URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: investesteinviitor.ro
Domain registrar: n/a
Domain registration date:2021-07-20 00:00:00 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-20 07:27:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 10:52:29 185.151.30.182185-151-30-182.ptr4.stackcp.netNot listedAS48254 TWENTYI- GByes
2022-01-20 07:27:09 89.46.6.28nbx8928.nbxmail.roNot listedAS5606 GTS-BACKBONE- ROno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 07:27:09https://investesteinviitor.ro/wp-content/plugin...Offlinebazaloader ext BazarLoader xll Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-20 12:48:3675cdb51337ba20c2f53bc8dac34e55678cc01b7698550ba91aaa3ce667af32c0dllBazaLoader
2022-01-20 12:30:25488453b2c3d9e532d42bcb634b9817cb02b5fbf3bdbb4d12f24abca359e44089dllBazaLoader
2022-01-20 11:50:49b31cdc9d1f82f0e85faedf8a95cddcfb94ea68db5c9a496a4365db19b7272380dllBazaLoader
2022-01-20 11:30:1959136a8738af5783756405f46526e99f705dd94a14dd2629de96880814dacc0cdll BazaLoader
2022-01-20 11:17:35d3dbd89bf43c2ade8f0c590ab831f5a3b200bb5bf370a13450523ef9f094437fdllBazaLoader
2022-01-20 10:59:254db56cc519b8fe92f608a30bf32477b62c1f154de183e7f075bb4cf68e918a83dll BazaLoader
2022-01-20 10:40:42d6c5958b3428b877f04dbfe926d80823e014e182b2cda18c0b0e9f2fde835d44dllBazaLoader
2022-01-20 10:28:22f983a109d3d2856794352c36289e6f34f0f55420acfdc196ec9c75095eb79c90dll BazaLoader
2022-01-20 10:21:264f5fdd31a9968ef180ac139cd711f49708ee61c0959d0507d65ea29c90033606dll BazaLoader
2022-01-20 10:05:002a44ed0a9fda586147fb82a9927090f745e68887712a29d34e4bb1c52a83fba3dllBazaLoader
2022-01-20 09:31:37d5c03179945956647ebd5c1481506cec6cd412bc624872942bbf5f7082536b06dll BazaLoader
2022-01-20 09:15:17113fa9ae34480ab1f6b091d8928b9716a4e7dffeb3c9c47129ed249af762b47adll BazaLoader
2022-01-20 08:55:033d96364b05eeca8c8e82542c15127c5c648177560e738afcd6160c22a5a4408cdllBazaLoader
2022-01-20 08:46:37628430a43571477dd00085cdcdaa9a834e030cb80e39ae19b6a107c1f904e2cfdll BazaLoader
2022-01-20 08:09:45f788a8ef14ef471ca30ba366c02b440912db3a113941edc77c1da9cd7b03c513dll BazaLoader
2022-01-20 07:50:429bfe3e664dea6ec4c143d6beb35b7cef737163ee64f78e06e4d779859c046138dllBazaLoader
2022-01-20 07:33:252741d6da882c151334cb7777b2f8bf26f8b0e197d244f1aa86570b040f334a76dll BazaLoader
2022-01-20 07:27:082c2070acd612d96b786e7f8e5ace1fa0965649d4da600936b9f99bf79e331a72dllBazaLoader