URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: fechamentodesacadas.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-27 20:34:03 UTC
Total malware sites :1
A record(s) observed :174

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-12 22:46:01 92.113.16.71Not listedAS47583 AS-HOSTINGER- DEyes
2025-06-30 12:42:38 92.113.23.109Not listedAS47583 AS-HOSTINGER- DEyes
2025-10-28 08:41:37 92.113.16.117Not listedAS47583 AS-HOSTINGER- DEno
2025-06-12 04:49:01 92.113.23.254Not listedAS47583 AS-HOSTINGER- DEno
2025-10-16 05:51:36 92.113.23.57Not listedAS47583 AS-HOSTINGER- DEno
2025-11-01 09:29:09 92.113.16.209Not listedAS47583 AS-HOSTINGER- DEno
2025-10-23 14:38:37 92.113.23.126Not listedAS47583 AS-HOSTINGER- DEno
2025-07-19 16:19:08 92.113.16.152Not listedAS47583 AS-HOSTINGER- DEno
2025-07-27 19:41:59 92.113.16.129Not listedAS47583 AS-HOSTINGER- DEno
2025-08-24 18:50:34 92.113.23.84Not listedAS47583 AS-HOSTINGER- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-27 20:34:05https://fechamentodesacadas.com.br/app-krog/9Mu...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-29 22:05:0641439f935c27535a7752ad0b7a778de41fa076af62cee2bf3ce8138567fd7060docHeodo
2020-10-29 17:57:0566f21ad9f94f3926c870736b3a33af58b00eea538ae8da9b7cd71ad1eb5614d6docHeodo
2020-10-29 15:25:3675df04fe2bbfe95af6c2ff3ad6beb372645597b0350f6cc16f995a09e27da829docHeodo
2020-10-29 14:26:024578d3920daacf96ae730e547892639558d1ae71b1820d402dbcbfc3ebfcc816docHeodo
2020-10-29 10:15:165a00d4a9d8e50c06f30007460af1dc4f73950dff8ef4d1966ec4098c16712bf0docHeodo
2020-10-29 09:36:42ffa31d45d93161ab298442d4f9d83cf8b0bcead9e50e92a048b6b0900415b59cdocHeodo
2020-10-29 06:14:07384a86ce03971610e03d72c4c46dd311c1719b3264e1f8724c6314a5f724b5ccdocHeodo
2020-10-28 22:17:152a7fa7333c9651955476107db7c4fabaa333b34c5c6938bfad143ae443d94dd7docHeodo
2020-10-28 18:11:173e40a7defd105440e12f2955234fba81780b20f1dbc188417b1381f6738ab15fdocHeodo
2020-10-28 14:11:568d7bfba7aa5d45dfacce4f1d01bd73c49ac08a57ca60560244f8e4d9220ca53edocHeodo
2020-10-28 13:25:43ba7c3b043597f378a97d2fb07531d71476797e94aa5d0d6e29c3398b9b051ca0docHeodo
2020-10-28 13:02:535a3856662e4cbb0a005a296d49553490ac6012c6d56158cdc1b75615410ad792docHeodo
2020-10-28 09:10:38783e3178de387969ad58cadd83de2b88c6cffa406063d2f66e5ee8b67db11b4adocHeodo
2020-10-28 05:04:392a46f3f595f2eea533b556a67f2558d85d955f1784d1d48cbe78b2e5fae35f34docHeodo
2020-10-28 01:18:35f6fd4d78eaf23a55319eb3b14344a592bfe7d542cf1f7e45a9ff6fb8ad9f90c7docHeodo
2020-10-27 21:12:10ef29a8422b09e506af3affcef90be9236f769d51ce6a686df8fb8dfc6fcd1284docHeodo
2020-10-27 20:34:0518d5538b99af884d1bb696f03df08bb7ab04370724b050f1dd643690430da470doc Heodo