URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: funestotal.com
Domain registrar: n/a
Domain registration date:2018-01-11 17:25:48 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-29 09:32:23 UTC
Total malware sites :1
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-13 20:43:01 172.233.219.78viridian03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-13 20:43:01 172.233.219.123viridian02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-13 20:43:01 172.233.219.49viridian01.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-13 20:43:01 172.237.146.25viridian06.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-13 20:43:01 172.237.146.38viridian04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-13 20:43:01 172.237.146.8viridian05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-08-10 09:27:31 69.16.231.60lb04.parklogic.comNot listedAS32244 LIQUIDWEB- USno
2025-05-20 02:11:25 154.218.36.189Not listedAS35916 MULTA-ASN1- SCno
2022-07-05 17:26:59 82.180.175.130Not listedAS47583 AS-HOSTINGER- USno
2022-03-29 09:32:28 168.197.51.146sd-1418229-l.dattaweb.comNot listedAS27823 Dattatec.com- ARno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-29 09:32:28http://funestotal.com/5aclo1em/21U/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-29 10:50:21f6c5101956bb89ae413354e00f73794b6070b4657644de2980fec744e25e464ddllHeodo
2022-03-29 09:32:277346e4afcb912d4ba4bce995abf5c90e38d07086d5a1871e43525144e9a5b022dll Heodo