URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: e-fistik.com
Domain registrar:Public Domain Registry -
Domain registration date:2019-07-01 09:17:37 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-29 20:00:04 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-03-29 20:00:07 185.216.113.92ns1.ihsdnsx53.comNot listedAS49126 AS49126- TRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-29 20:00:07https://e-fistik.com/ajax/PnA23/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-30 09:03:178d3d42bef9fd408a123dd6eab36f020e0c0c3d6fc492faa0ae2d086192ab4069dll Heodo
2022-03-30 08:16:376d4a77d64da5eacad1110ae19994df0c769d5e10b059791aed46cf867fa57398dll Heodo
2022-03-30 07:12:07aba5a1ec13fac61874c437c8abe2951d5cbf4e4a6ff4a60c895870187876118cdll Heodo
2022-03-30 06:06:482a91694aec028388667efa971fa116247485de7babc84a243243526ca4b948f6dll Heodo
2022-03-30 05:09:49d90274f65dc0fa4e83f86f179a4600f1f1126578143e4e0e505c3e98c19c0a1fdll Heodo
2022-03-30 04:21:515ae6a41eb7f74665f1ad639c90db1ce834aa4402998253798167e30ac0f56bcbdll Heodo
2022-03-30 03:39:0366c1ef13e895f97cee478e9a31c37f84fe30eef6613e7532118b906d91d26ea0dll Heodo
2022-03-30 02:32:165cfbb280f66236620d24668416939d66dc17e94c2f826b02db47f2f9091e257bdll Heodo
2022-03-30 02:13:19bbaa2109d1728745b79adaa17b168b3e8cf47c6314ccf2b728ad443f98eb458bdll Heodo
2022-03-30 00:44:5070c9936c9dc22cf55e86c1b288ead8f62e296721f925d8c99cf66e16296b3ee0dll Heodo
2022-03-29 23:31:16cd456c6463de844997e75a72fe04974ab93e2308f226d9a60027847a16bde4c6dll Heodo
2022-03-29 22:49:30d85d4a87015e5a952efce6c8fcd291d57c66b8621bd752f55e1f2ff094fbd8c9dll Heodo
2022-03-29 22:38:38d8882a584bbb89d0483c5a4c80a68ac69d7c7c16b65a7d1eab3b417b1601ab23dll Heodo
2022-03-29 21:59:012828f42385cf5715c60e446a9f3c17bba84a38e71aff4df26b330ffad47787bbdll Heodo
2022-03-29 21:02:21d46a637d8fbb63d17fbfa0daef8ca7a06d44686083a0fd237653f808909ada73dll Heodo
2022-03-29 20:00:06250f901c21b015388313378585de67c30812cb9c4dbb5e09b97321511c0cae6adll Heodo