URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: celvadesynola.gq
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-06-29 13:37:06 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-06-29 13:37:08 172.67.217.235Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-29 18:48:21https://celvadesynola.gq/34rt134.phpOfflineZLoader ext DynamicAnalysis
2020-06-29 13:37:08https://celvadesynola.gq/14gt134.phpOfflinedll ZLoader ext JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-30 03:38:4311e776800f0dbb4b58521ba609bd6e96b662702caa9b446f232089402feefdf9dll  
2020-06-30 01:24:035c7c848058361f7effbfcae6375506b08bae4f5fd9d08859c3a3529d79244c7adll  
2020-06-30 00:07:217e8846953727dab0df312c29127fecd31a66cde5200382d3905c68f3f2ce0558dll  
2020-06-29 23:46:296fdae60d4bb0470984446858b2fe7dbbf83901d0ce6bdc95c82cd21f78c8bbcddll  
2020-06-29 22:04:16a8436cb63cf2cf160e4dda554f6d12337d4fc4105015826b1f8e5c9d4aa35566dll  
2020-06-29 21:49:177b11fa39f64504d1d54e473ea54f682ecc7c994be2e545039de75b7659534681dll  
2020-06-29 21:35:16bc180a272a35bed3b3de2a66b9e7db7442082e72e282841221319fce5355ffdedll  
2020-06-29 21:25:03c45c1577d001ffaaba36e362e047935562f43f11d7528b5fc40a60ab088059addll  
2020-06-29 21:22:15ca755b8915cb1025b4b5748e12cd7d3cbdccbcf90fd5986c911b066043d6d136dllZLoader
2020-06-29 21:03:4211181ef4e10650a8c5db10ac547350c8f584ef151a7af6b7c678a2e99828a94fdll  
2020-06-29 20:46:208286f11272af77ca725f4874bdc26df93473f18250d803a1373fe1059ef253d1dll  
2020-06-29 20:40:26ad8d37ffc58775d5b87adbe5cde63b8e770ff52745b14358c2c2597caa7e5fccdll  
2020-06-29 20:29:414e253aa16abf08030a0562f92ed1430b1bce3eb3911b2cde79204cb38618e70ddll  
2020-06-29 20:13:1217ddc83d49b6cd1d511e8c5498c44d8b4bdbbb69b13011a180f8bded117ff2f7dllZLoader
2020-06-29 19:55:40a6e59f6ed3a98fef10f49c90c7418d473e219456199dda9285d96644a4b8895ddll  
2020-06-29 19:39:12455c21fbac342659cd4b5cc162772117cce60f6b59f04dba0dd4327868a428ebdllZLoader
2020-06-29 19:38:50bd6d598d1d9bb09584d542780fc5fd02854d813d1d62a792924e96ecda19accadllZLoader
2020-06-29 19:21:38ab2498c45e86e2e8807280bbdc8be8a584f7328359def50dd01bcc9f4067de73dllZLoader
2020-06-29 19:01:231f6afc74f18e32ac425549e3e5d79363c47d195cb441b66491735ec99d860530dll  
2020-06-29 18:48:21b7a306bd407cca438202bfb3b92abff60f959418c7fd129487a6510554ff5706dllZLoader
2020-06-29 13:37:08a8436cb63cf2cf160e4dda554f6d12337d4fc4105015826b1f8e5c9d4aa35566dll