URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: job-ninja.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-29 15:09:20 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-29 15:09:23 202.254.236.159sv5158.xserver.jpNot listedAS131965 MAINT-JPNIC- JPno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-29 15:09:23https://job-ninja.net/wp-admin/lm/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-29 23:15:52f3156f2dd9bbd4c0f1164e92165433c3f689d7777297b5149c47299dfbb1d840docHeodo
2020-09-29 22:52:5391d4d101c3e8a665106bb48847dbee3791e2a9a04c0adb2f363ae7767e463337doc Heodo
2020-09-29 22:37:4316b031e38044afa7252dbfb56c762b3723de1cb4b3535a8c76bd5d4f10a2819bdocHeodo
2020-09-29 22:14:11ec406f315de493ed38f3fc8e7bdd65664965b74a7215c69123b3e1c08ec28fc8docHeodo
2020-09-29 21:42:3333c16dca57826043e0e0e906d157fcde3b15178d62747fe0ee0f10f1589d9498docHeodo
2020-09-29 21:22:16dc1dc0d9f3e322497b2ddb2d945203e60988d77b574c286dec470e7cf3c90c8cdocHeodo
2020-09-29 21:13:190242549ebc92f3e40e21ec852316e2a5e84ac870bf1a1a571ba2dee66ecb2128docHeodo
2020-09-29 20:38:16610f9f088ca6f20a7baa29fceb9bbea541e2e1820131ae7015e9cf236baf1ef8docHeodo
2020-09-29 20:36:57947195582063f90ccdfbfdd69b565f4f7e819de4f85cc8ebd34575d514f86b71docHeodo
2020-09-29 20:23:14a1253f0c82192b38181f843a781405d76f3c2c50d1bf6e2c90957bca35a2495bdocHeodo
2020-09-29 20:04:383af89f74e936ede592ba2d72b80b1be501c5657e80c247863516cc4d28eb0189docHeodo
2020-09-29 19:47:5928d8b1debd531ebe8e665f3c39a2ac24368f0bec5bdad18264416f150ac1b256docHeodo
2020-09-29 19:13:55bbc7fbcbe9a84c0271f2831e76f7f01c0ceed58176f6f387bf129dd76c6edcd3docHeodo
2020-09-29 18:49:03c1446a72e2576d95b24898e5014d628598195a914aaa2a04374e7f70bc758675docHeodo
2020-09-29 18:19:53a06ad91cbd8e1a2748921479a01b93cba5910718c0975e9cc5fd8a71bb5e823bdocHeodo
2020-09-29 18:13:345ef294f07935f058d75cb1588cb92c95325d7f2d888d38db85d1083041ea4fffdocHeodo
2020-09-29 17:50:32c69c21e4a5c5a3aab97f8686c02ea866d7334da7c2d7d5509ad1b4ebc56ec006docHeodo
2020-09-29 17:15:32f3d6ed2b7916c28d5f38990d6120edd5e03b50591d07859194b43ce144654f84docHeodo
2020-09-29 17:05:46844dc7bc8eab502d43f5eb0a7501fc0b97ed3192fe06e4e2f33d69dd28fb63f5docHeodo
2020-09-29 16:42:2521683182de4fec04da4b2d708665e90ce6eb04cb988221063c51baf436784a0adocHeodo
2020-09-29 16:12:515577b05132ddcf2fef9772af4f137196e88f80ad743454f18de1a1f8d90f336ddocHeodo
2020-09-29 16:01:0515513b191f34ecc5434e13d6ff1294840e3ca161628edc0caa89e89f6988f357docHeodo
2020-09-29 15:30:55cc633359c9ead5109a405c7198a5d2459585c688f6e42c72ed529e48012ecfc1docHeodo
2020-09-29 15:09:23f973136adc63c4e41033c24a450790d40f8fa1a4e235c23d9c3a61e42b439be7docHeodo