URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: codefirm.codefirm.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 22:14:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-16 22:14:05 192.241.182.50Not listedAS14061 DIGITALOCEAN-ASN- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 22:14:05https://codefirm.codefirm.net/wp-includes/Scan/...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 11:30:42360a5cb7eed923017b4ef07460e7652362cdf1fc0a902516addbb8e244e30134docHeodo
2020-10-17 10:52:0136d4d0f8ba694e3a45ac3fd858e3312538bf61d501403dcbe763638f043ab3a1docHeodo
2020-10-17 10:11:51169fa4037e8c45a38a3b2e862d860e955fc810c63682c78155bbbd45820b83bfdocHeodo
2020-10-17 09:53:26ab13f6f95154d0396465d9bb9d42e49708e2efdd49c259b7189ae2c7c7c2d389docHeodo
2020-10-17 09:43:4008171ab9613c40f0cffda97d95d104eabd33aca151d19a4315b8e2ec2142fb63docHeodo
2020-10-17 09:18:12e9fc0607223bdfcf6365b914d806c89315bbdfff9681454d6b67b060ef04024cdocHeodo
2020-10-17 08:55:07fdcbcd4f6d22900775055fa03ab8643f72041e73d6af1c271a672ce65268e0dddocHeodo
2020-10-17 08:19:43d6b61570ca15f09c5e9707aaa5658abb2ff3c1916805b287b31ceb75a95f4130docHeodo
2020-10-17 07:23:17ea065a0dbc3ca645237d0c98e82887ca636451f3fa822c6c0a087a2fe98c230fdocHeodo
2020-10-17 06:48:48cab952f8c6436054516b7fb9b6dc980a0921858a4a312229099f2817b9846340docHeodo
2020-10-17 06:12:147f7aaae8116f26c7d91c5c3d87ab7c7a752e628195c25563cc7c3074669e6c7adocHeodo
2020-10-17 05:45:0985a42a8d612d20af55e105cdd7caa6c881ebae398c26dea03e0cf147e543f917docHeodo
2020-10-17 05:18:57ab8be8e21a7c5f0a158818bdf5fa9883acaffa78d8cfa5cae36ba7d756b8fed6docHeodo
2020-10-17 04:58:144f1b55b5cbbaa28b0d87b93dd256cebd16df18a51e081378940ad152fd24da8edocHeodo
2020-10-17 04:05:3658a95bd14fdfe2c4e30b7bce237de2fa3351c1bcf0328c91c9333a29a8be15d0docHeodo
2020-10-17 03:40:10252e05a52d4bc9d3d266533b1a75bfab674989b8d3a4f0ff8d898529379329afdocHeodo
2020-10-17 03:06:43c85fe8825461de0503c8b9b612f01c88a1124e0c33ace58d20c22cf40c4bd03fdocHeodo
2020-10-17 02:51:2333e3f84944619fd92c3e53215fafb2b4b962f3e7b97ac0e358959d8ca710de70docHeodo
2020-10-17 02:28:05bb96b8f7ca8418e8d16ada7ed78c33abe3bd24d7ca843033cc73e73e4c606fdadocHeodo
2020-10-17 01:49:45fd0ec2733cb7fc4d8f934cf81b56a9a6fd2dd7290c257cdf4c2a1b3da2bcfc10docHeodo
2020-10-17 01:35:44eb06448eea7b0d73132945671275ea572688e13de195a89974d8315900ff8cb7docHeodo
2020-10-17 01:13:264f6043ed53481592c3b9db4608a157df568b466062cba2018b8e5c59bfb40563docHeodo
2020-10-17 00:38:5299acccb026919eac0d3249c8a9207a71d032fbe59c7540c12aee398ae86e6780docHeodo
2020-10-17 00:15:44c40e490d1149a43b982a7c65d5f04d36117a86623374f75bf8d47f31090f8b18docHeodo
2020-10-16 23:47:16c25321d27755dd74dfcb51c16c96a607d16b09b59b1cbe7f025dc89763d9d630docHeodo
2020-10-16 23:32:423772d83153c2d54a8a3dd72055370d3db69948bf4eafeb69018ce518c7801d05docHeodo
2020-10-16 22:53:4534470931a684a070f70a0ed741a36c388fb0c082426aebf15aeedbc28a4d778bdocHeodo
2020-10-16 22:40:486539d2ac4a847b3444866e22b642a335e3d8b92d40031a090fa315aef1af2930docHeodo
2020-10-16 22:14:0569bf38e708fcc10caf5824bb4460ed7f950dfb3085f715c81303b992c3bb6857docHeodo