URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: disdik.munabarat.go.id
Domain registrar: n/a
Domain registration date:2021-05-06 07:09:05 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 19:30:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-10 08:08:47 46.202.138.134Not listedAS47583 AS-HOSTINGER- IDyes
2022-11-16 07:56:44 154.26.139.250vmi1084829.contaboserver.netNot listedAS141995 CAPL-AS-AP- SGno
2022-01-11 19:30:07 194.233.89.63vmi1177629.contaboserver.netNot listedAS141995 CAPL-AS-AP- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 19:30:07http://disdik.munabarat.go.id/assets/DWlc9lXQDK...Offlineemotet ext epoch4 redir-doc xls waga_tw
2022-01-11 19:30:07http://disdik.munabarat.go.id/assets/DWlc9lXQDK...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 00:28:239e0c891bd4b687d10b5c7d8082a2d4c7d24a0c9ea90b1d0aa09dafa6dee22047xlsSilentBuilder
2022-01-12 00:13:3559f00806db4a68a10acb6aa0f9ea1d21c2e8527ff2b82d0ab36196ba0bda9183xlsSilentBuilder
2022-01-11 23:46:445dd8cf32347063a7b6b80c824526d1f58a3b8c99344eaea74dad15d687395f64xlsSilentBuilder
2022-01-11 23:22:16bfe1c65501eb9a22ea914fe380d24127cdf99ce17fc20683f99a7b1e0ccc06f8xlsSilentBuilder
2022-01-11 23:08:185c5fd037c414e33a6538da72a5ea4ae89c8dac15b396b6a10e8504a0b5a7ee75xlsHeodo
2022-01-11 22:46:40e48f10cc12e08a32f523982c024f49dca076b06c6bd47b5cdf3d43aee5097091xlsHeodo
2022-01-11 22:15:4115808d5cf09ee4a60ed9e18d0b403cd762cbf7613246e2cdfa6fba88eb654dd8xlsSilentBuilder
2022-01-11 21:38:33244f3b421f675868b3b87f562c2b307e3f4c3b914d67008406a8f9ed0594b4c1xlsSilentBuilder
2022-01-11 21:23:15dc1a568534305e8dd82443bd62f3fefe364de2073558c8237bbe099593714259xlsSilentBuilder
2022-01-11 21:14:39c7cc8c98988b0b5cdbd103db7c61f01a6e92f96f525c36f15bfaae039bb46cd7xls Heodo
2022-01-11 20:49:50fd3087fa953ec989caff35845ec2bc3cc41303ac26e0f0d0b8e25a325fee3a29xlsSilentBuilder
2022-01-11 20:19:56e8b123fd61bfeabe7b45797f6cceaef77207d8d93d2a2b38065976603120c558xlsSilentBuilder
2022-01-11 20:02:5803319a0f6c37911983650f91c2a01b29eac84b17bd99133626d11d08952ad9d4xlsSilentBuilder
2022-01-11 19:30:07a43e422bf49682cd2dd5c53f5e3c8b8712c76cd9f082309e92decc55f0f8f92exlsHeodo
2022-01-11 19:30:06753b9643ad72248ed72d78b55919adab567309f6bc9f9342106acffe890dfa31html