URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: hebasharkas.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-10 19:05:09 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:49:04 165.22.12.42Not listedAS14061 DIGITALOCEAN-ASN- USyes
2020-10-17 15:46:02 172.67.203.131Not listedAS13335 CLOUDFLARENETn/ano
2020-08-10 19:05:10 62.171.146.136vmi1437200.contaboserver.netNot listedAS51167 CONTABO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 04:38:33http://hebasharkas.com/wp-includes/xudNqer/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1
2020-08-10 19:05:10http://hebasharkas.com/wp-includes/o7aongkh4tx9...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-18 02:45:07ebc98d0c466d423bce68f58425090a3e72dec8423a47f77a4eb9cbea0c0d3b5ddocHeodo
2020-08-14 17:01:17c3ae8c61792f7f79027f657cd9c31091416b63260177f881c549a7dfda0a04eedocHeodo
2020-08-14 16:40:208c7b70ac18632b9f9a785376d2b3052c939dc86148c26b710dcae2e8072c836ddocHeodo
2020-08-14 15:08:453d56178779af4f3321a7d6adabc672edb3e9036292191e34bb37d215e19a9f4bdocHeodo
2020-08-14 14:44:43c2af257a8a40028722b621eec7a07631530b6ad0a75733f89eb70aad03b1e4b7docHeodo
2020-08-14 14:20:44936f0b1c957e1480cdba3c5cefac63730008c19b570d825bd0d6c6de85ca38b2docHeodo
2020-08-14 12:46:539d6676d7926e7555e55f55924ee0a8082d62b5b813ac98704090a5a23e7a1775docHeodo
2020-08-14 12:30:43104251c4ce5ddfa9732871b3478c81882c4e2544e2f2b615ee7e05a6c4c35b0cdocHeodo
2020-08-14 12:08:086805a810bcf466e80e587c1933e7d96d2e378735619324aa1ad6dc04d8173d68docHeodo
2020-08-14 11:46:58287b1c2cdc4b225da919062620fa3a273db58864387add5e91f642613c416075docHeodo
2020-08-14 11:30:3831fd17ea13411b2b4c8a726012b7e3390527519bfcb805d9d895877a627c8f7edocHeodo
2020-08-14 11:09:02293c5df488141cb4aaa3c1d4e450c5f3fce9c1b3ff26d587b42c17d6a05758b2docHeodo
2020-08-14 09:38:453d1d9383eb8fa943d9a30683c659bf8dbd0728daae34c9e0227d1585f26cb327docHeodo
2020-08-14 09:13:1073d4b0a7ca15e61e87a8fe48a88037618e4b4aac3d8a94cf4583f52cbab9bcc1docHeodo
2020-08-14 08:48:492a7342691538ac359f25d6ccd05e6b81f64ea3dfb5fe8af5f23eb3f3425a056adocHeodo
2020-08-14 08:32:069767bd56721afd6905bab6c3a1a8790999605c8e5b91b2dfded3a0849c7e5d60docHeodo
2020-08-14 08:10:26f841c145c39f74c12260a67c686e4dde761614e633f204a3e68f47750f2e6d1fdocHeodo
2020-08-14 07:49:0899db7baf30cee72146c4791d36d158ca3ed62a58dd3bd57b7bfa60d0f13b08d9docHeodo
2020-08-14 07:29:05538aec1c87a88d78a75a417c253579be5fa18cefce592109122505cf70f2eea9docHeodo
2020-08-14 07:08:06fb17807621969c33d345882ad5ae95cd5294c32509e13a6fe8ce1d317a5c3f4ddoc Heodo
2020-08-14 05:36:083132acbb0aa02f175f2e8bf589a53e732564cf73f1f003cb64c842ba52d3c889doc Heodo
2020-08-14 05:20:18845f584a4b58e05f5eabb64041142baac8b97a971f88d4cb2544c4ac3af97a3adocHeodo
2020-08-14 05:05:07382eeb05e0b37509916697e88d5f58e00cfd17db07cf9b27240fd84aa4bcd26edocHeodo
2020-08-14 04:38:330a113fe937499c36099951c617841d7ac21c77a953e277ce6ee04023944a1ebfdocHeodo
2020-08-10 19:05:1092a8c9729a35ef4fbe97b8b931ac2ba3284ff4c1aaaab30eadbe36ad12c75465docHeodo