URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: brittknight.com
Domain registrar:GoDaddy -
Domain registration date:2021-01-29 10:46:32 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-16 14:40:04 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :15

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-19 18:25:32 31.43.160.6sites.framer.appNot listedAS16509 AMAZON-02- NLyes
2025-11-19 18:25:32 31.43.161.6sites.framer.appNot listedAS16509 AMAZON-02- NLyes
2025-11-19 18:25:32 13.248.243.5a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-11-19 18:25:32 76.223.105.230a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-03-16 20:46:14 103.224.212.220lb-212-220.above.comNot listedAS133618 TRELLIAN-AS-AP- AUno
2023-05-01 00:54:16 70.32.1.32ip-70.32.1.32.hosted.by.gigenet.comNot listedAS32181 ASN-GIGENET- USno
2023-07-11 15:35:51 170.178.183.18rdns18.mdlider.net.brNot listedAS46844 SHARKTECH- USno
2023-05-01 10:43:29 199.115.116.43Not listedAS30633 LEASEWEB-USA-WDC- USno
2023-04-30 21:50:39 170.178.168.203becrawl-show.flatreutic.comNot listedAS46844 SHARKTECH- USno
2023-03-12 21:46:36 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-09 06:23:07http://brittknight.com/PHP/qy6/Offlineemotet ext exe heodo ext Cryptolaemus1
2022-11-04 07:20:12http://brittknight.com/PHP/Aqxf09OugZ/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1
2022-06-30 20:41:06http://brittknight.com/PHP/5bgKOXH0pM/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1
2022-03-16 14:40:15http://brittknight.com/PHP/f/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-11-09 06:23:070fea765c156b7a983bd9e12a6113dd09315a09262c7fdac6c9e58d0df32be741dllHeodo
2022-11-07 19:20:35e9410b562941c404289fc3169345c2ab605a82d83fd16cc103dc1f5a1e78d4c6dll Heodo
2022-11-04 07:20:12aebbdcfd71694e33120ee44cf16b2d37a099c1b2b4ba385f1dc5d338c1a020cadll Heodo
2022-07-03 06:20:38791c0f3e7e6d9c570ad29269ec3bc3f78fadc3c1952f35eb7ac694f3e31551aadll Heodo
2022-06-30 22:57:04561f2726fc6195cb9fb5f42a7ff2b58c98130252cc953abc227eef38385d66aadll Heodo
2022-06-30 22:38:19683c6eb65f206ee2754054cb0679bd97e4d433ee516dc3c75b9f9a99c1ea35e8dllHeodo
2022-06-30 22:26:071815b6d79adcd32e05e14b48c498894c8b647d9eac6b53b19f9e2f7d5a574eb6dll Heodo
2022-06-30 22:05:30f6c84b7b746c3bebfa2aff8c180154777d5cf31efab8f70566da387210a98bcddll Heodo
2022-06-30 21:36:4229e3307c9af3511426f4714de0798141c9fb2362411dbba18e502bcc938154bbdll Heodo
2022-06-30 21:22:4050342046b621ca0462961cec63d11130c48dccb18d0991b44b304308b13176bbdll Heodo
2022-06-30 20:59:395fcaac185b5bf929f354dd459f30c635255b633003995f95e44bbf30f0b181e4dllHeodo
2022-06-30 20:41:069340af36d5adcea5e07c3b4abd4fb308f6ba8d50c466465d45a457730ef8361ddll Heodo
2022-03-18 14:04:192b965f0e3a65c29dc0f38396968f545a30b94e772c1077a4a721ea305cd739dbdll Heodo
2022-03-18 13:41:04fb9b48982f8044d91879622d8266bbad17ad929f15ee8efee77ccfd7a7ade8ecdll Heodo
2022-03-16 16:43:45c00629feae56de2abc2ac6fac71804de90885f7c972d66bd75baaec5f32cd360dll Heodo
2022-03-16 16:18:34bda3948d736564414252818ef4123624e13262de643b09f342c231b87fbb626fdll Heodo
2022-03-16 15:31:576c042d1f2b9cde72fe731f80cddfe09e78841795d1ba1d0b9822fecf2df2cd79dllHeodo
2022-03-16 14:40:149f4e34281bb40b87be035821113df93d5b2cbbe3296d755a86fbfaddb190b2a8dll Heodo