URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: heronicon.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 18:52:12 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-26 04:48:29 172.67.142.17Not listedAS13335 CLOUDFLARENETn/ano
2020-08-14 18:52:15 47.240.78.223Not listedAS45102 ALIBABA-CN-NET- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 18:52:15https://heronicon.com/css/oczl_km0kzac6j6_49495...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 11:48:39489e84c61f0e1903d9276dc7bba7fe7f936f26076d1276f41c8c52b3e3f2ffafdocHeodo
2020-08-15 10:28:3554fe97f4af2c1a197affe09d507f8a716ca280e39e797c511a2f0642fd6bdda5docHeodo
2020-08-15 10:00:467cdd49950b4a23a78977c603e92d97feae8e151066e492e6262c67833c7a27b9docHeodo
2020-08-15 09:30:37692823887bbac35e5838510b1349d2350db983776ad0b73ea078f4749ec82cc2docHeodo
2020-08-15 09:12:494f8bff007eeb2ac3b68400127782b5f65da36302d8e930bb6e51ecf2dde6137bdocHeodo
2020-08-15 08:53:51dd45ce6c1f1a9a801eec41b431fdd298ab6e17be0173a547471ba404e4dd6e47docHeodo
2020-08-15 08:31:295a38534247da53a12f7cfc12252ee16eb0624ea2ce30bd941f844292419a6024docHeodo
2020-08-15 07:44:21d6491fe33e3ff96d8d86139e175e0b8dea1bb40b5e6ec2d269b64c52abebaf48docHeodo
2020-08-15 06:50:15757ef17c5551173f0ba443d3e6baf9b6600c1bd38ab52892958ae12141662451docHeodo
2020-08-15 06:18:112f981bdbfbe8f4a399aaeed9be1d2a6869e33494f413d389d8dbcfa4e7039df9docHeodo
2020-08-15 05:55:17fbfcc410b91b5728a0d87a4497dea5acfdd87ff71ac65743afcc31af934e88cbdocHeodo
2020-08-15 05:37:1266b7919e6266b9fc20817017416ea40307a7910d29c38043c02fbcd106eeb0c3docHeodo
2020-08-15 05:04:28855ff7c1fa225c3d38d17f4e86dc0bbb7bb32d5a4102923fec230c48c957a2dcdocHeodo
2020-08-15 04:48:07e62adb622c69c89b41b4800cc347a5e017a1c086cab693917f6ae40fcff09fcddocHeodo
2020-08-15 04:37:176775fe3e5a9f98b128c917a2afa9346f077e0adca9eee16f4834a8783ed01983docHeodo
2020-08-15 04:07:47f9feb5672547329d1ce60a849364873b44ee2ae529257ee19f5e6a051ee28693docHeodo
2020-08-15 03:35:395e374eec96975f9ac7eb92fd7eb763646c99be88f5db3377ddb7edafb488ae05docHeodo
2020-08-15 03:01:5002a59b06449a3ba4194e86770a7589c843a4cc341f544ca925d6c2d20f31d237docHeodo
2020-08-15 02:35:56e30f2187480717774431c9396520d352f50a92b8ed57838d535ba1da580b6251docHeodo
2020-08-15 01:02:511734600511f94a2370e03e5367dd885e52858cbef41ea6d3e06ca06370573260docHeodo
2020-08-15 00:42:1364d7da61bc5e477dcd94a4ec0bb3d8c5b2a8047f4118704f2e7be561cf217b0edocHeodo
2020-08-15 00:03:0198d32a982e82317e6e164544ad927cc3cf845e4276795e7ce6e2dc9ebb297724docHeodo
2020-08-14 22:30:27d07ec4fc9657ea145484957e5b68242e719e4a327f4f1c7b1fe940ae182fdc84docHeodo
2020-08-14 22:13:05a04d9ab1b95d893d51dcecbf927f6f27c97d30ace8fdbaca14c643b6cf9be407docHeodo
2020-08-14 21:46:3595a85c48a77b0f285d874d96d852096d83f8275c4294627b68cc39f205ec00a6docHeodo
2020-08-14 21:37:36e3cfaefd87b2aa287ac22562cc177ec6744c3c9ac27db58b5d2bb7625b694d3ddocHeodo
2020-08-14 21:24:462c50f621efded90cba64805311afc4551d077fef0ac40824b8384ad4118640a9docHeodo
2020-08-14 20:57:470329d83d9949588804bf1615b60d92ce249db4cf10f1e177992923891e6c3218docHeodo
2020-08-14 20:24:19665456af44fc843e545d1937baeefa7a85f67eaf4b0c1254adf627ceb4024372docHeodo
2020-08-14 19:58:11c74d9497f6e45b986c8d3aa90e037e0bdf572731082d874ca8187cd51fd90486docHeodo
2020-08-14 19:28:49171778f3f71370ac71991a37d610af0b288786d43479051653130914d8460ba6docHeodo
2020-08-14 19:01:02162582c2350c22d014b738bdea37a87272c1bb3ce559c38796b0b850f2c184f3docHeodo
2020-08-14 18:52:156f2bad19995d806001d11763cf479ed0d2bec3fcea1dc902dd7fdc375274bfffdocHeodo