URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: h5.l2saga.net
Domain registrar:Namecheap -
Domain registration date:2015-03-10 09:53:45 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-02 14:52:04 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-02 14:53:04 104.21.56.191Not listedAS13335 CLOUDFLARENETn/ano
2022-02-02 14:53:04 172.67.155.206Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-02 14:53:04https://h5.l2saga.net/wp-content/uploads/FqnWeR...Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-04 14:03:30bcef4870466b84e7264a8d8dbd0a4f7e32f60bebf56684428f4b99c4d853164ddll Heodo
2022-02-04 12:25:347e5a8c5c61ca022baa7f7e0703fd69e9089680ca9d3df9cc5af90a31bc8f01f1dll Heodo
2022-02-04 11:27:067844c0219a789c917d1c02bcfd4364e36af6961d9c1a692a298388502e6e748edll Heodo
2022-02-04 10:30:4039d94714aff98c7cea73d2ce3bc8ca19fc413d5d729004ff9c3c49bdbaeb16dcdll Heodo
2022-02-04 09:30:45aba3a5313e2bc9df9ef2d7734d18ef1967a1cc40201573316294be6af65af33adll Heodo
2022-02-04 08:32:401ced43204805e22a6f642d8c6ed2389b331bb24f16b01b24f56c69eaf9edaf8adll Heodo
2022-02-04 08:21:4371969fd6a1aec940ed3fd0ab7bbd9bce1809862a64c51df3207ab778cf1b9a16dll Heodo
2022-02-04 06:44:0594ff01d5bf2231c66071261151aa02a9de24e625694aa6cfe787caba1742d4ccdll Heodo
2022-02-04 05:54:0400c7d40f3d355e6e5ffc7bbd2f162347fd08108f3a27cc1dc4eeacbd60b3434fdll Heodo
2022-02-04 05:03:25fec5ad72879837970042c4885a24017533b36539e935ed65e97c539db544f4b2dll Heodo
2022-02-04 04:52:39c8d595535b59d8ef843a8afe138d802c6246e01eeeaa36ce7cb0ccbb6117047adll Heodo
2022-02-04 03:01:03b3ea1adac1901916547097c9c8b97f19d30dbab292f5d6fc0e5c414a24adffd4dll Heodo
2022-02-04 02:40:42e55107754098de04e5242fe2706f14c1a255495d4565f845f5344cf7ed96dfd4dll Heodo
2022-02-04 01:50:42f886804647e35d429d7fe76a627ad100cacc4f6498e623ed076d26e276633b72dll Heodo
2022-02-04 00:45:1175dea05f6615804d4d8c412c98df1fd1e7d694719441ef2fa4973904bf5925b3dll Heodo
2022-02-04 00:26:076f75ab6ea30d94e92956da09f66151b7da9944446882de8f275a446650e490f1dll Heodo
2022-02-03 23:37:39b1055c745f8d9e8ea70479687a24593254349cb9d330750155874a276a5b801bdll Heodo
2022-02-03 22:33:26938609387c6bb199975db358d5f39c6c3728c79bf91a2f0d2a1590bdb39387c4dll Heodo
2022-02-03 21:29:36c3a72a872ca4a6559c079cf69f4ab4231dae138a984b2138b72308e8fc41b579dll Heodo
2022-02-03 21:15:3677c18fa3721c62d17b6d54d8ad904a2f708109d2e49b3ef6a12d885907289501dll Heodo
2022-02-03 19:45:553140220f13bd8948e638f37dc275af6719ba18ff11275845732bf45f27bbea0adll Heodo
2022-02-03 18:38:236574d307b4b19b67b6ec8aedd9c6a4749787f0764c4fbfe056abe9b8f88a385fdll Heodo
2022-02-03 18:30:548b65698911ad351eb7da385dfa932effbf284c20438c04857d9d162fcb09f6cddll Heodo
2022-02-03 17:01:1195fa38e2ed6017b9b89b06f48d9072a2daeefec7fa42d3e638434e11874c8c9fdll Heodo
2022-02-03 16:02:31fb653fce7be7dbe0459e6afe1f40baa6a6059c3bd6e78afcd14bdd5687c1e6c7dll Heodo
2022-02-03 15:02:501127393fad259edb25cda814275ebfe8ae811495c25ffe7481ab5afeee0a5f19dll Heodo
2022-02-03 14:13:3595baf069bfb218f5977d8a92bdff6363e65895e1052c87bf48c21cc5febfb7ebdll Heodo
2022-02-03 14:00:4425dab6828382168aafc7960c925d0421429a713ed56769e4d279c866ea024deadll Heodo
2022-02-03 13:03:205b5340709becdef379fa7d2181db415256db6a6434cdc37e21933f75ccfd133fdll Heodo
2022-02-03 12:06:465434ffc2369f99c19457acfcb819e3baf876cc7c6a34e62490b385b24acdeaeedll Heodo
2022-02-03 11:13:157715e7dd00cd1658a6560324649a6ac30104d1eec8943a92f4f71b4e03346329dll Heodo
2022-02-03 10:47:543b689811111ca258de3faa36bf0e1e669777ec5a038fe297b216e10c40270595dll Heodo
2022-02-03 10:29:587df214c35c2184caf2bd226a03a9a16c858d00b61a6883274597a961b9cbedf4dll Heodo
2022-02-03 10:27:0862a12d555f68cfa1ac8688aa605f639e474f378ded9e35d6eb5c828daa7a56dfdll Heodo
2022-02-03 08:35:57f5ffd93a0cc43826d0740ccae59263e6c2c0440b439289e30f98e7b86653fcd6dll Heodo
2022-02-03 08:12:394a48ee791e7387b649292b68d34a7fc9ba4a68d2f2697cd33b13e65f4aef0990dll Heodo
2022-02-03 07:19:4101208d8f3f85fe266659e5445aac3083198a40985def0c76bef850fc787de532dll Heodo
2022-02-03 06:19:43dd1728d74df9dd744db9144b0559793fd6f490e9328e167d0dc598a07124e44bdll Heodo
2022-02-03 04:51:20e68a56d9183b7316d3d7d874b166f1428c2cded1132265850fba7bbf368b1381dll Heodo
2022-02-03 04:33:31e590f9a2818828b9ef2031f7cd6a1e13055ef55a8eae05d8deec5fd67ff3d991dll Heodo
2022-02-03 03:00:269ce6ddf290ff55d3dce21de692d12135d76314de4bd0260268a5a35f982182b8dll Heodo
2022-02-03 02:51:495dbcce00baf25bee4b3bfc7d08f0df17c32f483d353efba0ed0c125370828d31dll Heodo
2022-02-03 01:48:34718c244b108dbb5b69ab1c1908b9e9795e727f26b5c7503a58709a8bc8356d83dll Heodo
2022-02-03 00:57:284576f149ea2c81d6347c389fdb8acc2776ce8414a2d19ecdc57c0329739c5275dll Heodo
2022-02-03 00:40:58b9df4939bc47913070458cd35f27253fb9d0589314bb060c9c87b90d2c084dcddll Heodo
2022-02-02 22:08:1903d642d7e9ca12c23d6addb209b8807b9c77d5d23bdf462f6b4cc446395c55d1dll Heodo
2022-02-02 21:13:428f2abf0d34ac0369f57cf79e6382449bfe355c8da15de33fa4d79f17ce123b48dll Heodo
2022-02-02 21:03:53578020d2414e0f14d2dee10b570cc95a9b037c9156f609ea57bf37e8240a56aedllHeodo
2022-02-02 19:59:5826f4663a6154b3294f4c1a51c52925b543c6af880614b4347ba2b4fab8b99ce8dll Heodo
2022-02-02 18:29:27fd1bf6d7b665c0b58abe6bbd6e29d48b650e68b8f2422f8ac94f2f35e28e3249dll Heodo
2022-02-02 18:12:05af7ba55eb486f8ea651d5a3f7894ade78c47469eeeb39576b9aa1ad85a8f4523dll Heodo
2022-02-02 16:44:041e64fb6408d7e90a015b99641521c009bcb86f0d1c32331d31bb9ab9b0088bf6dll Heodo
2022-02-02 16:27:258551ef516d65fd0b008708c3967d34c7b6434cbf8ea5460a70880f8594444e6bdll Heodo
2022-02-02 14:53:0473b5cac5416c5d270e337f07db4fd21520a0722104e76113048f8127e6cac7d0dll Heodo