URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: faks.nl
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-22 20:02:10 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:08:25 91.142.254.113srv12370.hostingserver.nlNot listedAS20857 TRANSIP-AS- NLyes
2020-07-22 20:02:11 141.255.181.38ip-space.by.proserve.nlNot listedAS31586 AS-TBNLTN- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-28 22:12:13http://faks.nl/worxcms/3184152392886665/7fn1jl8...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-07-22 20:02:11http://faks.nl/worxcms/protected_sector/verifie...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-29 08:58:17075c7bee49676a5bfce88288211ed92365f0a09e0d5c16e01ecb04398e9ba991docHeodo
2020-07-29 08:44:57d303d07324f08db643e402e98153df70e6eac7c42905dd67d233231438bbe25fdoc Heodo
2020-07-29 08:30:0010bff4abcb10a44b3d14435988ead41d1468bf4dc8fa4fc184e0babdac5ae73ddoc Heodo
2020-07-29 07:37:389ee009dea50f0125325d62473cfe14613ca3098555ff14345600be9cb1add50bdoc Heodo
2020-07-29 07:13:00b3a825ec435cb3188c7e312d426ebb88fc14bf826a552888d2b27110ec074175doc Heodo
2020-07-29 06:59:526a41216f74505746cd9e27126335988cc5ef4727fc68e2375fb50dea917e4a0edoc Heodo
2020-07-29 06:38:265d022a451650f6f56f406617294a4445538b97a8f88aa1b89e72480f34ba8bc0doc Heodo
2020-07-29 03:37:509e3690a0a71dc239833dddc5b2aa94983eec61d88a636aa96f12bcfac9898592doc Heodo
2020-07-29 03:12:44b3ffca228d4d444172e54cbafb591ce0d37193492c7775c7dbf7e8c8e6bc00dcdoc Heodo
2020-07-29 01:40:34f01b3323117582e282add297541e14c3b0d359ab03af884367f2d4c562750425doc Heodo
2020-07-29 01:33:383de845b9dc4ad5aa22fd3587bf71351eda91ae61c1003f4df40c75bf422f548cdoc Heodo
2020-07-29 00:59:082e0013ae11fd80f2fcbd8488a53d6931d5cda77bb542e026cdca5c602ae4c3e1doc Heodo
2020-07-29 00:30:506370801cfa9c5207d9891ac6bce41478e5f4d52c83922ec87b94af39195aaf65doc Heodo
2020-07-29 00:10:58feea2193fa8429572e0d346487c4e58bffd2c6cfc320d05054411a8df5c3e0d3doc Heodo
2020-07-28 23:57:047b0638d749631d97044b3b3d44388979a43abd48143abf524df03335eeb290cfdoc Heodo
2020-07-28 23:36:307c2262c20cda53c7a80e7ea11ff4ca2bd94fa67cf979a136e2e7649256d902f2doc Heodo
2020-07-28 23:25:5563c74b892d39492d60408cece9e71cc78d5bb63eb8f598ad5d4f1f375c2745fddoc Heodo
2020-07-28 22:59:0432631dfcd1e0a725b4b51420531bfa589d3dcb19269f060e7a7083332d537fa1doc Heodo
2020-07-28 22:35:31942f521ccdd9490b25a14dfdb03ff9e8ff7bce4d9d0ad9c5a5fe684216b81579doc Heodo
2020-07-28 22:12:1319aff1e7636349b77c19f5a6a5814d8f852f83fc487a4c5afc0df15ea7635bc9doc Heodo
2020-07-22 20:02:115adde0f4c764095e874bfe5c58bc665bfa26b074fa84231ec735009f84a1313edoc Heodo