URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-29 09:55:48 | 45.13.185.247 | odin.profesionalhosting.com | Not listed | AS201446 PROFESIONALHOSTING | ES | yes |
| 2020-10-28 10:59:03 | 185.18.197.220 | ns197220.phdns2.es | Not listed | AS200960 PROFESIONALHOSTING | ES | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-10-28 10:59:03 | https://escueladeencuadernacion.com/wp-includes... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-10-28 13:04:16 | 913ad0deee7db9012293779fa15d6491806e2ea0d1935f45991a652ec1b76d4e | doc | Heodo | |
| 2020-10-28 12:50:20 | d33ceb9a5c0d965211a46fdd86a7f88e2aff7c03d18561344e4ef39faab31fad | doc | Heodo | |
| 2020-10-28 12:11:26 | 55555a045c8b3878af56c302aac860598d4216873247ce3332c110e236b11b69 | doc | Heodo | |
| 2020-10-28 11:42:48 | a77088a16b23e969ba4331abca1b875bdbec7815fe8cd3ca42438e6bfd862de4 | doc | Heodo | |
| 2020-10-28 11:16:19 | 484ae53bf0192a40df9a49b1a34ba687a1551905b56ec1ffbcf77930b1a5d1c9 | doc | Heodo | |
| 2020-10-28 10:59:03 | fe3c5a60f73b2274c9d19816c7263b1a5094858ccce9268c748e738528e39fdb | doc | Heodo |
ES