URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | dadabhoy.pk |
|---|---|
| Abuse complaint sent?: | Yes (2022-08-23 20:30:01 UTC to staff{at}pknic[dot]net[dot]pk) |
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Not blocked |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Not blocked |
| OpenBLD : | Not blocked |
| DNS4EU : | Not blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2022-08-23 20:28:03 UTC |
| Total malware sites : | 1 |
| A record(s) observed : | 4 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 13:57:57 | 192.199.248.42 | server45-ptr-42.a2zcreatorz.com.pk | Not listed | AS30475 WEHOSTWEBSITES-COM | US | yes |
| 2022-10-20 23:04:34 | 185.234.69.51 | mail.dadabhoy.edu.pk | Not listed | AS51167 CONTABO | FR | no |
| 2022-08-23 20:28:05 | 104.21.69.78 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2022-08-23 20:28:05 | 172.67.206.75 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2022-08-23 20:28:05 | http://dadabhoy.pk/lt/lt.exe | Offline | AgentTesla |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2022-08-24 08:28:02 | d4a0785f8454edcd8fbcc7be6ecd29937d525a8ef33f59d100dcc7659ba63bff | exe | AgentTesla | |
| 2022-08-24 04:46:44 | 4c551498f907bdaedd17debf79f9bc995f70b6d4a08ccfbbc02c238a1a86f2f2 | exe | AgentTesla | |
| 2022-08-23 20:28:04 | 10e1caced6af9870f33315489adfb5e411cc0ae8916ffd5a65b1113a794601e3 | exe | AgentTesla |
US
FR