URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: jkwardrobe.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-10-15 07:18:26 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-10-15 11:57:07http://jkwardrobe.com/zvap/nh48k06442/Offlineemotet ext epoch1 exe Cryptolaemus1
2019-10-15 07:18:40https://jkwardrobe.com/zvap/nh48k06442/Offlineemotet ext epoch1 exe heodo ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-15 14:57:165a51b5ef825d24b6c6e80a155a2a58d9f5a80f6d34b3f45059a38c6073116c09exe Heodo
2019-10-15 13:24:360bc19c1c25a5884dd846841150c9de183a78a509e6480536e5ff723eef4e188aexe Heodo
2019-10-15 10:19:15447a57b8ca984ee2d39cfe7e879a2a79bd6382d025f733a7553da87a4b1761c7exe Heodo
2019-10-15 08:00:5483b59305347b3939113353adcfd1f8cefa64f97a7ef58dde3d579471b4f0b935exe Heodo
2019-10-15 07:18:3403150e8e65c02b6b7d8475ebf3c8f4bb79290fa56422a87614d236033ee2b48bexe Heodo