URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: blue-yame-5396.penne.jp
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-05-22 11:14:11 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-05-22 11:14:13 157.7.107.165157-7-107-165.virt.lolipop.jpNot listedAS7506 MAINT-JPNIC- JPno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-22 17:06:07http://blue-yame-5396.penne.jp/ERC/EIC.exeOfflineexe GuLoader ext zbetcheckin
2020-05-22 11:14:13http://blue-yame-5396.penne.jp/AHU/FNK.exeOfflineGuLoader ext JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-28 13:13:3926f2158d9837aa986e3d69b6cb3df0ea039d0434cd504c2911ad9788bbbf7715exeGuLoader
2020-05-27 22:51:4110c39de808705f2d715cd0b5c2cdadb3d0f8265c2fdfa5d2f50e54f86ce7aa4dexeGuLoader
2020-05-27 22:36:53160684d9f79b0e33093a76315cbe47afd4d0f27f5dadd1b6fa314d8ff8a64370exeGuLoader
2020-05-27 12:24:201b161b9398f1f28f73c9bfaa6b536cc8bd49d1de076d78404f9a1fe181ec02b7exeGuLoader
2020-05-27 12:24:158e8c9171f64a457ec20c222a545fece4a897e08b1863e5c8f3c2a0086b5fbff5exeGuLoader
2020-05-26 21:38:299848da60b74c19523583a237900008a3fcb268a9a4000c352f944f7d9f0d78e3exeGuLoader
2020-05-26 21:38:290a1a06e6295b998e4bad7a627623b20ca2cf4a2aad41276c8887877553c14996exeGuLoader
2020-05-26 21:37:260a1a06e6295b998e4bad7a627623b20ca2cf4a2aad41276c8887877553c14996exeGuLoader
2020-05-26 21:37:129848da60b74c19523583a237900008a3fcb268a9a4000c352f944f7d9f0d78e3exeGuLoader
2020-05-26 01:38:34a7cfec855ead8a33902aab33c3c217fbc6fe9fb372c4c8d0c1aec4b493736bf5exeGuLoader
2020-05-26 01:23:36219e5cf84725a07f2366e5ddcde9fc783dbbc4402d8080d150a56a57b9ffac23exe  
2020-05-24 21:39:17b3ba4e115b592f3a67aa0a28da126f435ccb67309d2a50e40e684e3643b5468bexeGuLoader
2020-05-23 00:40:2188b9016ca27b117830d0551458312126f49feca182dcfbc8f4f5558c7fd4fdc1exeGuLoader
2020-05-22 17:06:0764e277226ed8348102a4af90ee5cfd3624712a5376c447e16b72377c9d6c3acbexeGuLoader
2020-05-22 11:14:127da13f666893614674036e4b2d04340ef8bccd4722e86a7753105a45b8bd502dexeGuLoader