URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: buffetbaruck.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-29 19:11:46 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:25:04 148.113.216.232olimpo.hostsrv.orgNot listedAS16276 OVH- CAyes
2021-01-13 22:52:17 104.21.26.29Not listedAS13335 CLOUDFLARENETn/ano
2020-10-02 03:44:03 172.67.168.54Not listedAS13335 CLOUDFLARENETn/ano
2020-09-29 19:11:48 31.170.161.20Not listedAS47583 AS-HOSTINGER- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-21 21:32:04https://buffetbaruck.com.br/nsnv/eTrac/95632736...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1
2020-09-29 19:11:48https://buffetbaruck.com.br/wp/attachments/pJgP...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-21 21:32:0490828b96547b35641ebd76b91c0200f8f057974be00f528002acf24663c9991fdocHeodo
2020-09-30 03:30:24c5fb0bf46e7abc0dc192a51dc5e8c8f05df4c91bd08dc53d536cd4ffbf09f89ddocHeodo
2020-09-30 03:02:17f72f43e5d32d5bf4ab91a6e04550dbef93f82764320a7403d8b59952c208beaddocHeodo
2020-09-30 02:36:27f8b2d066f5a3d657edb1544f9df31a9a7b3121c5c14ddb1b96b50ddd69b44c22docHeodo
2020-09-30 02:28:223e16472eff5bf2937b0f1833264ef998b9f6339e36a135499b25cfa8e794b33cdocHeodo
2020-09-30 02:01:1112eacad71c2a295436f6909c437715e14ed8ab2c4c2417d845ee7e4155768b1bdocHeodo
2020-09-30 01:51:351d44cd8c3d04874dc41108bc844eb637f657064927fc28927f68c95fe596bcaadocHeodo
2020-09-30 01:29:39b6c45e66c35cf5d894ba5932c824d162c760459d59644fd0d41bc5ab63604b06docHeodo
2020-09-30 01:16:150cbe205dde93631435eaf136feea1e35c86b49f20a0067c26fde038b48e2d725docHeodo
2020-09-30 00:49:0510f4a118d75e59c1f0ae83e7e44c9553fd6925a4bcf21a4cb62559c38c550147docHeodo
2020-09-30 00:32:29541afbe8b457f589a760cae7ecbf5d520a7f1ecb81bf9d2e2f5ddf90cad8a418docHeodo
2020-09-30 00:06:528b094b3853afcb79ef514333bfa570faac9b7996f06500f174020ce0e5a31751docHeodo
2020-09-29 23:52:3598c87f2f2e124f5e8444896304f556a844430d6543223343abc894702abf99e3docHeodo
2020-09-29 23:28:26fe1ce0fd30ae39c4347efaf4fd829853c3df12a2eaa46b281faf17855b5c3a2ddocHeodo
2020-09-29 23:09:15349dd2ac63132716ea7360223fd038575e1b7144925c60d87589880fbd488670doc Heodo
2020-09-29 23:00:452ce2a7979c53158a0e7454224e6755704290a5a16a092aec69088da9eb3571a3docHeodo
2020-09-29 22:33:2374f26e376ef3b8ea6b3b9d1599e98182897725563fcf69a3ae86f502acc7cdabdocHeodo
2020-09-29 22:07:30004d7159e2360d1569de7849fbd5ffa3e63968d011834c565255ade18fcd54cbdocHeodo
2020-09-29 21:55:17182753a6c1d4b67b4f7ae6131148151d0b2cd2b05c8b09f5aca4329bec74cfecdoc Heodo
2020-09-29 21:20:22f9c7cad1321f589fb0fd68646c0760dcd9cfdd72004cb61598fa14599b5b9bb3docHeodo
2020-09-29 21:05:08dc37c6a8213875ada2f9dbe9a76ae223105ef7407b221f2b9a8741b9a114bededocHeodo
2020-09-29 20:39:03f02b188278d31f5c4bf69da19d42c2dcdc5f9724d5de56c4b6255732d6d6393ddocHeodo
2020-09-29 20:24:0166e0d59d4c4e46b4e5589d41dbb45277b6dd25aba1efb68deada81d72a492aebdocHeodo
2020-09-29 20:00:27140254a1f60e331ddaaa70ddd79ef03759dd73aa778c4e098be6ee6d8513c08adocHeodo
2020-09-29 19:45:37356a24ae493195e7f79abf0f60624c9a90112bad3593eb1b56bf8fe85d10b08adocHeodo
2020-09-29 19:11:475edbe1ed71b6f09ddce8192cb4e9486cf7fcde8cac4394cc89a313c76c646ad0docHeodo