URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-19 03:07:41 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-09-19 03:07:41 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-04-27 12:12:55 | 104.21.112.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.16.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.32.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.48.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.64.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.80.1 | SBL681411 | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 12:12:55 | 104.21.96.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2021-01-13 20:26:11 | 104.21.19.110 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-09-24 01:52:08 | https://blog.socialgest.net/wp-admin/balance/ | Offline | doc emotet | |
| 2020-09-21 22:13:07 | https://blog.socialgest.net/pt/payment/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-09-24 02:22:13 | 55d2d07c2dcaff03658304df8b3b1b80946d30f441ff14743dd2ea7130333746 | doc | Heodo | |
| 2020-09-24 01:52:08 | 0185c23ef468c062bc446ffc87e7af495c49e991d0a24c67634d8f0cd3d8bf8b | doc | Heodo | |
| 2020-09-21 22:27:34 | ce745f41bc3c216b25b5d553cff68854d633377995317973429dc64180aa89ef | doc | Heodo | |
| 2020-09-21 22:13:06 | 05d8b6ee1e6ee87acce063fdbd25c9973252d1cddf3f0a393f1a4eac6ab49793 | doc | Heodo |