URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: deksafindo.co.id
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-31 14:19:04 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-31 14:19:07 103.27.206.14palapa5.lazeon.comNot listedAS55688 BEON-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-31 14:19:07https://deksafindo.co.id/wp-admin/swift/ma418fy/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-01 08:41:398ef3a86989c9654cd7b0914ab743459ad98702ea960612c66e331f858a791eb0doc 
2020-02-01 07:29:28da2dfdde77d319fa7d1a1326ca2ce99142a8d194e609eba08264875f442e240bdocx  
2020-02-01 07:12:3912bc283594bd2540d46f51658970e354cadec045dd90a541cdfd238fdc096a52doc  
2020-02-01 05:58:3333a89c876ed4c1f54ac3ebf60cd427562e652b39263734b693beb3be9e6c67ebdoc  
2020-02-01 04:30:48ac59c732daa8085badba3321495b6415cec136aaceaf03e509380f2d2742866bdocx  
2020-02-01 03:21:14c117593f754a9dafdfb9c3bcaf46d70eda6bedf7ee811038f00aad85aa541355doc Heodo
2020-02-01 01:58:40d6ac1c0ee85cd1a5225863f4efa078bae13e3b4555885fc96d9fd47213a479f1doc Heodo
2020-02-01 00:57:3903b3d9909032a30386f09dc8e5ac4d22a2e89a8582e73776d3ed391cc05fee12doc Heodo
2020-02-01 00:11:387adf027cfbacb9e234e80ea5563bb9f7e1dcd003c562a6964c9c65524abcf3d4docxHeodo
2020-01-31 23:56:416c30f2c3483bdcdb6544377812c9a3188ebba7111f6c59b5f2c2bcee90a0cdf3doc Heodo
2020-01-31 22:25:3578189db51d029cba090eb74853c255ae01f91ae08c6215195b58fa1442c247e8doc Heodo
2020-01-31 21:18:30aaca1876480ef4f80a4c0246d615c1db9513669dc964510b8318981d22ffc798docx Heodo
2020-01-31 21:07:269acde9478f827a67975691003ecb6ff2b7e1c319a38ba4ae94e40804654cacd0docx  
2020-01-31 19:54:262f76fbb18ce11d65b1b0e5929476bbdb89d5850d8cd2c1840da889700905d5e5docx  
2020-01-31 18:19:249ca9749660569bd45851774becb4204394ea2ab1cb510d28d7bc77060aee9c20docx  
2020-01-31 16:48:25c65e54d8fe1847d0d081c3058842c5b0254a355c41756816944d2fb8fcf08a54docx Heodo
2020-01-31 15:24:26dbbe1fec47e8d343db79a96fe58ee5a504609dbddad0587cb31c83d134d02972docx Heodo
2020-01-31 14:19:0780ee10df9d005a29ebac17f4d5f81cb3a1cbfca848e920f31a93da3f50545994doc Heodo