URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: elemanbank.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-10-15 00:13:15 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:43:36 85.159.66.9385-159-66-93.cizgi.net.trNot listedAS34619 CIZGI- TRyes
2019-10-15 00:13:16 185.216.113.132ns1.ihsdnsx57.comNot listedAS49126 AS49126- TRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-10-15 00:13:16https://elemanbank.com/test/7/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-16 19:35:544960ee8376cd621939f53fe5ace099a6b15b2d6347648988a278d87b04a0d8b7exe Heodo
2019-10-16 18:49:58d0798de6a98efa6664d4e9dbdd9ce79a86d3eba6a5fa42e031eec52408ccbbf8exe Heodo
2019-10-16 18:03:46ebc69d24302d9f9262b4d07cd4022317358009156651555af9ae7e5a80ab151dexe Heodo
2019-10-16 17:16:47277ba7c1dec46ee4af68163291620364ed6774fdabec562641ded11dda8bdb85exe Heodo
2019-10-16 16:30:48ef6af0844b3321c71024845188ddf305dabe6be2445be86eefacaaa942837e6dexe Heodo
2019-10-16 11:08:118482ec884e39ba88dc0fc76ba8e81c553f0e4572c4360540c6582bfa8a368226exe Heodo
2019-10-16 08:01:055f57806615245c072c1930ac74a311cb536cfed7bf8570389f7f9ae6cac61a40exe Heodo
2019-10-16 00:14:418eb78f57619a173819ea9ef22dbebdf89bb7b0497c29eb6e3f0c72413049cac7exe Heodo
2019-10-15 21:10:24deca3be654504d28d58507d7d847b1bb35c9d23535c008ef7ce27d9ad1a23f5fexe Heodo
2019-10-15 17:17:5188cb9fee414906e4d55a82c4c3564bb1181072683db1c3f0e9820090a6f40072exe Heodo
2019-10-15 14:57:156de788187b9a790f0a378b94f02582e1453d4f77f5ac4c742c7ffc4bef0ea157exe Heodo
2019-10-15 13:24:13455ef6d0b604616a90a98f66c763d393267e97ab85134e328db164c7f2ba7a03exe Heodo
2019-10-15 10:19:420897d9a44d1aa4b7afe9a3fda15c54d9062ca988c31201386fea03838734e7f2exe Heodo
2019-10-15 08:00:388245d6840bde1c3d2fad9999d01e33702d237f6aed4b45d5ffbc9eca54e76309exe Heodo
2019-10-15 00:13:1618235ac8c4482d9c0ca96be91ed18cbc601fa793f03d1820d8ffe492d6ff42ecexe Heodo