URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: elkanto.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-28 09:02:12 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:44:06 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-27 10:44:06 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2020-07-28 09:02:14 158.69.28.113Not listedAS16276 OVH- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-28 10:36:06http://elkanto.com/cgi-bin/Documentation//Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-07-28 09:02:14http://elkanto.com/cgi-bin/Documentation/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-28 11:38:35dcab281c030ca8ebd833b95d2379df634eec571e1ae19b6aad70ae1a0eb2e07edocHeodo
2020-07-28 11:38:35dcab281c030ca8ebd833b95d2379df634eec571e1ae19b6aad70ae1a0eb2e07edocHeodo
2020-07-28 11:37:26dcab281c030ca8ebd833b95d2379df634eec571e1ae19b6aad70ae1a0eb2e07edocHeodo
2020-07-28 11:37:20dcab281c030ca8ebd833b95d2379df634eec571e1ae19b6aad70ae1a0eb2e07edocHeodo
2020-07-28 11:22:002cd1cda0f9144cc5668cca05b675beddf4257109b659772e705b41fc0fbd331edoc Heodo
2020-07-28 11:15:577880dbee79353af6a070ba20eda972b3ef7abad67d3c309d064ced44676ed6e4doc Heodo
2020-07-28 10:53:1223c51d3c717104427e3ee990c8db28900701083c086707b24493ad7f9968be97doc Heodo
2020-07-28 10:45:3623c51d3c717104427e3ee990c8db28900701083c086707b24493ad7f9968be97doc Heodo
2020-07-28 10:36:4569314a5a40529facfde61bb78562869e4ca9a67ba69a3028d376a265e174ea6cdocHeodo
2020-07-28 10:36:0669314a5a40529facfde61bb78562869e4ca9a67ba69a3028d376a265e174ea6cdocHeodo
2020-07-28 10:32:422840dbe68611c23040d1bcd78b9473dcd48de959c93280ee78f105b5af51fe75docHeodo
2020-07-28 10:17:298a02a02bf39b80d809da634fe105c29a2b012acfa59c4eaedd94360fb5fbd2e3docHeodo
2020-07-28 09:55:4426906041efdeafb6c1754eac8dff97abf079148816f1121ef92bfaed0a6e9991docHeodo
2020-07-28 09:37:23cd8165b730d0801f2eb1524b1a430abe1d69e7105b2a898fbcca440afafd8f01doc Heodo
2020-07-28 09:02:145cecbe51fc2299bf1c6d5d6a6ff026cf27c9c6babf6b1e21e63d6c9e77e0c13adoc Heodo