URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: google-document.co.za
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-25 15:04:06 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-25 15:04:08 102.130.119.232cp24-za1.host-ww.netNot listedAS328364 Host-Africa-AS- ZAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-25 15:04:08http://google-document.co.za/doc/loader.exeOfflineSmoke Loader ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-26 11:38:197756e36f169c53d66e1821c3f6f52f7ab7aa5817d3d15c6807bbd4edbc41e817exe  
2020-08-26 11:15:00e716f92375add0c2a66a6e690d7f6995b4c503541262c2ba7c87e96db53046d1exe  
2020-08-26 09:45:41c9aa1325ea54df3802c974f35299c8bf8b75c8c07c2056c0bca075012aeebde9exe  
2020-08-26 07:35:442a0f36e9021969aa7e00a3eb0efc745b95cbb9e95b82840b85981dae42d6934aexe  
2020-08-26 05:02:40fcca925296bbe9189cdd1d51999d6fb36151c652667190ecd33e077c8e0e0576exe  
2020-08-26 04:09:28ebbf02a74c8ef128125b1ae93c9e28daf8b3c5bf3ff0febc6a51aee1f2ab37c4exe  
2020-08-25 23:15:254ec16b445166f0b5f49839fbdc8ed98ecef6f5d1728f8ba817763e30f764274aexe  
2020-08-25 21:43:521dfa72f4e9f00170b26e454b7fc69fec91266ae7d654fcb59a66f68f8c3594d6exe Smoke Loader
2020-08-25 21:02:19184562a697cebdac5504180447d19237f6894cb69992786d59a6bcef1c1ba9d1exe  
2020-08-25 20:03:17f389d1cae9d58b5ef582bb190bbfcefd4f31d123b871202f1bb2c8913eeb8345exe  
2020-08-25 18:38:21a9f2a5188b8f414d0a90314edc76a36ce056561572128c8eb2d0cce7ae1dff93exe  
2020-08-25 17:26:52d9523a6b90a7ff46fe28f9b9dc280b59f467edc8a8b2a854a12fd40cd3778580exeSmoke Loader
2020-08-25 16:15:02813071efd263d93a55b50b4658cc54407187ef67002badac04e5478e864cd39cexe Smoke Loader
2020-08-25 15:57:0754f5a94db24b944fb2206358705a8ad782d7f0fe9e9e07c050a775837757ba8aexe  
2020-08-25 15:04:07984df4fe3f39c10e55ca5e638aa76ece20d641721db3db1380f6f83b46b49f51exe