URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: castlestudios.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-03 01:59:05 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 09:32:17 70.39.151.243ecbiz289.inmotionhosting.comNot listedAS3257 GTT-BACKBONE- USyes
2020-09-03 01:59:10 198.46.91.221ecbiz151.inmotionhosting.comNot listedAS54641 IMH-IAD- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-22 18:34:17http://castlestudios.com/bots/7/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1
2020-09-18 17:22:34http://castlestudios.com/bots/Documentation/d66...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-16 17:20:06http://castlestudios.com/bots/54261465353/Mw131...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-14 18:17:05http://castlestudios.com/images/Z/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1
2020-09-05 01:57:11https://castlestudios.com/images/file/Rayo/Offlineemotet ext epoch3 exe heodo ext Cryptolaemus1
2020-09-03 01:59:10http://castlestudios.com/images/file/Rayo/Offlineemotet ext epoch3 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-23 14:42:17e7831b03ce95b3c6ee794a8e5e867fac44a03717b0ffc518d58b5f0653f6b90bexe Heodo
2020-09-23 14:23:547e6cb566863541a0105e0b6d3b6dfbd0fa9672c2968c2e52cae4f47ff95fb35cexe Heodo
2020-09-23 14:13:08192b2fb255ab7702c1a16b572ef84c54cee64bb1e868a04ed092cf14c9bce163exe Heodo
2020-09-23 13:35:077e0b5175f8dc10a75f1295449eb47c0a66ef9c714b353e41a2b696af380eb368exe Heodo
2020-09-23 13:19:21a947b9660dd071bed527ea570cb93c6406b933267e115da8976667b6906d553eexe Heodo
2020-09-23 13:02:33fc0bc2ef648f11c69663f045107eb928bbaad06b6aa840b0b376fb9204694edfexe Heodo
2020-09-23 12:28:5652614bbc26d3e0928895d52212e8c38bc927113ffb264eb75bcf605c01e064e8exe Heodo
2020-09-23 12:12:00b09a557413c664f931a7cf6097e361d27daed557290bc8145152c1f8ef046e41exe Heodo
2020-09-23 11:38:11b488a60a23650770364805c7615ccac393abf5af441786ef84aa083b2e20909bexe Heodo
2020-09-23 05:01:254b1933390c7dab97352a92144535c1b56a1397b3f7d447e4df065624e358bd8fexe Heodo
2020-09-23 04:39:1067a80fb2f3e4422739c31324cc5b40b34ac4bfa5b72eed37e3c3bc2cd4c131a2exe Heodo
2020-09-23 04:25:09422a94faccbdf52de54c3689563da4ac5523eb2cde80acc8d5d9e091b67d5981exe Heodo
2020-09-23 03:55:592bdaee9cd4a594487477d383988601b1b6d70f5ae1f530144675c4b46acfee96exe Heodo
2020-09-23 03:44:13c106d88ddebfbeee3d44f7ef0d0c9c17c2f9fb165909c4275b0e04479732e593exe Heodo
2020-09-23 03:11:0689a1a3d6ebbcd0f1afa97cb66635269f8a08a1ab500b33cd77f2f1d5890c5863exe Heodo
2020-09-23 02:41:3275783785c0f45a353833b995a08c62252f69260f2ea162c4ac497c94ec98c589exe Heodo
2020-09-23 02:06:1894e3b630feb23c7dde4cceb5d7f2e7a5ab4eed3689dd98a1e9be069dcd26847aexe Heodo
2020-09-23 01:34:37a6ecf81d6cf3f65bbb7548d461989160074c5c3761bcab5ade57e0fa3e5bec82exe Heodo
2020-09-23 01:15:240684a41bef2e7f13d1c7bd3a15fed2cd4e77ffb70d6285cc360eeb017445f052exe Heodo
2020-09-23 01:08:401b9ad6189d3658dff640548223262076d1607591f096470c9cb0e800cd074bc1exe Heodo
2020-09-23 00:35:41b193bf8c9c8304dbfc5020f07162ced5ff4324dd66e247b42b886b3f3a210d9eexe Heodo
2020-09-23 00:06:086a3dfb33268121b88ad0e670d7adaf9282c07ed5d7dde09b8b156e7faa91b1faexe Heodo
2020-09-22 23:50:14da73cc0329e5b4d4e20f96370079b116b2d15d727bfc4f535ab9d82acc35bf53exe Heodo
2020-09-22 23:35:5602e631282140c23e9dd04457b7cf2f8c9129677323c66f26a28199fb34b6de30exe Heodo
2020-09-22 23:31:536cec9640e976bc3dc43e3cf5d8d7775a69038d290b7a8ca15027b251d76eccc1exe Heodo
2020-09-22 23:07:0413cd4c496cbc1026e2d15d991dc8ee3b878b164f5abaed0274b9ea766bb4517cexe Heodo
2020-09-22 22:38:408bc21e1e6e24ebcfcc20f25962ce2e38f492ea05af4a405687175b22aa1398fcexe Heodo
2020-09-22 22:03:1246ea3d7b8b91cc00467fea86f3b5db5588effcb9e0eec31400e5ba3d1f4d2d7dexe Heodo
2020-09-22 21:49:45e90030fd31015f6192bad3895a854506283740611dca37ec84432de7ab8323ecexe Heodo
2020-09-22 21:10:09998302ca07067e9eb4d993a81e72c650060cb77aaa561e28d69b76cfe6396462exe Heodo
2020-09-22 21:01:1419af825fa6b90ff9778b57b3c85ea4631e9e482c8e5d091266b819464fe70c55exe Heodo
2020-09-22 20:44:3939854bf2912e798d0dd60b33ac043f009b6e7527e670c3de346da20b994eb95fexe Heodo
2020-09-22 20:08:48096f321d1430186c53f4e661b3df2d0fb96d2ac6406009d9156a9fbf3fd8afd3exe Heodo
2020-09-22 19:46:3437cce5263e1c3779719257a9f35c07da1dccbf0b70c6df5741c1c41ca163ca9dexe Heodo
2020-09-22 19:29:27c876b2794f9d02d228faf33d99d91e846b0172663d36a980677df07825c173ddexe Heodo
2020-09-22 19:04:455aff08ce448f7f1bb648a1f5005fbbf07fdc16b148391baa570dbfc6001b83d7exe Heodo
2020-09-22 18:38:40ea616b47db2d9d84368d791e2f0443f13cf654ddb7693a7551a3083f1be1fb00exe Heodo
2020-09-22 18:34:174ed1943fa222e20bd51d5dfd9e712488480f729b8c3795894039aa705cfe3bb9exe Heodo
2020-09-19 14:11:237d635d13a89e28fd6b0237c35f566e2be9502c55ae2dee5b94c1b5281c018152docHeodo
2020-09-19 13:41:11b81a03fb70bafe2e7fd636ad7371dd77cd8fb21b274fda2b5bfb4b2d4356e91edocHeodo
2020-09-19 13:32:082ec44c17b6b065e7bf34a965fe298674f2d0089335d479b0a504ca375f0d0c1bdocHeodo
2020-09-19 13:10:17006e64b6cfe2567e6bc6685453e8009b6b2bee02a0ce99713266b04087241d0cdocHeodo
2020-09-19 12:53:180af0e4a065d036488bc54043089879cd5e6b6a4db8c164ba0b7f45140aa616cfdocHeodo
2020-09-19 12:31:500b20a73da9e858ca63b3e038817d2cd82a98535eb4ed6c1dbb214e3e066bede2docHeodo
2020-09-19 12:15:5848eb7810be7073be627369d41227071fd89b859692c501707fdbfce2300e42fcdocHeodo
2020-09-19 11:48:394186791608fe67e3dd4a2f61f52ed52ba67c4d7d75996cbf27f8379a44509f18docHeodo
2020-09-19 11:26:229e398469dae4d767b068930ed48a2283bade08114e66f158454ede4cf08d5bcfdocHeodo
2020-09-19 11:01:2757335ffb483da81d9154676109daceab8f15e679af95fe3d0313f09d70619d85docHeodo
2020-09-19 10:42:290a30c4b942b9c613a9c5df445b932e1468358cbd04d1ecd613fd547da4ec84eddocHeodo
2020-09-19 10:27:206584db21f3b24953242d8d42e4ffa62e8026aebaea9f5c6b5cae066f4c279370docHeodo
2020-09-19 10:03:05254aed29f31299a98cd09ddf208306a72f9e9c6f7b821c20af8197e12e32e877docHeodo
2020-09-19 09:46:050d6380a49e7088513773efca368acb3a783954a2d4df49ea9b730c9e49969458docHeodo
2020-09-19 09:04:4533bab5da95407fde0ab439aa5942622a7e1286cb5ad74d4e55689fa5c59f8559docHeodo
2020-09-19 08:57:36389d939ee0561031b3d437377550de0aa2e31ebecca5bc6529fe3f5b1c2ce8a1docHeodo
2020-09-19 08:37:0633ce6293593a02d1b88213d5e0bd0fcc3667491733ce5009426e8fd5c2e6dc50docHeodo
2020-09-19 08:17:449ad2fe8f74ea62256c9ad4c199d69c91b8c76f9a605cb5c038fcbec9d0e85054docHeodo
2020-09-19 07:55:048750d49fc1ba34c16ce392d088b1843101a6669f5407b567c2dff708351b81ccdocHeodo
2020-09-19 07:26:287234cb8db24e20ba0abe1fb9f9a177573e1e83122a6f3b8debd45e34b67a7775docHeodo
2020-09-19 05:02:07cab5f70f9a6d1f300828e8c715696273befca7a141ca5e75b69b5a408ee432b2docHeodo
2020-09-19 04:42:128065f24a60e594dd6166d1474692a8497b370ea658769bea254a65eff805ca26docHeodo
2020-09-19 04:29:254cd1338ce62760cd78c5eeb9a795195c5801a562e6adb2d0f0984640a5719bc3docHeodo
2020-09-19 04:03:5632f41a25d60eecd90e5e66e0ac2850bd6fbe4f97ddb2dd1e1c3998ab3089f391docHeodo
2020-09-19 03:44:0713431cff4346b87ec1e099ca8da43a0b6b7dca250d9c69bbc46b8f28dd09a68edocHeodo
2020-09-19 03:15:014c294575dcf08d7b4946e3d8d883d7a62ab36dd5170bf983df08adf59d7414dcdocHeodo
2020-09-19 03:05:03610c4e7f9d0c567d7d8a230edc8cbe856baae5fb20c5fbebe2a43c7c7d007feedocHeodo
2020-09-19 02:29:2917b333cc6c291651161d6bab9f62df4f89a31b13b8b8db8722c6e6d069d1bc30docHeodo
2020-09-19 02:14:2734d91dd2c961c7932b2e9f2a6ce803cdd745ef4d3b0fd60d429858237f8e45dadocHeodo
2020-09-19 01:57:3975e37e5c3591743af109482748f2a48e550f1a9d767316a8cece66fb4fe8c222docHeodo
2020-09-19 01:32:2393e1254e65773ffb3d3f3aeeda414a5356482c00d5ecc36dcd385158ac7c8fb4docHeodo
2020-09-19 01:17:48e0343838dbe81e4a9395924017c0f16a9a100c8f03f14eb75fc8be10c72edd60docHeodo
2020-09-19 00:31:5159ee3757e66be242efc0972dd6c65966fd25efedac6d7183bf2ebb22f73ed835docHeodo
2020-09-19 00:26:46ff17fcb2563e69e3f433d120bdcb9410c992e3abd0502b96fc663d2adda5bda0docHeodo
2020-09-18 23:59:14d0b4b470d5e523a36a9751cec3eb8c5e1fae85904ab8637b745f1aebea3aa8cddocHeodo
2020-09-18 23:44:49000dd08101567f408a0ee2b7d095d3baa02f532ed3839f66b60b9d64ce065d17docHeodo
2020-09-18 23:29:42c23cc89488404b578a22052d1d946ea0e421961bb77a5c4b002d890506c2aba6docHeodo
2020-09-18 22:56:341b92e7710017ee24f07eb3119de1f3556bc53d686201c428cf4538d133fa8fa7docHeodo
2020-09-18 22:26:447de7c890bf221f642348c57fd51a9d1ebac44cf9e5136ce1f0a12c7e587e69eedocHeodo
2020-09-18 22:12:0203caf29484a047db9c68e15e6117f665c59b1cc6ea7cdacba9042f80149861b9docHeodo
2020-09-18 21:55:40bad0da6e5c3252214e74c5ebd3ebca1b19331a5dc3c62d1b0c400f8ad73303a7docHeodo
2020-09-18 21:42:512cbeb14e3ad7c8a795f7454334ae6793f020780e53173535e65ddee8c2a717afdocHeodo
2020-09-18 21:09:025f947b8388016997bed38166706bb096d920127a6a8c7823ff7dcebcaba8f81edocHeodo
2020-09-18 20:56:126c10c2ec829e5c74174f1c3237f44a6aaee6d53c6fa9eaec16e8caeacc3a8b9bdocHeodo
2020-09-18 20:49:0394cbcca1d095e7f389dc8a63c2efe17bf54bbbdab3b2ae794b6093bd8d65e9cedocHeodo
2020-09-18 20:34:296582b37fd7a1c9ef797e7f6db679df941000a9f14475cff833abe8d4b78e51f7docHeodo
2020-09-18 20:14:20b0e9328bcb95627a9137ba580a2369f569f9636c2f9f46ec63d55da3c7810997docHeodo
2020-09-18 19:27:56eb92607adea44ca6e7b91a4626d35cefeba06a41ef29cf5ee84535d12f97a59adocHeodo
2020-09-18 19:03:10d11e0d61ffbe21f3332d5c924ca98eb451fcdeb3f1b732a43f3fbaf00360b103docHeodo
2020-09-18 18:52:0465603b499c24d66104493036513a1bdaa69eaed1280c65bbafdbc9f26c35a502docHeodo
2020-09-18 18:31:56851a395186b32fd0d0176d07440e7a1a5c05a5eabfd843b7dce3d2586c1ecd01docHeodo
2020-09-18 18:17:0669c0abbfa57fb4e08634b1d77ced96d0121e6b4d065d1b586d4968995bdab7dbdocHeodo
2020-09-18 17:40:56b1ea1b35bd161e9d432523b6f7cc6c4868c5ecf8065f64d0030fff59e0aa99f2docHeodo
2020-09-18 17:31:502e08d4af746ba90b49a8af24bca94ae3e15bbbe98b5550b32046ef49208ba1bbdocHeodo
2020-09-18 17:22:342e08d4af746ba90b49a8af24bca94ae3e15bbbe98b5550b32046ef49208ba1bbdocHeodo
2020-09-18 16:43:34bd489be4b4636b4c0b9c2d7749b084fa534ec31195744d5b02e9d073925dd44ddocHeodo
2020-09-18 16:27:49ccb79dda93025e923e331ed559dede37b9d588886ae7a227fddd3c5e439672aedocHeodo
2020-09-18 16:11:58c78b6fd735feacf05ab8254985b5a5f154b52b13e5c0033b566d90c3155c915adocHeodo
2020-09-18 16:09:55b4d8b63b7237791e55859b2b8382e359ddc8584ebc6e5d4227e371944d48e8e8docHeodo
2020-09-18 15:52:27c03b6f6a7c2392a296a5e3744871ecb5852a36e3946fb65cf574f54a6050ad39docHeodo
2020-09-18 15:31:1972e7bd4d09757bec76ea8bcfbdc7764868642f075916f99b6fe0623a5729533ddocHeodo
2020-09-18 15:03:57200c33c980d898adf27c2d2a8063bf6fe6ae52ecc78734bfe69b1895fc0bbe48docHeodo