URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: fonijuk.org
Domain registrar:OnlineNIC -
Domain registration date:2014-08-16 11:53:16 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-03 16:31:05 UTC
Total malware sites :1
A record(s) observed :20

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-08 13:02:47 192.155.108.152Not listedAS29066 VELIANET-AS- USno
2025-09-13 17:09:21 134.119.176.21Not listedAS29066 VELIANET-AS- FRno
2025-08-20 11:24:03 134.119.176.24Not listedAS29066 VELIANET-AS- FRno
2025-08-24 10:06:54 134.119.176.30Not listedAS29066 VELIANET-AS- FRno
2025-09-04 15:38:17 134.119.176.23Not listedAS29066 VELIANET-AS- FRno
2025-09-09 10:18:44 134.119.176.29Not listedAS29066 VELIANET-AS- FRno
2025-05-02 03:23:03 109.74.196.164euuk1.armadaservers.comNot listedAS63949 AKAMAI-LINODE-AP- GBno
2022-02-12 08:18:40 139.162.207.60139-162-207-60.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- GBno
2022-02-03 16:31:20 63.143.33.122host106.idc-internet.comNot listedAS46475 LIMESTONENETWORKS- USno
2025-09-24 21:48:01 134.119.176.28Not listedAS29066 VELIANET-AS- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-03 16:31:20https://fonijuk.org/wp-content/fzq6vYFUMEiRoR8vG/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-04 19:54:2937dff31afab55c8c14e35f35ad1efbe0cef67b60c2df633379d6c3ee3a1eb4cfdll Heodo
2022-02-04 19:45:53d059e37354b6e7cf72e86fb189d28c8e10f5efada2b85e3bfc1e073fe787cdb6dll Heodo
2022-02-04 18:20:2682a675da6357d9199870820fe0b20d9e20ba01bd4d5951af54ecf5f0384799dddll Heodo
2022-02-04 17:55:49724648ea021e3802fd7eae08a10641194135281847fac62223b86ffe28b3814adll Heodo
2022-02-04 17:30:411dc20820cbe4fba954cdd7cb2d4a7d97ef7d2153e38c74c9ee93746d405754efdll Heodo
2022-02-04 16:49:3664bc2f37ab512987f6eca09ee31bf0e499bcf2a3495e8e613fe95b297fdd8e36dll Heodo
2022-02-04 16:43:51c2e691340449d995e85aaa111e1003b5610c63d0e0dca444ed2d80d03f095af8dll  
2022-02-04 15:05:22ef930ddfb9668e237c04fa6543a0a457ba8a0d58948f8b11b7025e8769989abadll Heodo
2022-02-04 14:13:56643a6678f93aadf04aaf12424bb0c411929d0f14e614515b72d3ab284dc0d25cdll Heodo
2022-02-04 13:17:064ef124281532a0571b3a6d3bd0727d71106960e11310d26be11c60a6afb31a66dll Heodo
2022-02-04 12:23:293d9d5988ad8180763653cb9753d107b2c294e1d2d165e42d124ceef35001a6b1dll Heodo
2022-02-04 11:32:03c417eef23aec0f2ec4450bf212a7347e2fe822f8d4035251595c4168b3421915dll Heodo
2022-02-04 10:32:158d6389e53a22883c2d9ecfe066a361ed735a6d21f59084950f6a772f432cca31dll Heodo
2022-02-04 10:08:46f2b94119f97a7c1dd53f3826a3e0d9577f7f5dd3ae72df65d6d9dad56777e658dll Heodo
2022-02-04 09:21:506525268a10744f3239c48b279dc766b52cb7d6539f404f0337a9acf4d332854edll Heodo
2022-02-04 08:20:141bfc4cfd876ec81533bea53df6b3119e4e6f68d53a4cb7695a06d65f1ed3df5bdll Heodo
2022-02-04 07:23:157716dbe21231d70fafeab60c4fd82e4ee69c2f3b94624a9529bc249e3a6bd106dll Heodo
2022-02-04 06:03:02dd6938e98824fc9b0a724d886b7033c3b236460efe0836c6f2f8509ab22b74dbdll Heodo
2022-02-04 05:46:5769733b0dec6963b574e2b827da9841616c0c0563a67ae6d28313e787cead4197dll Heodo
2022-02-04 04:01:254391e405541f6e33187dbaa5235d837452ffb50b62bb3537117cf3510771a064dll Heodo
2022-02-04 03:17:3849a10de0858153d1af67b6c9a85f4842fe8368c89679d93b4e16c4f4748ad4b7dll Heodo
2022-02-04 02:41:4940fca2649daa145138293770e6c5ec2865f012783914f75afdde840c45246a12dll Heodo
2022-02-04 01:44:29add9773be35ea6f686f8e9c210132c4ab1b1491a040c45795b7a67f461338826dll Heodo
2022-02-04 00:52:213979972f7d560886874ebfe7d5a558cbace9251ab1bda197a51aa9fdddf0d3c2dll Heodo
2022-02-04 00:28:45a6eb73db64162382431f568d0e519e000a31dae295b19bdbcef3a3f73331b911dll Heodo
2022-02-04 00:16:1252b7f2a81a2d04e4f0ff900d8e9a7a7c1f38c405ccaea0408c08e58534d8a3d2dllHeodo
2022-02-03 23:25:0137595a0ae4fe26fc476960f6d6bdde10571784889bef2679446a6b5721cea1aadll Heodo
2022-02-03 22:17:4386c8e54912743e12912792ee3b51a76f1597bc5837d79291ff9da0c9627315f1dll Heodo
2022-02-03 21:21:47f4d8251972caf22e338cfcfb9201941c2f3b51eb84215661ed32642d920fac86dll Heodo
2022-02-03 21:11:29a6eaf39af186adcb1cdea9a7e277e9aa953bfd2c19d09343450d5e1557f9414bdllHeodo
2022-02-03 19:40:04f3dc51e4d43fa1ec3b76100216e0aea0b568b8d738da576fba746513f8bd1283dll Heodo
2022-02-03 19:17:21dea8c7f518734d3ee1d5247ef061967614c836e6273910a7a8ce729e915ec1d4dllHeodo
2022-02-03 18:26:26f8570407c38f9913b600b29b8ed201b0bed07aaf11cc6fb14c23bec3abd7252ddll Heodo
2022-02-03 17:03:4049d4461c281440b1439ca8690decea773d35bc568e2149c8f34906b9cc774fdddllHeodo
2022-02-03 16:31:2049bbcd95940eb9fcc227a8be04dfec1b0f54302ffb448d764f1261c1147da2e4dll Heodo