URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dk.wajahatabbasi.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-05-15 07:50:06 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-05-31 01:19:50 104.243.250.35Not listedAS401650 VL- HKno
2020-05-29 18:27:03 104.243.250.40Not listedAS401650 VL- HKno
2020-05-22 16:40:04 104.243.250.28Not listedAS401650 VL- HKno
2020-05-23 08:38:15 104.243.250.36Not listedAS401650 VL- HKno
2020-05-21 03:26:58 104.243.250.16Not listedAS401650 VL- HKno
2020-05-20 23:24:42 192.198.120.40days.specialservicesite.netNot listedAS29951 SYPTEC-NOC- CAno
2020-05-15 07:50:09 104.243.250.42Not listedAS401650 VL- HKno
2020-05-21 01:25:32 104.243.250.12Not listedAS401650 VL- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-15 07:50:31http://dk.wajahatabbasi.com/warz/HCOQLLWyngNXRN...Offline404KeyLogger exe opendir abuse_ch
2020-05-15 07:50:14http://dk.wajahatabbasi.com/frmbok/WgbX3ZvUamCQ...Offlineexe Formbook ext opendir abuse_ch
2020-05-15 07:50:09http://dk.wajahatabbasi.com/chris/1rCwFansdhghX...OfflineAveMariaRAT ext exe opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-16 03:52:140dc5544bea869bac4ed9aa80f5f9024757370ccd6d7f25d39a24ab813c2eac04exe  
2020-05-15 07:50:3121e8f972db8dfe9a24097cbeb121d6017d2d6ab526d366a72e8f656385471d29exe404Keylogger
2020-05-15 07:50:1410133904876f6c7b8a16c1e3fde4854e7bddbf26ee755eb360f1292efe15f840exe FormBook
2020-05-15 07:50:08e17b633100143d5d496909de960cf1435f65e382a5a424c945bbae94cac819afexeAveMariaRAT