URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ericandrobin.com
Domain registrar:Tucows -
Domain registration date:2004-01-13 00:16:38 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-07 18:02:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-20 21:08:18 66.175.58.11parkedc38.carrierzone.comNot listedAS30447 INFB2-AS- CAyes
2022-02-07 18:02:06 66.175.58.9hostedc38.carrierzone.comNot listedAS30447 INFB2-AS- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-07 18:02:06http://ericandrobin.com/cgi/qRe8dRaG2HDNOOG1/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-08 06:25:23c0063519fc13a46352f449c524cdff1443c1ed3b707b348e837a7c7393c5cd3adll Heodo
2022-02-08 05:27:35f604dd992361a74e21c4ab09c42eaaae639efc196a0b981a46b3f9e1edd3c387dll Heodo
2022-02-08 05:20:4194e545972116f79a856672b6095fb10a7302e1e4cb116e3d077aad976668c50edll Heodo
2022-02-08 04:44:042b53bd93c6de747b08bcde30ca108e7b1fffc7da0e79b47bd9273ebbe9a65e01dll Heodo
2022-02-08 03:03:261589a69e0803c1e34174064cff13320a0251473b490c54fbf0afacb2d2d7cde2dll Heodo
2022-02-08 02:52:14bb99ad30c5ba191f7f4d08f0f8be94907663008d309c674eea09d6061dd938bcdll Heodo
2022-02-08 01:52:369ddd913db1eae8af65c804299ca2888deee5c12ff568b161109c64e0066b5157dll Heodo
2022-02-08 00:59:219e0ac5b17f84e95e8547004ff9f443d0058558f8c9847a171df3a08610c4cd52dll Heodo
2022-02-07 23:17:17755122e1cc3ea0212eee26e56bb49f47e342e709eadad6e8f72bc081559cd9ecdll Heodo
2022-02-07 23:02:3424547ec495ba199143bb4bb623cdd5d11a46f9d6e34d63af1cd409035adb7925dll Heodo
2022-02-07 21:18:571c6cdb647fbe8a3b2646b4e68d0ab11666cf897f4d34b112878aa0d254eddcdadll Heodo
2022-02-07 20:22:1409764b757b19721fd1f109f69d89d8d81196ed87a45002da13cceb3c54950c31dll Heodo
2022-02-07 20:08:227b5ff54c96dce122db6f975e01f704c79c336d942ab37b73f556b0a5119d1913dll Heodo
2022-02-07 18:21:10ac30d134519a4508fff5b23c1c86b7f48bd265cd9aa4e6d98f968d8ce25d5529dll Heodo
2022-02-07 18:02:060e1c5235590969d09feb071840436170166694a88bf596c1517e43326de9e5c0dll Heodo