URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gbimkd.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-29 15:44:04 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-12-29 15:44:07 103.43.44.47server20.hostingmantap.comNot listedAS58397 INFINYS-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-29 15:44:07http://gbimkd.org/wp-includes/mzYzedwYUHNvfwTTy...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-29 21:52:24e7fe9ca43e289dc2bd9bf4266a4626a9383a283009072a247ecc6c1f84c45e0ddocHeodo
2020-12-29 21:45:49b74063353bf2fccaa3e2072c2e02dec2c760ab480f73a069277bc389ecd4c929docHeodo
2020-12-29 21:24:27d61737a9f3206f943c7569e31f9ce318fc7f361f86b01309bc476a1e2c7571a0docHeodo
2020-12-29 21:17:20c646ad33be355d18204f947f227e88997569facb081f5a09a9f0b82c5127dafcdocHeodo
2020-12-29 21:02:0559d3ff3d4c70d115ce2c6d6ee0b71174c04ffc9a3f483fe2590b91d2eaca4518docHeodo
2020-12-29 19:17:28eb762ceff6eec6519ea345df6e5eff8b01a57f121c2a12ae7c3b8a379df36691docHeodo
2020-12-29 19:01:46a4054bbf81bc4f704dc9ee14d6f2e5df7b22f91edcd2fb569c14c1fc82064bdadocHeodo
2020-12-29 18:40:274b4b26aeed40ceb7e56e6e67e73f85bb0bbc00b2a911ef3a11bedd4a5798c462docHeodo
2020-12-29 18:33:155274d3939ba8eeead72b38ac7fc4308be7b3db616801d845d304469c9cf395a0docHeodo
2020-12-29 18:24:32a2e08d6b288a78d55fffdbd8423b533ebc20fceba7c21b42630039d99f2e2369docHeodo
2020-12-29 18:01:37b4ce0900f2c0d6d99075edf48d95f3bc52c5599e328590495a27720bf183f25adocHeodo
2020-12-29 17:57:351e4c5b5a91bea84b88ae1b8bbff23fd1ac5fe3c85cccd4959ab117614f8f34c1docHeodo
2020-12-29 17:14:168f10d60b80d0b00b1b41bf52766651f77547c5489f8a6fa946e3fe8a25a28185docHeodo
2020-12-29 16:59:277a9bcc373514abad49c519a28a4229cc43b1e255bc0c8f2035ced9a1e973689cdocHeodo
2020-12-29 16:54:189c664d5072dd450e110f36bbd5fe6cd4d600de7104677fbc31378905c832e953docHeodo
2020-12-29 16:32:3587fde4723bbbdcde8c933fca20f34a74b2d6ca37d6c015a228e5e33c86ce7edddocHeodo
2020-12-29 16:24:279e8e9da79ceb229ae85c9db0b90211541c80c35d6b07b45031fbbed646bff3b0docHeodo
2020-12-29 16:03:15124887797dca2ad4d4a16a53439033033cdbec96a28b5ee788dcef410b4a42bcdocHeodo
2020-12-29 15:56:3066dee1c531293e20e26da0ffd7b7d4825876218dc4a90d537af904966fbb7db5docHeodo
2020-12-29 15:44:06605ea5154e06e5f2f924f710ca1d11860d6a1d580c332e987d868bb932f74d69docHeodo