URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dmgh.ir
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-04-10 03:22:05 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-06-28 09:28:18 185.94.97.2iran1.mylittledatacenter.comNot listedAS204213 netmihan- IRno
2019-04-10 03:22:07 185.94.97.54maildc1519218808.mihandns.comNot listedAS204213 netmihan- IRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-12 02:49:01http://dmgh.ir/wp-admin/verif.myacc.docs.comOfflinezip zbetcheckin
2019-04-11 19:46:07http://dmgh.ir/wp-admin/WhRs-iPLJ99haAM471xB_lD...Offlinedoc emotet ext heodo ext zbetcheckin
2019-04-10 03:22:07http://dmgh.ir/wp-admin/wi09-p3i83t-usemzkb/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-13 00:19:35d0819ed578beb38c8875532613ff761b6b4816f653ee41042f853fb87cdb592djsHeodo
2019-04-12 20:49:43804b01b391cf622f6207d52fd43586ff8323ce6209873f2bf92609e4ef959a1cjs Heodo
2019-04-12 20:17:55f2306136a8bc9204fa7b1f37c624aa8311670752a282b8edf00ba616d4f52b0fdoc Heodo
2019-04-12 17:39:58a337638a8cadf540561aed4ec545415e5b2502216a08d8fe426c5a717ee86c67doc Heodo
2019-04-12 16:04:57661f7d9aea272c78f3b9ce42bcafe6062e48e5ff803b1dfd9c11b3c8053b2ea6doc Heodo
2019-04-12 15:33:49a3cfd0e6eca49517a28f5b354291312c2781d3517a17b7002281d043e60d66a4doc Heodo
2019-04-12 15:02:57c892bc440d5444b162ce0d9b5255ec2e006a288563c30f1993cb3b7beaef98dedoc Heodo
2019-04-12 14:01:0118f7ecfd84049ad910120fdb48ecb6ee3daec7684678b183dc219e3c8f883816doc Heodo
2019-04-12 13:29:4304a0e4e5809e9acffde247f6f388f9da11ec5bc45d8a07af8be6945c32012748doc Heodo
2019-04-12 12:58:00390f49546497cbf91f151a5985aa4aca806d34215debbeb097989a7a0a25edffdoc Heodo
2019-04-12 08:50:09b3fe76513ecc54e0ed1c1a4bb1f12db47bbbd25b42ee85cb2336187cc85efdf2js Heodo
2019-04-12 08:12:341f18a298cc1cdd9527f5345e3ac6438cadffdbf62a1f2a4dc69a22a626980c41js Heodo
2019-04-12 00:08:09df444d6f7bbf72f606b7abb628ea22bb86c81121c2d8d5f8a0238e0e377dbb33jsHeodo
2019-04-11 21:33:034836a7a17364de19191c0dce25ed5ef4aeeb5c93db72b9e6a72f8ab3217c39c8js Heodo
2019-04-11 21:01:119aa61029c94de80d07f6b17068e8977b75840339e2d553f0928ff1ba45e4c593doc Heodo
2019-04-11 20:30:1474f57302ce146547d209ea14f33ce4dce34026f1906d2a6487055d69100db658doc Heodo
2019-04-11 19:58:1713af9da857f2ae4548f74d6c009109b1f9230c81c3e14669a6716c93bf6fb374doc Heodo
2019-04-11 19:46:0717e687b094595330b664d05109e161b14284b8a056633e4dc3a58c8d80eddcb6doc Heodo
2019-04-10 16:57:1726b5d6c8934dbf593f2cc541bacac6e7812d71ddec256eb7bb4e9dd61b9c13b4jsHeodo
2019-04-10 13:49:167853439472ed9cd4358d92492c3abbb44d2ae46a2e3fbceebea2bcd858e4ebaajs Heodo
2019-04-10 06:47:06fded1345d0108bf6da569dbb8b00e143b393e89c87cb201965cd1da0631ad4a8js  
2019-04-10 03:22:077ddfffb789cb316a55ff6f7c0dea5a703dbe3cbdd25d70cf6cc60481e90a057cjs Heodo