URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: derevo.in.ua
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-29 14:12:02 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:38:08 109.199.124.188vmi1828297.contaboserver.netNot listedAS51167 CONTABO- FRyes
2020-01-29 14:12:03 193.0.61.30Not listedAS57167 CITYHOST-AS- UAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-29 14:12:03http://derevo.in.ua/4tv7/DOC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-31 15:25:34fde981959b6b1118d50bf879509945fcdd62384654c0c29ebc296529e153210bdocx Heodo
2020-01-31 14:08:161d15c420f5149dd31996e11e3d746188181be53557d7956237b8252c9630cd7adocx Heodo
2020-01-31 14:00:398733de6d4b6d637e2bbe3928dfeae5cd7838708d9ab3f70799f4440d5757614adocx Heodo
2020-01-31 08:58:1212f17aa88c41cd66c648d4f19289192958e721c494829eb67962060967d804bedoc 
2020-01-31 07:27:167cc3c9a82d96f25657f9f7cf1dfa55720f5d355762b2e420f7fd0748d8cd0c86docx  
2020-01-31 05:56:12da7ddb46ecec831a2c5293164ee90fcaee314e6c070f201245cc15c1589e171adocx  
2020-01-31 04:40:106c537f49120d9eb66ddd4c15b6b27c22fde22d43869c18fa9b8bfb1766d13d15docx  
2020-01-31 04:05:389c5de271d65d0f60677c42eca0d3ef7644017fbeb235ebf84a1bf90f0759e3d8docx  
2020-01-31 03:15:246971378f1c7eccd93a6ab7cf3dd5ea551a5ca14cf564e121f883c2f364e46876doc  
2020-01-31 01:45:20693d3dc3b352e37c179f3301a300d7f5c606e70bb96aaea0c37000e1b3ac6f81docx  
2020-01-31 00:45:18757a48d02b6fe0b6727f63c17977c6b7dade46c23a91bd48a77efce02b1619b7doc Heodo
2020-01-30 23:31:0254e129e6834af97b4ad21f3e8157eec8f08d3c46c4c49680d1b9a539429f58f5docx  
2020-01-30 22:03:1276483b424ad76c877f0c7f4e62405edc7e07a17978fcfb4c2b9087196d568a1cdocx Heodo
2020-01-30 21:18:159d7903dcb84d56c7bb6712b573683c2ef0302a29123305fedbf29279c6e9815cdocx Heodo
2020-01-30 20:35:29c7710490083776e7b352f36bc4922c56479b54e76458d8d20a85be4f7b4af7a7docx Heodo
2020-01-30 19:04:1011850be3ffe56cc8d2b4dba455475beb00c90133752d3e329b2ce202a87bab7bdocx Heodo
2020-01-30 18:28:41bfb07402a9c2d9bc220ccce8b230e81d4fc183715599b2aae3a17dfa3d9e8419doc Heodo
2020-01-30 17:45:432a4836acbc4c134aaea56cb543461fc151e8db768f9cf1a3edb70813dff8327adoc Heodo
2020-01-30 16:35:42901b4dd2e122f1f20fbdc06b9fc30b6e24ab1feeede2d2730ae662c7d5f42cb2docx  
2020-01-30 15:38:130f306bd8f9966cbd586c596b54c32f00c23bf48963ef3a0158e1faa3ca1add83docx  
2020-01-30 15:04:03bcaa904b499b15bb8bdfd3594adbb8792a1f6d6c0719df8c754ae70d5e01d1afdocx  
2020-01-30 13:49:526503eeb82c3bc74d74c8bd056d2737b539afd23333ae2f25ec18b2ba72a6c567docx Heodo
2020-01-30 12:20:257578501f349034c9a89ebd79a8c301a6ca55760813992475ecaa08b3c4a6d19cdoc  
2020-01-29 16:08:16135e6e64bd7742b372ada6b825319eb55fa6081a563f2bb5b8c41b146badb7e9docHeodo
2020-01-29 14:58:19e18317c574e19a90bb705a85073532bd2ec510834ab8698ca864112a79aca9d2doc Heodo
2020-01-29 14:12:03130b62adf5a94840c26634186acf4a9e24225e45330cc266e05d6d9d352d4f7cdoc