URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: henrijacobs.nl
Domain registrar: n/a
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-12-04 19:23:02 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-12-04 19:23:03 185.158.165.51linux1802.webawere.nlNot listedAS8455 ATOM86-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-30 15:39:03http://henrijacobs.nl/t3Fy5olNhwd/?i=1Offlinedoc emotet ext epoch4 heodo ext Cryptolaemus1
2022-03-30 15:35:16http://henrijacobs.nl/t3Fy5olNhwd/Offlineemotet ext epoch4 redir-doc xls Cryptolaemus1
2019-05-16 18:43:04http://henrijacobs.nl/INC/6os1h3evk_rbi1wubtp-7...Offlineemotet ext epoch2 heodo ext spamhaus
2019-04-11 17:25:09http://henrijacobs.nl/LkxtZ-ktP3pOmESSbD4m_TyJV...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2018-12-04 19:56:12http://henrijacobs.nl/DOC/US_us/Paid-InvoicesOfflineemotet ext epoch2 Cryptolaemus1
2018-12-04 19:23:03http://henrijacobs.nl/DOC/US_us/Paid-Invoices/Offlinedoc heodo ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-30 15:39:0378498ba4708e3f06fbedcfade13bf9369ff2d9713eabfa56ead41fbb967c209bxlsHeodo
2022-03-30 15:35:16abb15d167b3d8cc4c73141b41c6e95dc56620a2e3ff87fe40548c54bf1c5a81ehtml  
2019-05-16 18:43:04ed7c8d9543cf869368c78207779de5492ca0ed17293068f9f2b66dc0ce9cb25cdoc Heodo
2019-04-11 17:25:0991eb83248be3b3e24d6cdf4eee9eb181c117bd051d7845742a166f5654e1fe49doc Heodo