URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gateway.ethlqd.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-22 22:25:29 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-04-09 14:24:43 47.90.0.53Not listedAS45102 ALIBABA-CN-NET- HKno
2020-01-22 22:25:33 47.90.78.105Not listedAS45102 ALIBABA-CN-NET- HKno
2020-04-06 18:49:17 8.129.184.153Not listedAS37963 ALIBABA-CN-NET- CNno
2020-04-06 16:32:24 103.240.157.204ecs-103-240-157-204.compute.hwclouds-dns.comNot listedAS136907 HWCLOUDS-AS-AP- ZAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-22 22:25:33https://gateway.ethlqd.com/wp-content/multifunc...Offlinedoc emotet ext epoch1 heodo ext word2007 Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-24 19:38:188bd1a30f57b31999bbef71643e003596aeaaf73e4719459b6c882fe778651ae8docHeodo
2020-01-24 16:57:089ee3737563b9456f1df85cd49ee7cbf7a995e52ab225b3e5b6b81ac731b62cc3doc Heodo
2020-01-24 15:38:30ac8d288219395be128e7da9847073a712da5a0a39b4630ac5f1b16c4157b2bb3doc Heodo
2020-01-24 15:19:09cd9635bca5eb3bd211f28a66da92ec3f3faef6db127656aac9496f1bbee8d3ecdoc Heodo
2020-01-24 14:07:40ccbaf6c64e1e4d35b0cccdb8862b2d71a72992ff0b7473e60de6c51fe58b8220doc Heodo
2020-01-24 12:41:53de56b3014c9982109265fe338bc63cc6436355b04f1f2d6db237e57a33213f80doc Heodo
2020-01-24 11:09:5206dd72da83a97a1a3571dcec43acadb0508823e8cb3cb2bb5a85d4f1a42c3339doc Heodo
2020-01-24 09:38:500b200863b12632ebfe7016933294a07e8a21e8fa929ca760de5b41825aee5355doc Heodo
2020-01-24 09:16:0433145aaefc03e7107307e826f851d49fd1d591416445598aeda02316980aa8bcdoc Heodo
2020-01-24 08:07:46eca46e2754dfc66489b85a2f044fc2bbc1b1b33b0cb9ebc3af851ff42301d6fbdoc Heodo
2020-01-24 06:34:2181c33f77266118c411d4f25bc5f34e1a3f25c53934c080c4097a88e8b9ed1741doc  
2020-01-24 05:24:35b895c84cd3172c4a04aca7f50ee4154270ecd69e800c8c6fd4affd0868f673e4doc Heodo
2020-01-24 04:12:20533a5a288de7b3b037b3d849a6ba1d95b8b6996d84361f9d6a32a81a1b7172c3doc Heodo
2020-01-24 02:48:085beeb30893540e16293e931fc97174c50541f2340ad85f2d9f0c862821603cc4doc Heodo
2020-01-24 02:41:26a5949311c983e124ba9f32963d4edcfec18258c0993ae8f423472645c91d8314doc Heodo
2020-01-24 01:09:1926200f6b88c49206100f74b8de4d6d959dc61305690ec8a4442dbc86a0048f24doc  
2020-01-23 23:52:22dcd9613e4c74c03508bab4afe05cb54716057c6b38fea1e9dae9d42041eb43a6doc Heodo
2020-01-23 22:20:33356d9d432807a2d7fb61e5893fffec5494ff1c4500b5e0786e8548fa32ca930adoc Heodo
2020-01-23 20:58:04b1fb25ac9eb32c1eafa66d3a8fb382860f50d00075550108b0611b32753bcdd7doc Heodo
2020-01-23 20:43:2229da9d017cd0bbe2d5b57ebf2919938de9914e669199f58175412bfd7b44861cdocHeodo
2020-01-23 19:26:05737261cba27fb5709e37158314184d01a7f6a36386fc2535e236893d82590df2doc Heodo
2020-01-23 18:35:3144713e481564f2ce7a930e43bcdda80390718b92301f85cb575098959de0f6e1doc Heodo
2020-01-23 18:15:19ca7b1a3d7db2feeb5548928ff6adb85fdb993b11795f88fed56ec7649beef850doc Heodo
2020-01-23 16:57:49e64e311b594718ab849cdf6a3379d11774932a94c3498135f107d659174adb40doc Heodo
2020-01-23 15:41:13935442d00e5e51d838e5a2a3651c249aa15fc5ffc106b3fa9414973e11dd8d08doc  
2020-01-23 15:27:01afe09e292b9823a2d28f0c6b6c795b2e3f9d1758d53e30d1eaafd8dd29b2d0a4doc Heodo
2020-01-23 13:54:548854c592155c1bd835e9edee147c7fa3714ba319ad138943dae4aa94a01d2adfdoc Heodo
2020-01-23 12:47:441b2a8fa233d738505dc4538a43ab60d5f61cc7e52dbb8d6314510cb80a96e044doc Heodo
2020-01-23 11:27:42b63585f5efab051c9a793dac78be7af0a7bb002f803b2d67a828065ee6ce54fddoc Heodo
2020-01-23 09:55:51aaade832c86b767e64ac370ec468133b1b0f777316fc22d37a85c2254ad1d752doc Heodo
2020-01-23 09:42:48cd0198b82476b890c4adb94b65b55245c7a7a375e809a127ee20f1a01cc26c1bdoc Heodo
2020-01-23 08:23:460602a260f7babf69b17ea0c106902e0aa1210f18240011382c3d1b89cbf2a78fdoc  
2020-01-23 07:30:289ccbf2f4fd04cfc42f8bef74bc19826c401baddc6fbcb1f5a88aec8e29a32588doc  
2020-01-23 06:52:25ff382a168f3ab1259e35d9f04c088d783cfb700db20955dce5f7307bbdef516fdoc Heodo
2020-01-23 03:51:29538059ab61604832e49b7f0de789e0910c15547f674bdc32b27fb19cf4acdd7bdoc Heodo
2020-01-23 03:49:23a62f3f486509d0fabcf6e3df247c28df135df4464a83c3ef304e61088deac5abdoc Heodo
2020-01-23 02:17:3035e9ccfe2fb736ab494d113297f3c7069e131c28b9996efe0623d6f6fa2e2644doc Heodo
2020-01-23 01:02:3060577cf4f41ddd64eb84e77684f9c15171a6b4e10dcd6d47ef15864dee6e2211doc Heodo
2020-01-22 23:34:1579a8518b31b3f615490b110bfcd52befdcc3d5d7f6d5e73571ebdf7ce9e455cedoc Heodo
2020-01-22 22:25:329ed3ddc9b06563931d1b03729c5ef0697da9e1bfe1075d4120e1b5bd414a05badoc Heodo