URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: f0413249.xsph.ru
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-06-02 13:29:32 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 06:32:55 141.8.197.42techproxy.from.shNot listedAS35278 SPRINTHOST- RUyes
2020-06-02 13:29:36 141.8.193.236eldir.from.shNot listedAS35278 SPRINTHOST- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-14 10:34:05http://f0413249.xsph.ru/dwm.exeOfflineexe abuse_ch
2020-06-02 13:29:36http://f0413249.xsph.ru/HWMonitor.exeOfflineHawkEye ext vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-14 10:34:05827aff908200de2253676e6140a24865291414a1ce9700e1924a9885a0950884exe  
2020-06-14 08:07:562b3e989df198785d1c5f4b0ba905927f361db10dbb9cec304f0933785e2b38d6exe  
2020-06-13 13:21:19e264113c34f7bd826c155ce23f373052bdb6deabc6ffe31afac7564dea6d01a9exe  
2020-06-12 12:15:4099eb54ab6391cafa19a8c44fdd3b7f8044f8e81f1e00f09098efe1749b4bcf1eexe  
2020-06-11 00:41:19836b28ebdab1a86f27760109ab87bce49755f57589c5b40265a5fe616306b6dfexe  
2020-06-10 09:40:257921b4889e02f5894a27b511ee8e7304655736fe9588b6fe86d30ead2abd89a2exe  
2020-06-10 00:22:32fe639ef6396629ce54e7352444f9ddf1a3aa8f5853f0368b230a73cfe7d62643exe  
2020-06-09 15:25:51e3b6b54d958c6fa0e661cccdb750e565c685ba93e6ce2377f73a04ca689bf42aexe  
2020-06-09 05:19:127ab3cef019031927c5e24d796eba7d99eccce0c2e955abcadcd753a048f80bcaexe  
2020-06-08 19:20:54e9dfa43be04410948b7e56a5cecf5bd5c3ab61d1050f24e105c6733ed4a67cd0exe  
2020-06-08 10:46:56ef65b90badce6656e48efd5da185c7059293b37ce28eda72e59de78656d35b63exe  
2020-06-07 12:19:039f37b94ea59912229a396e7d7b070b56992e62d0ce4932e0378269e6ee661169exe  
2020-06-07 01:23:084a29689067b73a148dd1e5afe71410692bb4508c4fec8e5d20ed14485cab6596exe  
2020-06-06 23:57:03c619ddf23923361e9eb7d7448b77aaa96e9b9f87f941dd5c3adfa62c013c22adexe  
2020-06-06 21:12:2070ff0cb2708276e630fd8143115bf0644bb647cb97d1ebb1b65e0aaae78cec1dexe  
2020-06-06 17:22:15f51120f2a61d6fecb4dcb35774e1dc133934ef057f77b129fc62098799e6bef5exe  
2020-06-05 23:06:5118b5d6d0e6683b38b695586c4f988dfa9751d4a4fb964a51cc3673466472c303exe  
2020-06-05 14:32:424c98c9331de430cd6cbe26c4bc34297f9f98ce0536393f180661fb2a79f21ec9exe  
2020-06-04 21:06:47bd5145ed20b0a444f4e8fd8e5884811705cc01d27c108004adedeb508dd45a42exe  
2020-06-04 11:59:2220b9d2b67e57aa7138beacefa9538f1d03966a9660dad3e1308c735622cad4faexe  
2020-06-03 20:41:489bdbb898136cc631ca52546ae79f44910ff10c19ccefe1a76d64f3a615538bf1exe  
2020-06-03 13:25:56df0c3ab7909c86918d2df4f70fce6f57504607daf18e167411daebd11235958cexe  
2020-06-02 13:29:36149be9ee402fe6934e8898ac578f8ded23d397761ab4fa0a976c9d978d489948exeHawkEye