de060f8ecfcdocHeodo
2020-08-27 06:54:20b13b6fb044972063fee5a633ab2c88e75a1e7201427b25f21be5ba73dbac82afdocHeodo
2020-08-27 06:38:1891a308c86bae5259dbb93a07177c2302aec9aa1d99efb3aebcf38eeec736806edocHeodo
2020-08-27 06:23:25ccd219a6f531ed3f9ff84a1ce8e664e71c3dcc4af09fe196889fe1e1b69ed956docHeodo
2020-08-27 06:02:055651215bf90d3d27bf652a23f6f4ab03e32a080fba71d964022a87038fa6f1b0docHeodo
2020-08-27 05:47:0304d53867d9a85922c8e95c2c5ac2e27ba3c75ec87d1ceadc4ba5b065e4b51c96doc Heodo
2020-08-27 05:17:3340761e27d5738895fd87e37555b219f0b556bc51d2701d965a51cabebfdabb74docHeodo
2020-08-27 04:59:024e78ff2d8f46718a5e53083c2f96401ea3e1174f112b70c741448aad402b9132docHeodo
2020-08-27 04:26:01d30dd5e885a79fb037d8a45fbc54cdfc8a4d0186cdb5f1cad6e3554458a5c69adocHeodo
2020-08-27 02:55:4285b485deac6e4384f0d876ed4f8dd15536249715d5207558a33ab603be4f517ddocHeodo
2020-08-27 02:39:04ef416af10e5118129a871fbf94df4162f6dc2ae1cd5966e94b74058f8298197fdocHeodo
2020-08-27 02:20:403dc40e9a60c8557b94a21581a58c4566273a45eef074c0fc78b62bf39eadf667docHeodo
2020-08-27 01:59:284ce815a9423e52b38ceedc5af97bd2f02672b7ffde760730599452b87050eb7bdocHeodo
2020-08-27 01:45:257fe66f85659a10160846a834f8b4befde4e554e2c6e6586097218eed58c96790docHeodo
2020-08-27 01:24:35c2da9f1e760b2054a7244c442736269184220a1e7639e186f9eb4022ed7dba3ddocHeodo
2020-08-27 01:05:577e6ae0bfbd08090276dc8821dbac500fae364dab68dad84b1fc2c4d971080dccdocHeodo
2020-08-27 00:48:30cd0f5f2cc1f1f1bc7dc7bb9fe38aed374ad228315804fa2a759639ab42a35d89docHeodo
2020-08-27 00:31:47d8b2892cb235a6a574651012133c78ab0928fdd3ce752cc0699681a373778c04docHeodo
2020-08-26 20:47:480431e13b7bf7497686d6f9b2cdc12dbc66e46c9b222417d30ab436d2d0b74e61docHeodo
2020-08-26 19:17:05874b498a569260ed044256f13bd87d1a3697f02a17a364d2d61ba9005e12cd25docHeodo
2020-08-26 18:53:345106dc79c277efaea0994fbff2d9683e1a6cb42184857e27a7fd36ef275026f9docHeodo