URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cursos.graftech.mindlink.mx
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-22 16:37:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-01-27 04:06:50 74.208.66.212s19470805.onlinehome-server.infoNot listedAS8560 IONOS-AS- USno
2021-01-22 16:37:08 143.95.249.44dallas145.arvixeshared.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-22 16:37:08http://cursos.graftech.mindlink.mx/cache/NAXcr/Offlinedoc emotet ext epoch2 heodo ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-22 20:30:47d25d5d359b01bb46095375c553f2b4ea91e2e4abee77df10d21d6ab08740dc97docHeodo
2021-01-22 20:19:321cc3ce82c3d5c07a7ad73b7890969696e032964b0773b29a1f21a68dc55e23d6docHeodo
2021-01-22 20:06:11fd740860d3a13f655a4dbba01a3721f0a412082b7ba59f4b04650493fe6a3e53docHeodo
2021-01-22 19:55:597d208c37e1692e448cb66adc388c1d5a77f06bc1ffef7dcf756ee681530158abdocHeodo
2021-01-22 19:37:4237866f94856a5faf43b8d90001a46a03ed9a8c10d666298bcc0341d28842a1a6docHeodo
2021-01-22 19:31:33a6e3f80247934f88e6f81b410856f90de3c0f41e5ae883b9f469e68c8c67ea38docHeodo
2021-01-22 19:20:131d6af24aae07d7b11397907b44aa3108efeaaa211b182a6dc28246b79a36a2c4docHeodo
2021-01-22 19:01:50c47dd140c6bc057daadb9ee597e65f4354bd84521ed7631a0f100eb027f6adb8docHeodo
2021-01-22 18:47:25e35524adab62617f979bf2093ed1c81d50ea11bbf40b3f32bc000a58fe99a39cdocHeodo
2021-01-22 18:39:291d2d80a3a1d3ba28ca88d827cc5fb6b166f7d41b3f91065e8448f691275bcd3cdocHeodo
2021-01-22 18:27:03a9cd44d0dd7d458a7b1e6368dbd0f0d2693a1da40c46561532d097f7f79300a6docHeodo
2021-01-22 18:16:57361afbb90589c1dbaba30c9c8b380772449df5b01544e084fe473b501f583129docHeodo
2021-01-22 18:04:53e26acfd8ba9ac131426a2d9667e8ad19344e9977a884531fd2a2127615481f99docHeodo
2021-01-22 17:45:164645da6dadb364b09a0a89f510be736a7bf0d088e5b79a002bdd4bf430ff9fa0docHeodo
2021-01-22 17:31:25c56e64333878661b5c0a2ca6fafb49c64b2c59dcbbc71dfb9835e5b22d7a80ffdocHeodo
2021-01-22 17:29:400dc0f00a3ed385b6bff2f9188766ae977a173405c9bfed86474e9f7fccfde9c1docHeodo
2021-01-22 17:14:206faf81f488e12cb29d73fd407214f06c3b94e083a11756827ab37874616df7a2docHeodo
2021-01-22 16:55:41980a3949995d00c52383ec46cfdb15a05a9ad20aea7fc2a11a834a7ceffb5484docHeodo
2021-01-22 16:46:05fa73aaf86c492584aab024beb61b333cb383c5a742ae789e1c20f40d599a9457docHeodo
2021-01-22 16:37:0850b8d46bcf2478298f38ac41a4d18e945a2767d6c2e2ca192472ed6b12174b3bdocHeodo