URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ebs1952.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-12-09 13:27:06 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 05:21:49 49.50.70.134server.cloudhostdns.inNot listedAS55470 CYFUTURE-AS-IN- INyes
2019-12-09 13:27:09 49.50.124.15549-50-124-155.noida.datacenter.terapeer.comNot listedAS55470 CYFUTURE-AS-IN- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-23 08:00:13http://ebs1952.com/e-commerce/multifunctional-s...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-01-16 05:40:13http://ebs1952.com/e-commerce/q6ijulm6p_0s1don8...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2019-12-09 13:27:09http://ebs1952.com/e-commerce/RVIJhI/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-24 04:11:57533a5a288de7b3b037b3d849a6ba1d95b8b6996d84361f9d6a32a81a1b7172c3doc Heodo
2020-01-24 02:49:04a5949311c983e124ba9f32963d4edcfec18258c0993ae8f423472645c91d8314doc Heodo
2020-01-24 02:41:013d86526138f86edc52ed86e249219e0f7f33cb846f866a794072a1953a1677d5doc Heodo
2020-01-24 01:09:0026200f6b88c49206100f74b8de4d6d959dc61305690ec8a4442dbc86a0048f24doc  
2020-01-23 23:51:58dcd9613e4c74c03508bab4afe05cb54716057c6b38fea1e9dae9d42041eb43a6doc Heodo
2020-01-23 22:19:50356d9d432807a2d7fb61e5893fffec5494ff1c4500b5e0786e8548fa32ca930adoc Heodo
2020-01-23 20:57:39b1fb25ac9eb32c1eafa66d3a8fb382860f50d00075550108b0611b32753bcdd7doc Heodo
2020-01-23 20:44:0929da9d017cd0bbe2d5b57ebf2919938de9914e669199f58175412bfd7b44861cdocHeodo
2020-01-23 19:25:40737261cba27fb5709e37158314184d01a7f6a36386fc2535e236893d82590df2doc Heodo
2020-01-23 18:36:32b072a08b5c35f8fb107b90ee815584ac4f7b24bd6ae30a803717f1f3fdfbeaeadoc Heodo
2020-01-23 18:14:47ca7b1a3d7db2feeb5548928ff6adb85fdb993b11795f88fed56ec7649beef850doc Heodo
2020-01-23 16:57:26e64e311b594718ab849cdf6a3379d11774932a94c3498135f107d659174adb40doc Heodo
2020-01-23 15:42:1199ebddaec2135f848532a29c52c1cddd41338600c73dd4fca57f26e849e393f1doc Heodo
2020-01-23 15:26:27afe09e292b9823a2d28f0c6b6c795b2e3f9d1758d53e30d1eaafd8dd29b2d0a4doc Heodo
2020-01-23 13:54:238854c592155c1bd835e9edee147c7fa3714ba319ad138943dae4aa94a01d2adfdoc Heodo
2020-01-23 12:47:16fa356cafd2c2edc009a85933b576ce9298a6fb4638ee0a1b792402e225913215doc Heodo
2020-01-23 11:27:16b63585f5efab051c9a793dac78be7af0a7bb002f803b2d67a828065ee6ce54fddoc Heodo
2020-01-23 09:55:174b10f942d9197454cbd1e18eb87d18ab77fab4e78186b0157e96404d3ae11a3cdoc Heodo
2020-01-23 08:23:17476a96fc934924101f12b1f1e3548a9688c25bf0eb1c67ef835bc657244b0835doc Heodo
2020-01-23 08:00:13111fb22a7f077604788258c6a9c81c16b1fe9f5df6cb867194d03238e6f4343fdoc Heodo