URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: critarion.ch
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-29 00:26:20 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:46:07 195.191.240.70cloud70.unaxus.netNot listedAS39142 INTERNETGROUP-CLOUD- CHyes
2020-11-20 11:10:21 195.191.240.13hos104.unaxus.netNot listedAS39142 INTERNETGROUP-CLOUD- CHno
2020-08-29 00:26:21 195.191.240.15hos106.unaxus.netNot listedAS39142 INTERNETGROUP-CLOUD- CHno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-29 00:26:21http://critarion.ch/wp-includes/paclm/5emxh2d9d...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-29 14:07:0488d30253d2c0c540f3b85f677f0ce96cfa3274e1f45e46248e30388ff7462d79docHeodo
2020-08-29 13:44:497bb6a59e90701bb2af8a195fe877681d0446710c6001ce3b05e2e87ac4860d37docHeodo
2020-08-29 13:26:1353e903bc510d95d7ee4b69cf0859a845875fd6d4b2b671589b10afa1ca9d3065docHeodo
2020-08-29 13:03:330833f23911507c602cb4ee77cc044f2e3e9076b317e2657369d5a9abf133cd71docHeodo
2020-08-29 12:42:351abfb23d0ef450db1e33f441e234e648df678ba7b2bf48ec1a2fe1ea9d657b16docHeodo
2020-08-29 12:26:09908ad291f015a3faf89ab8e32e19af7ba776b38c685af22aae217f7165421dabdocHeodo
2020-08-29 12:05:38f209ab8d6f3245e310df1b4d869bc6aa15a8fbff5ae8977bae8cf3eb7151eb88docHeodo
2020-08-29 11:48:41476a07be55d2f9cb6bef5120000e2db89698b8d1fdb678c4aafb3569f02434d3docHeodo
2020-08-29 10:17:00ca7ffa1708bb416ae9e386f1a02b2d038f3e57bcfd56d68c0759eb10494aa5a8docHeodo
2020-08-29 10:00:429cced472b4bf2aee0566e840d931ec5f646763f0474ae8f11a5986bc15caf86ddocHeodo
2020-08-29 09:58:1513df7d0cf9c4f67e22eb093ff92b70f61fe8e5c61d1afb6c933fee76f2525abedocHeodo
2020-08-29 09:16:56e6a9504687e323b407f75b7da6fac5fd2d27fcc79adf2bd95d66450b053f8f69docHeodo
2020-08-29 07:44:53de44fe670b71e48b1843105a2dfaae7ca11a5097201a2f6180ac58fa8041e37bdocHeodo
2020-08-29 07:28:44484063f42105842edd452a0e315775c1eaa00baf150117c6349f43f9a1a4b1bcdocHeodo
2020-08-29 07:06:4808a84bd28c3b7aed1f0c0dd3cf53c71afc707b41aceb34f8694e4a8f740d3f27docHeodo
2020-08-29 05:35:38c6b6b43e64de8dc117501dc26b4afbba6fac8241a1253e5058a91fea0e11bcb4docHeodo
2020-08-29 04:05:14dd74db1005ce523b3ca1c828581efff59a07187ca1556d43437f51ff38f6396edocHeodo
2020-08-29 03:31:10244d9b70116c5920925ca6dd26e1b162e49daa93c561e5ae6d9d8ed195945478docHeodo
2020-08-29 03:17:22f052afc3e5ab6e8e177fa3db669970e08c7f54226c4a75fdf5f44df88b521a3ddocHeodo
2020-08-29 02:59:44aada778a6ee21579478c37d9f766a74e2abfae033441a997ea715036316c9eefdocHeodo
2020-08-29 02:54:57db5d1df258f52d33f22c630cbe8f27f55e548e910d8b851365ecc612bab09177docHeodo
2020-08-29 02:36:40651697a7ad4735c29617111afdad056545ae1047760f46b4266c80cbd4b784aadocHeodo
2020-08-29 02:22:5501371d2802721d16a5f83938f491a4b8896161541b7f5cff1fd68a20f93f29a6docHeodo
2020-08-29 02:02:31157051ab74fe0a9998973c53b29676ad387279383f482890cf7e5cf173b66129docHeodo
2020-08-29 01:49:531a0b2d954e4b0e1d3b217d9240cd26ab870841bb7b6fe7937de95e1e714f8c03docHeodo
2020-08-29 00:26:217a4812e295a6a335b88235a8b1c270e27d12dc6ea227c00abc5719618f5f26fcdocHeodo