URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gulflumen.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-18 09:19:06 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 09:59:46 162.159.152.19Not listedAS13335 CLOUDFLARENETn/ayes
2020-08-18 09:19:07 213.239.217.99static.213-239-217-99.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-18 09:19:07http://gulflumen.com/wp-includes/Overview/ih3fp...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-18 23:14:556c9d3d58e28a1e8bbf0d1c77a0bbb7f6c71a55ac204041c9f1f8e372b19df91edocHeodo
2020-08-18 21:42:59b3c49f6fc4bccfb7209cc9da0e7092c623b21c438cf4ba36d18d3473015ca2aadocHeodo
2020-08-18 21:29:01f81838aa227956ab72ef239e4bb20e9f84a8596e89e7dc91d59d66c488ebeb1edocHeodo
2020-08-18 21:15:206cbbdaa0e24876ae422d284449759d09a5bba350158e7e489ae806620bebb00bdocHeodo
2020-08-18 19:43:46385433701c68cc76403d2a484e7795863e21238a11d5892af2e910b2a5c309b5docHeodo
2020-08-18 19:29:476a3681023971a36a433c4b9af945711a183d10d9739bde0201540c199c5256b6docHeodo
2020-08-18 19:15:53cab6349ac0df4084c7ff95a5e68f961048537236c2602cd3aff11482fb0d0af0docHeodo
2020-08-18 19:01:50460a8e4f639b96c10e0094ce3aceeb1f60278284a1d7b27e3b16fd4b76744636docHeodo
2020-08-18 18:44:37455f2ce2d5b18bbce7c1ff8a8eec0e143f98fe0c1e0a4d289aee56f5f8e33e4bdocHeodo
2020-08-18 18:26:36f13b6d284eb7046fcbacbc7d199359ef96282da973fb4baee25c10fe1f96d9b9docHeodo
2020-08-18 17:45:384b7f1d4444db5d249123e54f4b583946c8c0db484f2c8ce65ef0bb922e96c4c8docHeodo
2020-08-18 16:55:3640bf45a0f3955cc2cb68375dd18ebe4bfbf79a8c1ced852bfaab79bcb58eb4bbdocHeodo
2020-08-18 16:40:034d8e7cfda1c0e9d03775d5858d97345d0a2ebd918a721a33ab2b2225e594711fdocHeodo
2020-08-18 16:17:53bdb11339f1bd60995f4f996322b18b502f9fd561ba97b25fbb7e290f03c44e28docHeodo
2020-08-18 15:15:472d39a2c3798256d5fe256cc31b187ea8d4304b72a38c6c03f7646c74d84f19e2docHeodo
2020-08-18 14:57:340cef6300d4ff34161fe15685c7de03dd6663177b6ca1d87df136eb05e9daf650docHeodo
2020-08-18 13:25:01754ff57c9f03bc4578bf62ce834db479d379858c30b0e0d120c71970c58feffcdocHeodo
2020-08-18 11:52:36dfed9e8647309077d764a8c15df25211f499a739dfbc8caf3035bdcaeb1d460ddocHeodo
2020-08-18 11:29:491bd70dc84522b79f56c90126e0135d75cb385aa343b4f67ec56921fc62e62d8adocHeodo
2020-08-18 11:09:50d5604fb88ba80d9402a76951dce44b0405d3d1d07c96f697c14a57768b63dd49docHeodo
2020-08-18 10:53:06248558f5b8547279882c012169b965765eab106c30275d475e3de2ba02e6c7e6docHeodo
2020-08-18 10:40:0585431ac67a721a63e9e100e9176634b535969b4cd7c70c34908ab629a7e80d26docHeodo
2020-08-18 10:23:35b8578fc1800c341816ee50de533d7e77a647bb4005e63d7c5234b983863d9c34docHeodo
2020-08-18 10:06:11456510d5a40582d308f81577cbf8ae64f2b616539e4bae452df2916721b027d8docHeodo
2020-08-18 09:42:3892674d8d935ca49cbe4489ad9f6b55bb98697e74750d26bc138edd3c70f214b4docHeodo
2020-08-18 09:25:298307b0240a3df3f69ed9390c9d3c041bdce48f9b0454b98140c5e569cdb9c052docHeodo
2020-08-18 09:19:0744974173c8c152eacecf1666341f64fa98a2f1aa1bf8a557fd492be4b14a448cdocHeodo