URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: jjx.eiwaggff.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-12-30 00:37:07 UTC
Total malware sites :1
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-19 10:39:00 172.234.26.236pebble04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-18 12:02:53 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-03-08 15:26:28 207.246.94.159bibledude.tempurl.hostNot listedAS20473 AS-VULTR- USno
2022-12-30 01:52:03 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2022-12-30 01:52:03 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2023-02-07 01:28:37 104.21.48.89Not listedAS13335 CLOUDFLARENETn/ano
2023-02-07 01:28:37 172.67.183.10Not listedAS13335 CLOUDFLARENETn/ano
2022-12-30 00:37:09 188.114.96.9Not listedAS13335 CLOUDFLARENETn/ano
2022-12-30 00:37:09 188.114.97.9Not listedAS13335 CLOUDFLARENETn/ano
2023-02-24 02:40:46 188.114.96.7Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-12-30 00:37:09https://jjx.eiwaggff.com/files/pe/pb1111.exeOfflinedropped-by-amadey fabookie viql

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-02-27 10:23:1146459d267c5af74edbbbb5e507b5535119570b0474fb6fe071003d509d70ac6dexeFabookie
2023-02-21 00:44:17a250f05ad4551deb91be3123d4cb152ef9f48b7a2768b5399946cac84685bce5exe Fabookie
2023-02-20 03:42:029445904f66357e064de3b0c8f65c5af3b5d16652981168f4fd4eec47a3d30940exe Fabookie
2023-02-16 06:04:5072d18c0d2ae351433e2c6f3384671c67c4d00f8bcc2ad836b83a7416f93989c5exe Fabookie
2023-02-11 08:03:59e04090a716b8b345568a3ae21a1afb2109a8b7b0c7f32cc13e724caeff427101exe Fabookie
2023-02-05 05:30:31cfbb0ff0273e9985a09a995e98d5f8b5514fb7422e892b6e912d511f952e2fe6exe Fabookie
2023-02-02 11:38:46cab726a29297e3feba59120e1f2be6f8c15f29a0acc2008a493dbf0850ecf8d3exeFabookie
2023-01-30 06:29:2023b2cb63c39cad03761fa30d91e0d5a90df17aae5c3b7cbf3a2172d59824efe1exe Fabookie
2023-01-27 12:14:28ac371bda90a40da22f6fcf633b7ad731c9b11de21cc91ed47ab12cbe18d18ae5exeFabookie
2023-01-24 17:31:39e0cd78fb0f7f14f44061441eec9fde8ac8d0e34aabb5d110be0f11a31f8f4985exeFabookie
2023-01-18 05:01:00c5cbf5c1b551dec1326505e5a0ea4d298d19a53ce0c6197df9de8f57980bbd88exe Fabookie
2023-01-17 07:47:11b1b287d9b1e4b9f5f99dbb13fce14e81e12ab4a2a10841c73ac8558c645e7c6bexeFabookie
2023-01-16 07:46:47a6f093cab7fdf21bad95cdcd929a04beb8a7896f76d5bda90f381424b4cc4ba4exeFabookie
2023-01-10 06:56:30ae8ed0840c29fa1d5b68c68b2b4aa007b9a92095356c35cdd702756fed845844exe Fabookie
2022-12-30 00:37:096648c16ea58b3cbb22617541fe2ac5c88291e5d540e6100e7ed4d53eb4f58e2bexeFabookie