URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host headru.sh.

Database Entry


Host:headru.sh
Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-12-30 15:22:09

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-12-30 15:22:11160.153.131.197ip-160-153-131-197.ip.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-30 16:00:03http://headru.sh/see433.exeOfflineexe QuasarRAT Clean@zbetcheckin
2018-12-30 15:59:14http://headru.sh/firee.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:59:07http://headru.sh/crypted.exeOfflineCoinMiner exe Clean@zbetcheckin
2018-12-30 15:57:14http://headru.sh/31.exeOfflineexe QuasarRAT Clean@zbetcheckin
2018-12-30 15:57:12http://headru.sh/khalil.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:41:01http://headru.sh/cv.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:40:02http://headru.sh/22121.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:40:02http://headru.sh/ja3.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:38:04http://headru.sh/d2.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:38:03http://headru.sh/see43.exeOfflineexe QuasarRAT Clean@zbetcheckin
2018-12-30 15:35:04http://headru.sh/try.exeOfflineexe njRAT Clean@zbetcheckin
2018-12-30 15:34:03http://headru.sh/mi.exeOfflineCoinMiner exe Clean@zbetcheckin
2018-12-30 15:34:02http://headru.sh/precog.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:25:03http://headru.sh/soka.exeOfflineexe njRAT Clean@zbetcheckin
2018-12-30 15:23:04http://headru.sh/c441.exeOfflineexe isrstealer Clean@zbetcheckin
2018-12-30 15:23:03http://headru.sh/sa455.exeOfflineexe Clean@zbetcheckin
2018-12-30 15:22:11http://headru.sh/xx1.exeOfflineexe Clean@zbetcheckin