URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: helpyfinder.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 13:31:18 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :220

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 11:38:02 184.168.97.9494.97.168.184.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- SGyes
2021-05-04 07:17:44 13.35.242.113server-13-35-242-113.lhr62.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-05-04 07:17:45 13.35.242.123server-13-35-242-123.lhr62.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-05-04 07:17:44 13.35.242.24server-13-35-242-24.lhr62.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-05-04 07:17:44 13.35.242.41server-13-35-242-41.lhr62.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-04-14 00:19:27 54.192.230.85server-54-192-230-85.waw50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-04-14 00:19:27 54.192.230.110server-54-192-230-110.waw50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-04-14 00:19:27 54.192.230.46server-54-192-230-46.waw50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-04-14 00:19:27 54.192.230.36server-54-192-230-36.waw50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2021-04-16 18:21:47 13.32.128.120server-13-32-128-120.mad51.r.cloudfront.netNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 17:42:06http://helpyfinder.com/wp-admin/docs/ahntm6kjmaj/Offlinedoc emotet ext epoch2 Cryptolaemus1
2020-10-16 13:31:19https://helpyfinder.com/wp-admin/docs/ahntm6kjmaj/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 11:33:09360a5cb7eed923017b4ef07460e7652362cdf1fc0a902516addbb8e244e30134docHeodo
2020-10-17 11:00:21b61cc94625d0aec1674d3ffb90ade5b30575e1eb8a755f9944cfcb4d40378041docHeodo
2020-10-17 10:46:445ab2456a7a5d44a28ef32f5ac8c55e8eaf4b24802b2d326a29cd9aa4199e0b97docHeodo
2020-10-17 10:17:15169fa4037e8c45a38a3b2e862d860e955fc810c63682c78155bbbd45820b83bfdocHeodo
2020-10-17 09:42:415bc6a9797e0e1b206a0d2d341e88b730f01312279122e98e1dc2873f48b2102adocHeodo
2020-10-17 09:34:308eed16b7e0a64351cb06ea437eeae8f69b227cac04237187ed17cff470a3cb0ddocHeodo
2020-10-17 08:55:5567d27bed76861586613fbc785b6d089a2e01fd18bab5219bbe4df011e29f711fdocHeodo
2020-10-17 08:05:41797ebeb27b3af7fa872d899601baf807800f85a84371fbee97e2232f841c4ae4docHeodo
2020-10-17 07:58:30bf7d2c74845e2e6006ed753d93f64d23813dba57c4f443be01f59915f96aaca4docHeodo
2020-10-17 07:21:20ea065a0dbc3ca645237d0c98e82887ca636451f3fa822c6c0a087a2fe98c230fdocHeodo
2020-10-17 06:56:4372e665a7d43027e4ad6206ba82bfb44f113e89c81b249b2c9ea29c45faf022dddocHeodo
2020-10-17 06:09:397f7aaae8116f26c7d91c5c3d87ab7c7a752e628195c25563cc7c3074669e6c7adocHeodo
2020-10-17 05:52:286d5ed047cba0f40a2bd108fdb285520a5590c29ac64b7a9d32a20719905f1e7cdocHeodo
2020-10-17 05:15:15ab8be8e21a7c5f0a158818bdf5fa9883acaffa78d8cfa5cae36ba7d756b8fed6docHeodo
2020-10-17 05:03:01ca5d768289c225dea34f82176591548fc03963cf653f0a8ea0b6e0f9f71ca3aadocHeodo
2020-10-17 04:16:030b6de51a7fc8020fa3be7dfd2c2b6665da9ebc357d07f70828653ef7191b9dd0docHeodo
2020-10-17 03:38:158358ae3aef04560a786b84a17aa88a981d700993291a3b11aa001fab16829ad9docHeodo
2020-10-17 03:10:29c85fe8825461de0503c8b9b612f01c88a1124e0c33ace58d20c22cf40c4bd03fdocHeodo
2020-10-17 02:59:59cc0b6720262ce77c846acb19ec1f31511f0f465f1bfd03bd5e8bfb3c6b3e9828docHeodo
2020-10-17 02:32:55bb96b8f7ca8418e8d16ada7ed78c33abe3bd24d7ca843033cc73e73e4c606fdadocHeodo
2020-10-17 01:59:53db234da6bba5f671c8a6fad07cfc6ad7ce1b078a32f920e2edb4b142167e18dcdocHeodo
2020-10-17 01:29:06eb06448eea7b0d73132945671275ea572688e13de195a89974d8315900ff8cb7docHeodo
2020-10-17 01:18:044f6043ed53481592c3b9db4608a157df568b466062cba2018b8e5c59bfb40563docHeodo
2020-10-17 00:44:2072bc6543f22de398e1374caed638e9a1d24ec0b37a5fa9b5ac10ade7559ab839docHeodo
2020-10-17 00:14:20c40e490d1149a43b982a7c65d5f04d36117a86623374f75bf8d47f31090f8b18docHeodo
2020-10-17 00:06:4771c1be4d00ef4ec74c73abf05187dacf0335a393a145eff2b2efd68cbaa91b67docHeodo
2020-10-16 23:55:008e0082cbc47e4f5638313b20400e4874bb6371c424ee7ba8eb29009692653676docHeodo
2020-10-16 23:32:1953467ef76cb2d0f4cc9404439089220dd6d34680c167f2f062307713724ee9bbdocHeodo
2020-10-16 22:55:306647111dcc98f3a01470eee7de5a3b93b579a08c585cd3553cbfbdf3d54db556docHeodo
2020-10-16 22:47:229ff9f9b081c0332ad86c6bfa7b467c8084c4531de62f4d64cb0ea17f73ab4c0ddocHeodo
2020-10-16 22:19:4123600bb2ceb80154b049764a263e10cc02148048a332d10edf6458fc4b2cc34cdocHeodo
2020-10-16 21:47:090e28ab1cfd540547e916442f60de01263eaf13058f99d4cd5d15a2cd5c078f1adocHeodo
2020-10-16 21:35:43f8b980774cc06cbfa822245a47e48d9bd3280bf6cf2bd96628d02e54c84baf3adocHeodo
2020-10-16 21:28:542fbf73e1a8260214e5654186383efb89efb8590b71bcb92848290ffb06b90c8cdocHeodo
2020-10-16 21:11:5566c7e2fbf3c8c1188e708104ba2e10cb445c38f0aba80cf91527d2d1a36f2be9docHeodo
2020-10-16 20:40:370592df728f9353ff5f892eba34b3e4a89511bebcf05071738614f9c16c4c640adocHeodo
2020-10-16 20:12:179051dea430fb5eea96e34f2c938f3eaa2e672eeb73fa5d8ee44680ec0b906f26docHeodo
2020-10-16 19:55:408cca5e7fe35ef9fbd67206c7b0e279dd5678cd3c578d93c0091733df4fb01445docHeodo
2020-10-16 19:35:59457b10f1fc21e30d9630120fbbd7f0d7681e7ae38d1a3738cc07621995830543docHeodo
2020-10-16 18:51:14ff7745162ab7aecdeb231cda2d76517de7ae72899440a735aebd316676e2bf63docHeodo
2020-10-16 18:32:47e653173c042df6edb7802c5c38e576729a0985b1c2b6483c7e7709b928f5992edocHeodo
2020-10-16 18:09:3577cdfff917a2408f0ee9abbc0f607fe7cb8967b25ea422571c36ad69debc73e2docHeodo
2020-10-16 17:50:13b8031f04cccc6be26a29ea7f8ce5296fcad48e7a2aa335b460b4c62015004cbedocHeodo
2020-10-16 17:17:19519e99b2b51817d9c3a57f04c52948b561d6735932cc19d0359d4ddc24f06ef5docHeodo
2020-10-16 16:35:18055c0768feaa5f21bc4c430d586190b390dfcb0f18a8c908bf9dc4fa01bc99d0docHeodo
2020-10-16 16:08:517dc98dbcc601ceca44a529dc8b1f2aae3ad1479e17974321024e0c584914bf42docHeodo
2020-10-16 15:42:320e12f49796d6d8f40e96ccabd14b42ccbd1c2097b8e8419790c0d793c3226bd1docHeodo
2020-10-16 15:02:509c709e26cab4a752ef535629ca0789fa9454436ac24b8d5577c2cb420c60b20bdocHeodo
2020-10-16 14:32:4441b726329c763a097034a2dfa26775648a8594cba8ea2c6604391618c5798a2edocHeodo
2020-10-16 14:05:399c52e949c6c2ca01cb5bf09538ef75451e8aaabf492927bbc8a9f6253007a31bdocHeodo
2020-10-16 13:31:19aaa0b201b6ecd9225b9f151fef9ab72ef2b37f5b2a35ae38b130f2b9b7cc5e8bdocHeodo