URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: elementum.edu.pl
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-21 21:58:41 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-02 08:17:20 188.210.222.87h27.seohost.plNot listedAS50599 DATASPACE- PLyes
2020-09-21 21:58:42 46.4.244.51dedicated-two.fsn.hetzner.addi995.deNot listedAS24940 HETZNER-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-21 21:58:42http://elementum.edu.pl/wp-admin/invoice/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-22 05:13:038d49090e5ad1ca487645e8dad8b6e90d267b4a7f5d4cdf4d9c4441d969f088cadocHeodo
2020-09-22 04:40:56313348d434b780af86ba7a2d374246c8188545ba67cafdb86907a445c2052df6docHeodo
2020-09-22 04:38:04ec2ce44f2fbd4e3dae1a7268da4de197bd006a620ec08af7122f25557cd49196docHeodo
2020-09-22 04:16:0561b104c81d6e07bc38102631a844c6247bfb16ff720fc134b3a95d601df23fabdocHeodo
2020-09-22 03:41:103329e54a271ff895664104546d9af52c00ce1284be48322d3ebf1cc34db74169docHeodo
2020-09-22 03:22:54fb096cb018d3c66f22c322028f9e8f1f049e9a9eb3531f9e893c3d2522f35951docHeodo
2020-09-22 03:08:13863a67fda8f1051e42a5caca1a89f4bd895d01947127dceebf7acb4eb4b881bfdocHeodo
2020-09-22 02:52:3276d7ce6a12f4c9d03615c5255b79835bb2cff27e86deb3cb790932cdca164ac7docHeodo
2020-09-22 02:32:249e25ce36733cb087f13b4a1c744a28856f2e1e878782893ac18e682ad0f2e842docHeodo
2020-09-22 01:53:467c15b14e3a1a2b381be48aa601e40dbbbc0b493b584c13314459e7e5ca57a953docHeodo
2020-09-22 01:46:127aa7d38a55d5f7d01ee40a977a2df63d0cd4c938482a2fba3c73e1844405a0fcdocHeodo
2020-09-22 01:27:0023184d215b3db4bb670b2c1e70e1b7f81760cdec7e35b8a0a90cebc4a6797eccdocHeodo
2020-09-22 00:53:49ed6598e7e6d37524439397ed78a735fe41117f47c0964cba780b5800d4eb5146docHeodo
2020-09-22 00:40:100489a6b94e2c6206bd2730cc32c8f873d1ac1af2ad02bdb69a77a8078460741cdocHeodo
2020-09-22 00:12:39ce04dad796a1819d846a6a981c97426c43b0943deed734991bc6780eb54ba074docHeodo
2020-09-21 23:29:084b79ba0096d15d6a7c759fdf3e094194707f88072e8aeb0d53979a88db734ae2docHeodo
2020-09-21 23:22:4461ba6999ffd23a0f22f6827b577e773e9d6a79ef366b3260a6b55a792c98d519docHeodo
2020-09-21 22:55:19eed638e68fb63c08e3dbe230dc2a66544170ba12c92aacb9571a99fe355f0878doc Heodo
2020-09-21 22:39:3775aacb9b9e0f3b4113358caf49078bb79286fb9637c523807a8f533d0df7c834docHeodo
2020-09-21 22:18:2704b6915557c386d4219e56049dca6eeef6f30b41f45fb525d36977e248fbf4ecdocHeodo
2020-09-21 21:58:422d560e72a8bbfa60a7f05d58048f8174de084d6ff4a53531d9582e251fc067c5docHeodo