URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dimakesra.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-21 18:57:23 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-21 18:57:24 47.91.94.16Not listedAS45102 ALIBABA-CN-NET- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-21 18:57:24http://dimakesra.com/mywo6y/ACFuEfSe/Offlinedoc emotet ext epoch3 heodo ext ZLoader ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-22 04:29:3402c7fd8ed2ff395eb8c7eb3caca1e0cec299f4db7480e6d19829069ce541bc7ddocZLoader
2020-07-22 03:28:4317848a980123cfbb8869e7859b37b1f0e06e992a2ad751fde0a355d4eb377920doc ZLoader
2020-07-22 03:14:42639bdf650ed2329ccbe33f471cc8e6e8e24bc3a1147d446ff0ce5ea0e28ae9ebdoc  
2020-07-22 02:29:2957bbc36f8aa8cb407d0c50ca951d626555bce1bece1b524d00d0b0d5aa3257fbdoc ZLoader
2020-07-22 01:41:32e7edf63be003d87056435fd147d04f6930e07f08dc6534bdfdb3913f4cbbd59cdoc ZLoader
2020-07-22 01:31:434a77f876b6d9a044b69944ac284abd8838dfac4208cdefc8de51907727421d46doc ZLoader
2020-07-22 01:22:1964904286f139771314584f5ebf505208623b941f9fbc7c36e5039edcf595d9e8doc  
2020-07-22 01:09:3759ea049ff3ab24d93029a5395073975931ffb768537ca09e45fa6bf34af34accdoc  
2020-07-22 00:56:1740b8fbc9e4135de9d65f33366f01bddb05cfca61799ce403b30c092fcb421725doc  
2020-07-22 00:42:316475e70afc346103957694beb826b2eefdb2850c9939c91d6b514ce9e1cd32a4doc Heodo
2020-07-22 00:29:2685f96e5cf282786ef803c7c7886284d3225a9daeecc04ce3b8e5bbd143a3e0abdoc  
2020-07-22 00:15:247476dba24b28d2a074d7e75aea79591f98fbb95b065c91870b5a8198ab615f19doc  
2020-07-22 00:02:27ee7974d011582b83c0464f15d86e55b3306961023b16ed3c195c6c1953ea5835docZLoader
2020-07-21 23:50:33d1fe2bcc5439caf2963c2bcf85af9c8b8d4451abbc4675be82a33bf97ca81f18docHeodo
2020-07-21 23:39:20599ef65639238b841a852f756d71b9d44c5e02b6d151b6941b95c94b5e8eaf64doc ZLoader
2020-07-21 23:26:41112aa4be04d85780875343365b40f2fe9351e69dd4756d26a01f923251e17a49doc  
2020-07-21 23:11:32bdebdf81b9c2645e41964a4d14720c68258ea89382b1cee103369b6fb9a77103doc ZLoader
2020-07-21 22:58:29d9238e5af649fe7ea0572f9699144985895a4c4576ebb77e0e198ea5120f4c20doc  
2020-07-21 22:46:269c3f1dbdddf1aea861852243a66b3795d0cbf86a1ee36fb372505a839db31540doc ZLoader
2020-07-21 22:34:123bebcaf546b7a6b80b7d94610fb02a2577fdd1331ef3ed8f118677d029e2132ddoc  
2020-07-21 22:22:22b4e3c557317004de4b83d941a7dbd81648b8383245a1b95806b736eda61b53badoc ZLoader
2020-07-21 22:10:109f9d6e57c9e3398ca955952e4fcf58321a7f235e18eaafe6aab3b3ddd4e88c7cdoc ZLoader
2020-07-21 22:00:4472a76d3c5a30ccf7584528d7bd29ac47062d468d56a417063c19573496089d56doc ZLoader
2020-07-21 21:48:585a8f4a7b9da36a38084e054525e4d5d471070b15f958a1118eaea6f7be429767doc ZLoader
2020-07-21 21:35:41eac069c2098e2a08afb43c1f5aae5878d557e5cef94096cefa93bbe0d04c236bdoc  
2020-07-21 21:14:26837bbc0f0c83b6a6837640d6ecda9c348ffd06a81fa4b87c7ebfc7df59b1a690doc ZLoader
2020-07-21 19:31:22fcb7d57d53fe5854649e2b62386272c124701478061110c83cb947a4fc0dd3c4doc Heodo
2020-07-21 19:30:57fcb7d57d53fe5854649e2b62386272c124701478061110c83cb947a4fc0dd3c4doc Heodo
2020-07-21 19:18:48d00a595a3e71c743fc04ec4a2ba0eaab9fe1d76d7b018423fc5cece4e4a62a29doc Heodo
2020-07-21 19:05:50a96e572969f83e205956bc1076df5193a717705c9123bd19bae210f34502c309doc  
2020-07-21 18:57:249ed17331261676ac56f81432fd0de1293bdc48863867eac50012dff696d69439doc Heodo