URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: clavirox.ro
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-02-22 08:08:02 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 16:14:31 104.248.47.2321041867.cloudwaysapps.comNot listedAS14061 DIGITALOCEAN-ASN- DEyes
2019-02-22 08:08:05 185.104.180.84Not listedAS48881 DATA-NODE-AS- ROno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-17 10:41:05http://clavirox.ro/wp-admin/paclm/SiqkY3yU6c11S/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2019-02-26 22:47:31http://clavirox.ro/sendincverif/support/sec/EN/...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2019-02-22 08:08:05http://clavirox.ro/DE_de/GYDYHR9147375/Offlineemotet ext heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-17 11:34:21b8df8ad18c3d755eb12ee45b59cf06643c3edcf77b47e869780b3be3cb1ab4b5docHeodo
2020-09-17 11:16:18164988dcbc25ec31c44de94b82edeabc2bcd02e68f202f699bd044b5364cc6f1docHeodo
2020-09-17 10:55:43f61d46dd57c4f0fab9586e96ed2990da9e5c71b02a46561cb6ef0ba0c222e62adocHeodo
2020-09-17 10:41:046d09eea8dd02d943fe8fc9d1255f296da69f9acf33336e42418cc0aefdc6add9docHeodo
2019-02-28 03:06:273de9427fff565381158fc2a9ace2752d9e7f74718979f86dbb495ebc0ed2bed1doc Heodo
2019-02-28 02:45:297e480099ffa619624ecbd27fb03ef791c7d744543169347c9cea8b0a5864faf7doc Heodo
2019-02-28 02:14:21ee641a025fa2915029633196c366c05946098e2d68461d60677b3cdbced029fbdoc Heodo
2019-02-28 01:51:2461a02eea7fc5427f72604f0a6c43f837dcc01bde7563a9693a72e1cacda7885ddoc Heodo
2019-02-28 01:26:273ed4a477922e1682a82b0227ad9aac85151cd8dffea68665256840c75c9a7daadoc Heodo
2019-02-28 01:03:23df16e20d8fa25c26f2f6068af0032e97bdda870acf83f6585d7b993bb0b5b375doc Heodo
2019-02-28 00:43:25dfd949b077b215e6ff3ad53aedb276973368d8ebfdb3d61c3665ea77cae6d4c4doc Heodo
2019-02-28 00:20:5255ed8409eecf30e3d3e2e3ac22b2e77ea54c06962f56f79b9ba2fab7d970fc6adoc Heodo
2019-02-27 23:59:23c353a122489246c2d7d675149c20ede74791dcdc36c94633f1839833ebd94a1adoc Heodo
2019-02-27 23:39:23cb1a76ba21a90c53a6a0849ba6bea5131eb919b2cfb0559c4d6ea70fddcfe53bdoc Heodo
2019-02-27 23:18:2486fb425df71ce1b16f2b2eb1c186a5c2d94228d2f5b3e8c8b39783305f9af896doc Heodo
2019-02-27 22:56:297a350aebad143538ebdf07657565991f52f79267ba59fff28c0da730823c72dfdoc Heodo
2019-02-27 22:35:289df28f945789bdc76dd8aafd2c173e2d147b86cf9d90326b9fac76fdd2bd06e9doc Heodo
2019-02-27 21:47:25a237972448dfd70bf77440e01e6b30ca703705efefe464f4566939e80bbdd948doc Heodo
2019-02-27 21:16:3600fdcd9777bab81d8dcda0b09525b9755ccf5d1aaf6125bb6ab50d20fe9d4f57doc Heodo
2019-02-27 20:34:2610873c326fc35dd98727fdcf0baad4ac1c318b8811f0f9ae7785bc2cbf2c6226doc Heodo
2019-02-27 20:03:253d5611f7cfc08978d514dbded9342e6d1aa2def50dc6e36fe09da77ccbb18680doc Heodo
2019-02-27 19:01:27316df27e602df69523549fb89f2e126be17f75ce42686d902c80634c0ffa500ddoc Heodo
2019-02-27 18:30:29eb21c8edf63fae2f408ae71ef9a788a01e981bfaa34f8821a7aaa64593d17421doc Heodo
2019-02-27 15:06:221bb948ea6a642404c81eff109bd3bf4de8d17371bd084d3636e5638345cc5020docx  
2019-02-27 10:03:53b99528c00d6ac14bf99ade801638f8deb78ba5c610ead5ca6ac68a69f95547bcdocx