URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gen-planning.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-22 10:20:05 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:06:54 202.226.37.34sv73.xserver.jpNot listedAS131965 MAINT-JPNIC- JPyes
2020-10-22 10:20:09 210.188.201.34Not listedAS9371 MAINT-JPNIC- JPno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-22 10:20:09http://gen-planning.com/vruc3pfi7slxg4a07ohqwc/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-22 20:50:51838408d31e494e72b257feeec73407a2f778e6ecc47754ae16af0290515dc9fddocHeodo
2020-10-22 20:41:57babd6a080477d8f6f7854fd6b50a264c6e6fd601388dfacb28ef224a8b08b8c4docHeodo
2020-10-22 20:07:43143a635255333363ae3017af09505f23784d4fe518164c2c25d97f8b8ec77e4adocHeodo
2020-10-22 19:28:16892a53376594e2bdf65731771d6e7faa4d36e2d3b95340ac4984ec74536d3604docHeodo
2020-10-22 18:43:12d718bafb38535e5c1ca6fb484a744078d3ff431987ae87ce1682bd38f8aa350cdocHeodo
2020-10-22 18:13:429c025489858b7549f67ca1cfe82ab121254e8ab5c19ac7ee160108297862e9bddocHeodo
2020-10-22 18:04:5755e79ed4dc97111eb94b6830fdada156fc8d7ca76f3dc5a15d737fbd0dba8757doc Heodo
2020-10-22 17:28:1792a3496e0cd2170dd3e3a0f5dbe4a3ba772390ca8f139e3c742f2f3a9f006d2bdocHeodo
2020-10-22 17:25:126e73ed5041166e3aa6f7ce070efab391259a868771d35fa7f6b8aa64d8a3065fdocHeodo
2020-10-22 17:15:3080674fb8973e2a7ee31596d9105d1d897a92f7bbcbf6f07b3bf7a9444f71ca9cdoc Heodo
2020-10-22 16:55:33fa80d9c5ac5a3d08f91d1d1a13ca9e8dc5bd6e9dc289fa203b6822c74a1dbab9docHeodo
2020-10-22 16:12:262e0fa43a2843fd83402b86b0ac90f8cb04e7397a167793ccb42d7fc69de3a987docHeodo
2020-10-22 15:41:427bf5865edd1cf7fbc77de4691736ab60bb0d5163db0f3153bb804de1d88953fedocHeodo
2020-10-22 15:30:474d021161076f99a75dfb666d3e39d11b00bd70327c45d3d5b013c27c361dd74bdocHeodo
2020-10-22 14:51:295f797ffdf10fea5ee7b50bc74647cac73cfc4cef96e92d346c842e6cf3df339adocHeodo
2020-10-22 14:26:4015617c0893da95a3d6a9ef0767194dcdba28768fb1cb5bdd12b8321f99f7b970docHeodo
2020-10-22 14:14:0404ef6e86afab0eba178323668014a554b793f440b011180d15429611da7858cedocHeodo
2020-10-22 13:34:0484571ac969ddfed387fb68ef51f1c23448f401e13f42b3cb3c54e42963682d9ddocHeodo
2020-10-22 13:08:47d8f854b186c7ceece725840d2aa715337be8e6e2dc14f9e0c29705e805b2b273docHeodo
2020-10-22 12:23:287eaf0df9dd2a33ee958384a9472366f58f1c0a204360efea6a7f8b0d298560d0docHeodo
2020-10-22 11:42:3220b2c39a7931947aa8713534876868f8dd24851c50b934069b2b151661bb2f72docHeodo
2020-10-22 11:11:350f43e36af3a584e03529dc3f2c9c6b9e26edee46742cb8db7112fbe7be0d2c8adocHeodo
2020-10-22 10:56:18d7d4f0e3118be6b096fce94e099d314a78ff45b33b0c6db9993b71d66b171e6cdocHeodo
2020-10-22 10:20:0817fd95244a412f93eb10c00778ef49fe927af9a1575cef0e9fdc05e81578a6f9docHeodo