URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: drwalidabdelgaffar.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 13:38:02 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-23 10:41:22 162.241.224.122box5183.bluehost.comNot listedAS31898 ORACLE-BMC-31898- USno
2020-12-17 02:41:59 50.87.232.239box2414.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2020-10-16 13:38:07 66.147.244.172box672.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2020-11-22 14:34:58 74.220.199.6parking.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2020-11-23 06:00:42 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 13:38:07http://drwalidabdelgaffar.com/dentalia/lL/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 10:20:347a25db35bdc5806245a3031842444a28732394c3ba2badab6014dc3b4f48890bexe Heodo
2020-10-17 09:16:4009bf94c23b331219dd96d62bd300721038076a252eb7fb282f0f11cf9fc59bb7exe Heodo
2020-10-17 07:17:184d5d65357da0c96c5469fc5820cae1bc48d2d3fa8bed609fdfda491ddcdf4bfdexe Heodo
2020-10-17 05:45:04ce73ae3f3f44323652eee9356096bc9c116a61989d4193763a7fb76eb57a04edexe Heodo
2020-10-17 03:37:45ba104d4faa24dc3e92595a5d3e9a9c15c101d0e27b9d6fe5d1a473fb3b604c32exe Heodo
2020-10-17 02:28:53e3d0ae08249a111ec0569643f370ef8f213dd45d2077a3e2ecc8ab9f996e724bexe Heodo
2020-10-17 01:32:0407a36a19007f7512328070cd58de577248580abf5ff3b5c58a46e9eb02b81a42exe Heodo
2020-10-16 23:02:578606b356d232487a686abea871d37002a40c53c7934172421b7e5338b349892dexe Heodo
2020-10-16 21:49:3959be49b69bcb9157c8d42b6c56b714f603889199038b1488a3d7deff5237aa59exe Heodo
2020-10-16 19:20:13be6488193677de8c7566e45e9e6ff649f2428e3a4569032a8a8bf9e8d53a22c0exe Heodo
2020-10-16 18:12:331ff092ec49896ccfb8fc53db21546fbf2d857014c089b1368ff686a4130b486aexe Heodo
2020-10-16 16:49:111d8393097751acc49f63a8a3e86b6b52a994e8c80eb999cbabe354466dd0c7f0exe Heodo
2020-10-16 16:12:56661152f3934c718701b79958c7ac579eb5f6d64d0d6701facbef46aec6662d60exe Heodo
2020-10-16 15:46:297ca9883c3f172eea6a81e96bb689531e00e207daec35fdd31bc86eef9c9f2fc4exe Heodo
2020-10-16 15:04:55e648652a5bfc6740346671d2971388f599a8fd1acf5d78077bbd0661bd17cd32exeHeodo
2020-10-16 14:31:18c356d5c9057bff7fa6bf3ccc728112615a783cb07ef5b16ec0cf6660580bc9c9exe Heodo
2020-10-16 13:55:50137fe75cfa0213a562daeef603c87423d18590af10320ddaa1fa6e1fc16e2707exe Heodo
2020-10-16 13:38:07bb2e603dbdf653857451aac908195e1c3533aac880933bce261ce0bcc265760cexe Heodo