URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: contrid.com
Domain registrar:eNom -
Domain registration date:2006-05-04 05:41:32 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-24 21:19:03 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 01:55:31 13.248.169.48a904c694c05102f30.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-28 01:55:31 76.223.54.146a904c694c05102f30.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-09-06 01:14:03 166.117.110.61Not listedAS16509 AMAZON-02- USno
2025-09-06 01:14:03 99.83.161.153a2b7bf3398455f345.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-07-23 07:54:27 3.64.163.50ec2-3-64-163-50.eu-central-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- DEno
2022-05-05 22:05:09 91.195.240.87Not listedAS47846 SEDO-AS- DEno
2022-03-24 21:19:06 157.230.59.34server.contrid.netNot listedAS14061 DIGITALOCEAN-ASN- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-24 21:19:06http://contrid.com/6vwkQmRU/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-25 07:24:38536b029a89168cfbc9fcd0269a79b884ac75c4195868289552dcaded1d5423dddll Heodo
2022-03-25 06:08:52afbe6aaf8576692e7e3886bfe5fa22b8fcb686fe1d9b34af91d2077eae3f27a2dll Heodo
2022-03-25 05:19:319d814beba1750caefc11e126ae39dd0be12d71b0eb67e932c5c2aa29e58fa738dll Heodo
2022-03-25 04:47:227470b4296b39b080af53f1c161c61f362f2e21bba9036d4f3feca620d36a78c5dll Heodo
2022-03-25 04:21:498e0eb212ff62f6438d927bd342789c0e4cb04a2e2cf6bd26d66391380822b942dll Heodo
2022-03-25 03:21:49154f66b4782aed103df90b5d972b94aa9eb790926f21492f42afd9d50c8edaa1dll Heodo
2022-03-25 02:45:40bfccfe10da83e67eeab3fceee3b8efb6034f04cb9e6b8fac722fa4f1ff1d141fdll Heodo
2022-03-25 02:15:19ff3114fcf357f2db75992e1b1fe052cfa6f576dd71ec08d6bdb41d77f4a4252ddll Heodo
2022-03-25 02:01:51e4345c94e443f77ed3cf171d14289b8790cc67fca8f3fafab7fc2c54aba7a3f9dll Heodo
2022-03-25 01:11:17f048d5efe56b80d008776bd8d14def36be896684877fb95f877a8b2d664ab6f9dll Heodo
2022-03-25 00:06:2677739cf0508a11d7201bf4c476d59d519f4c121bec845435c823d69f19b4f628dllHeodo
2022-03-24 23:46:59926c22048f2223c11e0e967ec7148166a4e764f70667edb67bc0d3aaef2a635ddll Heodo
2022-03-24 23:01:236f39b2f239446c994c49aeb08fd2c08d8db54aa450f36d8e4418a7a85b23f642dllHeodo
2022-03-24 22:18:1229c89d17d9d443c70e64d5a24a497655522fef2483694cb46aa474c0a92ced2edll Heodo
2022-03-24 21:42:046a75ed035dc607c39c9f33a1ca561a30c6fb3f1f01267318ef978a71a8b74847dll Heodo
2022-03-24 21:19:05b73f17b77bc9b1b01f31ea6e5bf166876479dd56a0ff14ff600017d11cbcae65dll Heodo