URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: corporatlon.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-03-16 10:19:02 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-03-16 10:19:34 162.0.221.162Not listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-16 10:19:34https://corporatlon.com/Offlinedll geofenced Gozi ext ISFB ext ITA ursnif ext JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-03-17 10:02:564521f8b74859def60a0d34e737101fa73ae150dc912a60fef378f0e56e331990dll Gozi
2021-03-17 08:54:1710d0cd214468977ca01267d4e74b2ad431595bd12dbc6b04e04a6e50081e6514dllGozi
2021-03-17 08:19:323a1b3f804430fc0eb1136687df71eb5bcf024c30d85e0d2ac095a438d1548444dll Gozi
2021-03-17 07:05:04602d6885a870230d8a9089330170dc002a4d1c5180326d139e8d38f7ca7e7703dll Gozi
2021-03-17 05:46:587e0e394cd085d162aa83daad67f4f66e35981e5b696d0a1b140dbf6db437f2d8dllGozi
2021-03-17 04:44:522a15aaaf5bb1bab579ca068fbbde268bd55d6113bd7adf37f2cd9b6f366862b5dll Gozi
2021-03-17 03:41:564fd2e2bc4e958220422617c36196687a0d5d246b811e3ef717b5578157ba558cdll Gozi
2021-03-17 02:11:448f6297a1199f4565dd9d3df417ec7de2dfd1626aaa6eb75efa1e38b7291ddc1ddll Gozi
2021-03-17 00:44:2225cbd55db64fcaf70d749d33dfd4fa9e71384e6ebd9a863a02eb76ec9aedd563dllGozi
2021-03-16 23:24:45bd219a1f13e5781ac6f8fd22a2ee2f009e1023f0b80e38d8831ef7e27de0dc7fdll Gozi
2021-03-16 22:03:068fdd53a4c037944cb7135a92c7ca889b1845bcc599d1956d5dd3a444f4b0a51adllGozi
2021-03-16 20:53:146293d46d9c2517d9408be1cf7bc1cb3fc28bf7a1cbc2e4278fbcb6fe95b81297dll Gozi
2021-03-16 19:59:2393f1771e2eafa8729852f9c0d7352d74187829c0370657ddb229e939a17fced0dll Gozi
2021-03-16 18:53:120c8e525d1b715222f2024048706be545ef9d9ea420045194105f406944d5ab97dll Gozi
2021-03-16 17:36:29d1374ee4520c86f5e0b2d4902a832305ef1edf8b0cfcc89b91afadc5679a73e1dll Gozi
2021-03-16 16:01:36271a6ef6c78a58e0727ede67c251f6e00d4ca33f56982f4e1c171377581dc249dll Gozi
2021-03-16 14:33:198dc26e584436871639064e59047077a4b3b5813a6bc756e6fb84da5bffea9cdadll Gozi
2021-03-16 13:18:06cd185588af4cbb20a7f31547c442caa14989b811164b4b5336e2acdb304cd1a8dll Gozi
2021-03-16 11:53:0248ade0f2b38700fb0823472b9041da19a9dacee5cd14558a04d1a77da62ef737dllGozi
2021-03-16 10:50:43a403c254e562a44201ffad243a32a78545ec3a4cc36c3356717687506f87da1cdllGozi