URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ingridkaslik.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2018-04-24 19:34:01 UTC
Total malware sites :43
Online malware sites :0 (0%)
Offline Malware sites :43 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:13:27 52.40.237.158ec2-52-40-237-158.us-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USyes
2018-12-24 05:52:16 66.152.183.26server.bludomain31.comNot listedAS16509 AMAZON-02- USno
2018-04-24 19:34:02 104.145.227.111server.bludomain31.comNot listedAS40676 AS40676- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-12 19:23:11http://ingridkaslik.com/ingrid/XOGc-lGnVHk7BBdI...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2018-11-19 19:50:32http://ingridkaslik.com/PAYMENT/IPXS50602953MOV...Offlineemotet ext heodo ext cocaman
2018-11-05 20:40:09http://ingridkaslik.com/0597864MMOLPXNP/identit...Offlinedoc emotet ext heodo ext unixronin
2018-11-05 18:26:03http://ingridkaslik.com/0597864MMOLPXNP/identit...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-27 14:36:26http://ingridkaslik.com/En_us/Clients/09_18Offlinedoc emotet ext heodo ext unixronin
2018-09-26 05:07:51http://ingridkaslik.com/INFO/En/Inv-59429-PO-1R...Offlinedoc emotet ext heodo ext j00dan
2018-09-22 17:24:04http://ingridkaslik.com/ACCOUNT/Past-Due-invoiceOfflinedoc heodo ext zbetcheckin
2018-09-14 05:01:50http://ingridkaslik.com/48NJTKNT/SEP/Commercial/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-13 10:31:12http://ingridkaslik.com/48NJTKNT/SEP/CommercialOfflinedoc emotet ext heodo ext unixronin
2018-09-11 05:07:11http://ingridkaslik.com/DOC/En_us/Past-Due-Invo...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-10 14:29:07http://ingridkaslik.com/Vz6UYhGl/Offlineexe heodo ext zbetcheckin
2018-09-10 11:25:14http://ingridkaslik.com/Vz6UYhGlOfflineemotet ext exe heodo ext ps66uk
2018-09-07 14:57:40http://ingridkaslik.com/DOC/En_us/Past-Due-Invo...Offlinedoc emotet ext heodo ext unixronin
2018-09-05 13:44:04http://ingridkaslik.com/payment/Offlinedoc heodo ext zbetcheckin
2018-09-05 12:40:08http://ingridkaslik.com/paymentOfflinedoc emotet ext heodo ext unixronin
2018-09-05 03:36:25http://ingridkaslik.com/INVOICE/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2018-09-04 15:41:30http://ingridkaslik.com/INVOICEOfflinedoc emotet ext heodo ext unixronin
2018-08-31 18:49:12http://ingridkaslik.com/M355AhFOfflineemotet ext exe heodo ext unixronin
2018-08-30 09:02:12http://ingridkaslik.com/NMxzFQ47Bn/Offlineemotet ext exe heodo ext abuse_ch
2018-08-29 23:48:09http://ingridkaslik.com/NMxzFQ47BnOfflineemotet ext exe heodo ext ps66uk
2018-08-28 18:37:05http://ingridkaslik.com/8/Offlineemotet ext exe heodo ext abuse_ch
2018-08-27 09:41:11http://ingridkaslik.com/8Offlineemotet ext exe heodo ext Anonymous
2018-08-24 14:11:37http://ingridkaslik.com/32466TMUA/biz/Smallbusi...Offlinedoc emotet ext heodo ext unixronin
2018-08-16 03:38:02http://ingridkaslik.com/WellsFargo/US/Aug-15-2018/Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-15 15:19:26http://ingridkaslik.com/WellsFargo/US/Aug-15-2018Offlinedoc emotet ext heodo ext unixronin
2018-08-14 04:24:31http://ingridkaslik.com/default/US/Invoice/Invo...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-14 04:24:29http://ingridkaslik.com/911YVQINFO/FJF601981072...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-13 22:15:26http://ingridkaslik.com/911YVQINFO/FJF601981072...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-13 13:32:41http://ingridkaslik.com/default/US/Invoice/Invo...Offlinedoc emotet ext heodo ext Anonymous
2018-08-09 05:50:04http://ingridkaslik.com/ACH/BA71673I/Aug-06-201...Offlinedoc emotet ext heodo ext unixronin
2018-08-03 17:12:07http://ingridkaslik.com/PAYMENT/IPXS50602953MOV...Offlinedoc emotet ext heodo ext unixronin
2018-08-03 04:24:51http://ingridkaslik.com/DHL-Tracking/En_us/Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-07-30 13:38:32http://ingridkaslik.com/hb10Nft/DHL/En/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-25 03:58:24http://ingridkaslik.com/default/US/Open-invoice...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-24 08:58:06http://ingridkaslik.com/default/US/Open-invoice...Offlinedoc emotet ext heodo ext ps66uk
2018-07-21 08:10:33http://ingridkaslik.com/doc/US_us/Client/Invoic...Offlinedoc emotet ext heodo ext Anonymous
2018-07-17 21:38:27http://ingridkaslik.com/sites/En/Payment-and-ad...Offlinedoc emotet ext heodo ext Anonymous
2018-07-17 17:45:53http://ingridkaslik.com/pdf/En_us/Jul2018/Pleas...Offlineemotet ext heodo ext JayTHL
2018-07-17 09:14:26http://ingridkaslik.com/pdf/En_us/Jul2018/Pleas...Offlinedoc emotet ext heodo ext Anonymous
2018-06-06 14:38:04http://ingridkaslik.com/ACCOUNT/Past-Due-invoice/Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-06-04 07:29:49http://ingridkaslik.com/13B0NlT/Offlineemotet ext exe heodo ext abuse_ch
2018-05-31 19:31:08http://ingridkaslik.com/ups.com/WebTracking/PI-...Offlinedoc emotet ext heodo ext c_APT_ure
2018-04-24 19:34:02http://ingridkaslik.com/past-due-invoicesOfflinedoc emotet ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-15 21:11:40060a0fc2dc33ae11af40e99b36563ac2b3cdbe59e7e538f1a0a0832480e8c74cdoc Heodo
2019-04-14 09:14:18268307363c224d65da7370d6da6cf518826f73a2d38cf8174037d4fcc5d18570jsHeodo
2019-04-13 18:11:160e4cb4664c90b327e9cc3da8b12def365d187ab543b6a840b95458913a17549ejsHeodo
2019-04-13 09:44:140ad1a288380b66bec4c13428d108845caff4201fc46cb0cddb85e4a314da26fcjs Heodo
2019-04-12 20:49:061019bd7e2c3bb1a5b578d7406a74824051d49e84c13864a73635362e7bcbcb4ejs Heodo
2019-04-12 19:46:09ee1a33fd81e68eef2c49a0e4b3521bc11d455bbf96fb8360618c6cb120814e85docHeodo
2018-11-06 09:02:1557d24769c8dd4ea3ef673402fc8768d27f9d231ef22baf1d42dd648e8859b554doc Heodo
2018-11-06 09:00:1457d24769c8dd4ea3ef673402fc8768d27f9d231ef22baf1d42dd648e8859b554doc Heodo
2018-09-11 05:07:118fc9db0bac4cac546a1c3167777fd32da5249a88371eafa0ff44e70d48816ed5doc Heodo
2018-09-08 06:06:408fc9db0bac4cac546a1c3167777fd32da5249a88371eafa0ff44e70d48816ed5doc Heodo
2018-08-25 13:22:29b8be31db3cf8fa74d86929a303a2ae714fb928211f14b777f4a63f2bd1854929doc Heodo
2018-08-03 17:12:06497be5f773cd826c4e352aef2ba0ceac18117e7709a3353a413eef2fddfef2aedoc Heodo
2018-07-22 07:53:079eb5ebf4950818df9294072543535ab5bf97a9af906b2c14909a7c79445250cfdoc Heodo
2018-07-22 06:43:269997faff082088963c088eedcfe40c5490a43a26af763637a376fd7f18e0412fdoc Heodo
2018-07-21 23:19:0667165d9b0b0017a2ce12791473747dfbd8c7c1d1c44b8433435aba27191c54ffdoc Heodo
2018-07-21 15:52:578449b8b0faadcfab22485004ccc56e221ddf48083c8569741996115ef56452f2doc Heodo
2018-07-21 09:50:5825dc7d8c8e8880651752382dd3bd8bb32d363bbc5b4d75b8f8ca91105ff4d509doc Heodo
2018-07-21 09:29:09d91c31eb9a5705c5f02de259bf377d12608bc9f889e3fa3a59ae291f7f11a515doc Heodo
2018-07-19 06:23:225da441a5129f4d0cb8ab72d45b985fb9238218eee413835e1c6d94686fad9d5ddocHeodo
2018-07-18 19:03:468bfdf6fe5f6a3aab367939407088cab9cdc7215d1220770b5a857fe832d2ea02doc Heodo
2018-07-18 18:58:568bfdf6fe5f6a3aab367939407088cab9cdc7215d1220770b5a857fe832d2ea02doc Heodo
2018-07-18 11:12:26e7db2087ef7f0f80640c7f62a493da43eadb8db5f5af90ef1cb55e68a465696adoc Heodo
2018-07-18 11:05:58e7db2087ef7f0f80640c7f62a493da43eadb8db5f5af90ef1cb55e68a465696adoc Heodo
2018-06-01 14:57:453803bfbce21fffcf67582832f8292d4e40e2417463b3040e293c1938179ef9c1doc