URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gurqfo07.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-23 12:14:03 UTC
Total malware sites :1
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-07-24 08:06:57 45.135.135.247Not listedAS51659 ASBAXET- RUno
2021-07-23 23:34:23 45.79.43.21045-79-43-210.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2021-07-23 19:56:45 46.173.218.109ansmi.ruSBL668586AS47196 Garant-Park-Internet- RUno
2021-07-23 16:29:08 77.83.92.68Not listedAS209805 SBCLOUD- RUno
2021-07-23 15:11:46 157.230.91.241Not listedAS14061 DIGITALOCEAN-ASN- USno
2021-07-23 14:16:15 143.198.190.210Not listedAS14061 DIGITALOCEAN-ASN- USno
2021-07-23 13:17:01 67.205.150.68Not listedAS14061 DIGITALOCEAN-ASN- USno
2021-07-23 12:39:14 67.205.128.75Not listedAS14061 DIGITALOCEAN-ASN- USno
2021-07-23 12:14:06 185.65.202.240Not listedAS41745 FORTIS-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-07-23 12:14:06http://gurqfo07.top/downfiles/lv.exeOfflineDanaBot ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-07-23 17:59:464f1af996a6a32b402d0b75a37f4412d3e2b6502ed95a4055e8a2313f83543cfaexeDanaBot
2021-07-23 13:52:433a4f0320c6c538dbc9a22a749a81434637a1faf38a212c41206eb24f8c6ae4cdexe 
2021-07-23 12:14:0619c5bbe3666c5091df78c6fa71f9c84798d42d4a8386aa6de4c38a67a661c100exe