URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: glsengineering.co.ke
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 04:24:08 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-14 04:24:10 173.237.190.2lord.vivawebhost.comNot listedAS17378 AS17378- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 04:24:10http://glsengineering.co.ke/CUrdmz7bdp158176/INC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 10:28:2255f8854dbcaa2832aa10f768c129ab27544b5b153c7e4ea008f7ae9444681eecdocHeodo
2020-08-15 10:00:234519aeb43efa936084622c8f8242eb04c7431ed323c6d40f41cf43b0cc8ae6bfdocHeodo
2020-08-15 09:28:32f8b496c0f286d5a7fccc4ede8b957465c515601307821f28b9353d38e79ad46edocHeodo
2020-08-15 09:14:04b165a72e79277f849a4ef95a5f985c8d4c92c6685bdeedd4326c941c9931c1c8docHeodo
2020-08-15 00:43:429e1e51486125b50e7586634370793cc369de36e98ecd481df50bf45f236fee95docHeodo
2020-08-15 00:04:002282676dff6e201e68e1817f507dbb2f5ecbeb498367e7aada3916d32e89511ddocHeodo
2020-08-14 22:31:4475a72a41ab01b2732ce7d72f8099772cfa9eeffd6de415ac468e8f979c38d466docHeodo
2020-08-14 22:14:12cce611e1db8f4136123416dd47be47a254a05e9809b03035e8f4658a1a14d681docHeodo
2020-08-14 21:47:01f868e00a4f8d182360784894248a210bb56e707c5a830c89485b157ff1a72402docHeodo
2020-08-14 21:36:315936c071471d7130c47558241c18b4dcac2be07eb3aba3327d251590f952c2aadocHeodo
2020-08-14 21:23:016c2eba2dcea75385e146eb28ffde0be82b8b78f4d943bda7462eebfb283e6c34docHeodo
2020-08-14 20:58:0466516549d3f5fb3f943ccfb801d21236517f2a4a58b1a5ecfc3740fbcfbed54adocHeodo
2020-08-14 20:19:16edcb3cab2e16ae9281fd584303fc716ed35608369a30bfd9de27c636e997396adocHeodo
2020-08-14 19:55:0496b6cab1427a652a35407967a7c4f7e6bb2bd63159d8e2510793ea9b9e76093bdocHeodo
2020-08-14 19:29:429f1eb23ca90933aace0c718c815307e1c8e1b391f2c1dd106a9dd69067c53477docHeodo
2020-08-14 19:01:23508a3ceae3f786124dba30150aba4fce295d13eb1a60afacd789b4f37c2df5c0docHeodo
2020-08-14 18:30:47b5db830e33edfd5a9b49158f7506093f9514f304c9504aba54490d7630b17729docHeodo
2020-08-14 17:01:1792ffc87ebde551d6dec0d9a939474f99575856d4aa63e78b2db40680f2da2188docHeodo
2020-08-14 16:40:190a55fe7bd5ed193a8326b31f8065bd2c338661bdfdd0edd35ade2f95e156a2e2docHeodo
2020-08-14 15:08:4589b7f9eec5a1813a68b6f7e012bc92e08a67aac56b1c9bdd1d8c1d707ff0de19docHeodo
2020-08-14 14:44:484b14140f91ca83244b33d0e97fbd7f9c67655cc50e959593a8494e7ab6cd7055docHeodo
2020-08-14 14:21:03523050916f419fbdca18161b639edf06526b15b30137a2c5b5d54efb04f8306bdocHeodo
2020-08-14 12:46:532958931d81ad10eb95bb3fca9457a800e9b4a9459d2727f30cb5d49d7bed0527docHeodo
2020-08-14 12:29:168f9649dab8ca8b9830c3cf160314bc7bf4c8e9e64454056eba927e3d8867ba77docHeodo
2020-08-14 12:08:1203b564a9e15d001e6a2c08962ee25d99e595b4aee559c6ea7a7dc99b96cec92ddocHeodo
2020-08-14 11:47:019bd86a7ed7e001c6bfb009ce9b84beab9d6b42ec1eb357b2e93c51f7fdea22fadocHeodo
2020-08-14 11:30:378e0fd038c7bf7a3cb3e06a8186340b23adc90e48beddfffb70324f433b39c4d9docHeodo
2020-08-14 11:09:022ba31bcf0605c3fb50f7855062c192023371778e906ddbc8f2f9c8812d07a2a0docHeodo
2020-08-14 09:36:417b33cb52d7aadc252be1077c9acda4ca235a69d419c1673b40823778ae8b5a3cdocHeodo
2020-08-14 09:13:0969c415173df24e36396e61f51ceac50bcc46a2e54ed558e7e88e26b9c05f24f2docHeodo
2020-08-14 08:49:09b0b09674fd6c7ffa1209810a9a25a67ca712daa394c546944b8724019f7ec4c9docHeodo
2020-08-14 08:31:572eebfbd4ed595d6a6754f0d2d3290d0c641d2b43989d4f6181b757eba278cb8adocHeodo
2020-08-14 08:10:2043c592e78307702281f1105969aad4a99aed3a1cd8b87965c1724b3e0e2f08dedocHeodo
2020-08-14 07:52:57fed5ef0471ce8aadd6f39707a21f2f164b997ff30ddb925d8c29ebac3848f67bdocHeodo
2020-08-14 07:49:07c6b7c7bfc887108475b13843c34397ce838e4338a8ced72d8b58d478631d3ff3docHeodo
2020-08-14 07:29:0833fbdc20f3885a3d8af503c38d711e04b952263269a898c8d6cccb5cf7b352dfdocHeodo
2020-08-14 07:08:07f92c670905c9b92334b90a5f812306d265e6e9e54c7b4ad16847d5c6234cb670docHeodo
2020-08-14 05:04:22ad237c2dd00a38f7c3fbaaa06b1ba0db47b84788d8687fa135609d38a26407bbdocHeodo
2020-08-14 04:35:073435e343b0a6c8e9196499ac3dd741f97bc11a10039d254d98a744d6fcbe3d2edocHeodo
2020-08-14 04:24:10a4a2968cbbe614c4e3e59e3dbf070e3cefda32c10464e67948b2f36a67737c93docHeodo