URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: deredia.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-10-11 12:59:19 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-26 12:17:45 185.230.63.107unalocated.63.wixsite.comNot listedAS58182 wix_com- USyes
2025-05-26 12:17:45 185.230.63.171unalocated.63.wixsite.comNot listedAS58182 wix_com- USyes
2025-05-26 12:17:45 185.230.63.186unalocated.63.wixsite.comNot listedAS58182 wix_com- USyes
2025-04-27 09:36:01 216.194.172.33vps117103.inmotionhosting.comNot listedAS22611 INMOTION- USno
2019-12-25 11:25:54 216.194.164.176ded3986.inmotionhosting.comNot listedAS22611 INMOTION- USno
2019-10-11 12:59:23 162.144.93.20162-144-93-20.unifiedlayer.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-10-14 11:35:38http://deredia.com/cgi-bin/SSAnMNgWb8/Offlineemotet ext epoch2 exe heodo ext Anonymous
2019-10-11 12:59:23http://deredia.com/cgi-bin/cbas/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-17 11:20:458eb78f57619a173819ea9ef22dbebdf89bb7b0497c29eb6e3f0c72413049cac7exe Heodo
2019-10-14 23:24:3418235ac8c4482d9c0ca96be91ed18cbc601fa793f03d1820d8ffe492d6ff42ecexe Heodo
2019-10-14 21:36:15f80d1675a57f1bd13e2a39ea36614457cf67ba0dcd855f5eff60984f56db0c12exe Heodo
2019-10-14 14:44:18a33353b8af41a2c8c526cf73db3a091e48056c4b5e4e0c1ec13f416bde627754exe Heodo
2019-10-14 12:35:187bdd1409b080eb8510163cea3761d694be0eaec7e22bc44736cbfbc3025a310bexe Heodo
2019-10-13 08:58:27a4532a333319600efa847ac6b63b58e855838df70063ceeb58d605f81d223922exe Heodo
2019-10-12 11:09:13de6a8b8612b5236a18eea1a6a8f53e117d046cf2ad95e079a6715af68f8d2216exe Heodo
2019-10-11 22:03:26b324c3f1d846f5074cbd93d571bb318be73f452ce3ede02a2e60ffab5a2c25c8exe Heodo
2019-10-11 20:29:42b6658cfde96c4e49b1b1abd9e0092cc216b0f081335a9832dfc9cfb67f15484dexe Heodo
2019-10-11 20:16:269b798802fb47f53b07558c494b9163c839a07a3f8814c418c4059f9bfbcbe010exe Heodo
2019-10-11 18:06:29827fdbf68fcad346635cbe27c6fe3dba63f02a176e9238a0b7cf717c46890ebcexe Heodo
2019-10-11 16:35:509352f33597815aed4ff9832521e28d736b5b90516509c597d3ea6eff06baf522exe Heodo
2019-10-11 15:31:35606b1b5c0f7f6b0b31825ef8d2271727c274fc8c50beada611daa47e35a10792exe Heodo
2019-10-11 14:09:2272bf2eb295e2b41ce57c07aca7b4bb2721116a47c74fd119beff3a7e04820a18exe Heodo
2019-10-11 12:59:232a14adedb8f75aa65e9ab044b5bd259822ee6158de6833ec8f8ba5b7a29e9fbeexe Heodo