URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: chapter42.be
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-04-25 09:58:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 04:17:57 185.18.9.91185.18.9.91.static.hosted.by.combell.comNot listedAS34762 COMBELL-AS- BEyes
2019-05-29 21:06:11 46.30.213.255Not listedAS51468 ONECOM- DKno
2019-04-25 09:58:04 46.30.213.4webcluster1.webpod12-cph3.one.comNot listedAS51468 ONECOM- DKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-25 09:58:04http://chapter42.be/wp-admin/Scan/OOuyBjGaUe/Offlineemotet ext heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-26 08:16:32fd84376ecb2845381d03f46851fb6328f5c0f26c51fb515c74f21b2326031630doc Heodo
2019-04-26 07:33:32601804d1434691765b258649f0a9c8924bb1b28b5ff0dc2bafb3039b2c78f6a3doc Heodo
2019-04-26 02:23:338065d2137332893c6e189b09a0e6b480e2f2955e827e0b67e4418e6a268da467doc Heodo
2019-04-26 01:37:3500a73162489f59b1cc4fc07208676176c19eadbe5c4c0f16b0bd3f7c15a9a03adoc Heodo
2019-04-26 00:58:333dbb4ca641797b6f3729fbd6512e83b47426b4a20d6b490d81100dcd6786d15edoc Heodo
2019-04-26 00:11:271581b1babbda10ae6971f0e9ff822a65aa8bd4d98ea920dbeb9261e6e5f3939fdoc Heodo
2019-04-25 23:24:338cf9f14b8d68b1b2305b8f1519e274ec4e74aa9338d046605c0e788b5e30f8a5doc Heodo
2019-04-25 22:38:2967d05dd367015c892e3f0f50e5737a5138f00f626a134a85f1c2a6496132e691doc 
2019-04-25 21:51:267218111a64d849c230b9d6d315953fd4eacad8211eaaf6f03c1fc25414fdb608doc  
2019-04-25 21:04:33df0fb247a70c89c6562901405d16cc4d36f5052d95ecedc5b9ed5185a0125f91doc Heodo
2019-04-25 20:28:25a11052d85933b9ebe77b92056e6efbd89393fecb51e3f0fd80a4cfa946cdb7d5doc  
2019-04-25 19:41:21863bef93f145d590c49616b371a74a51cca7eaddb9be7b6a55d1d1ffd5f15cbddoc Heodo
2019-04-25 18:54:2164f50f8c4e9bd7b196aa3d88694280da4762e02157d0f53ac68ca37e86d9e6f2doc Heodo
2019-04-25 18:09:276e63ea61f944615450899ffdd9a9444c1051c7a66f3e5a089c4a6ed2da6e6ff1doc Heodo
2019-04-25 17:23:1250848d3e2e74fb61e5fef9b1bc7fb0d6181dabed9d12800de99cbbf26f28a3c3zip  
2019-04-25 16:36:110d3f6ab223b06284dd91e5665c0c9e104bd9343c39c22376649634ce3e3d2925zip  
2019-04-25 15:54:163d3d72d079ac4d6709a8fe663e2e3f3426e0d4e132615036c46b23038dc0cebfdoc Heodo
2019-04-25 15:08:17be6473351331956dc550f794617da15925785c04c3c8bb63f998ef08b032aa2adoc  
2019-04-25 14:36:12d3c085cb5444dd3bee1f04a36f095305000b3e22f59738a4cf3b370c1d203863doc Heodo
2019-04-25 13:20:09791fecbeb3a08092a848ff16c2c08c701de9ef18791c682df9175a64afffce28zip  
2019-04-25 12:43:05ece72f92de372f76aea34190c6c1d20c0a82fa4b45bc23975bfc5ea34336906ezip  
2019-04-25 11:57:064cf41d1276957df1a69b6b709145ed8f31d97913d85a755e2ed2f79b00ba47d7zip  
2019-04-25 11:26:0922d102c0cc74f4b954a2f7074e897ba76d54402c4cd545d008d1778b193de1a5zip  
2019-04-25 10:54:079840e2046d2169c9a7b696f9882ad252d084d425f0c1f0018e915e1e8fde37bezip  
2019-04-25 10:07:1302f9c251cfb5eb0ab562d1995a22587a6311fb421c05d4ccf400e90c462269abzip  
2019-04-25 09:58:04643a95ed490f2bbf65a1fbae6d6297976096ed48f849a45d8d4a7497c9761c74zip