URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: jts-coffeetea.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-27 16:19:03 UTC
Total malware sites :1
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-19 11:03:42 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2025-09-19 11:03:42 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano
2025-04-28 00:27:48 104.21.96.1Not listedAS13335 CLOUDFLARENETn/ano
2021-01-27 15:38:48 31.22.7.102sv68.ifastnet17.orgNot listedAS34119 WILDCARD-AS- GBno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-27 16:19:03http://jts-coffeetea.com/bulletin/esp/EYgUN00VL...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-28 01:09:58bed5fa9f5076e8d4ac1560db74c286203b27441c28399bdae949b4f0155e21c8docHeodo
2020-10-28 00:55:36933899c854d4e9166cbfa37c763338c236faac01e87a8baba170ac0ee5f33a2ddocHeodo
2020-10-28 00:41:155bafcb869ad1c89b92e8d0cf06c05c51bbc54f713743a5e7e4638fd6153b5d03docHeodo
2020-10-28 00:20:3744bb11aa190e6709853da9eef79fabd0eeb621734d64202e6c134e8e8b9ac5dbdocHeodo
2020-10-28 00:00:347e04c986b4db0e23baaf1d60b136a6c899833dc934d309596ea62bc4e460eb46docHeodo
2020-10-27 23:19:3026eead61c6edbde1e06d00ecf89571be284ba247df2081239f5bcb0632b4c1dfdocHeodo
2020-10-27 23:08:32d80ff33e646826234e65956e93aaa92568ccb1bfcc3185f97032c6e68392109fdocHeodo
2020-10-27 22:49:39a7b5befccf3dd1276a60f1cea3f930219e35aa634b378b23b57772f480d9fe2cdocHeodo
2020-10-27 22:23:57dc195bb810b63c35c74cc0cdd8690cff533be0b29da2a5e568c8a03d6b3bc05edocHeodo
2020-10-27 21:52:0453f11a87c5eb09d98d2ad6807bf4a19a1844cd1c984dcb9365e45650ee7374b0docHeodo
2020-10-27 21:40:30ef0f8adbe044b90fda85ccfcfb7ce57ee106f835c82e5ddf4ffd7a79b9a40200docHeodo
2020-10-27 21:12:1263fc16f5e75a6bf8e072742070a020c44ecbf4f3b462c6480046003b2e4e8eb7docHeodo
2020-10-27 20:39:14758aebf226b5cb22ba67e2cf3fff01d1404eae5bdec785b0ac59a68353e888d3docHeodo
2020-10-27 20:15:53c4478df05ea4d77b2886f04b1a0b8ab67fd66e0f90064c0fce17fdf1171aec22docHeodo
2020-10-27 19:55:13f27078443916b33d73acafebf8fa87e79e02c00cfe801bedccc81cbfcc0ce5ffdocHeodo
2020-10-27 19:22:2284350d794ab71f13e5b73fa0731a06fa097fd3c727040e023d946f348b66a73fdocHeodo
2020-10-27 18:54:2222dbd6df08e41fde302a14a96c115f4b65e89f399d1edc1a14a6504df407bdaedocHeodo
2020-10-27 18:34:29440710866f2af5dec3a2fb47d43a20a8d599fadce987787c6772a857b926669ddocHeodo
2020-10-27 18:17:483431f667a8d8114f2d3c611cc37092b9ec8b838f011b83f979a6d3e77a1221d5docHeodo
2020-10-27 17:54:086b8d6c13903e403b9335c3b3616d6cae062ba53dd2c386c44af6a50b069d57b1docHeodo
2020-10-27 17:45:14789c0d57de38535643ee38b0e4fd94e4ff94baae07225e2d2f1e1ca9fc967ecbdocHeodo
2020-10-27 17:25:149addd2e4077d5a7c24bccc8a9108404f079a61f851615ab2e65deeeece42e424docHeodo
2020-10-27 17:10:30cfff055973943fbc6e70ebefde29c7326b56b50e44a62b01e07197b15b54d8a2docHeodo
2020-10-27 16:19:03d72d739e8e5011b13120f38f398f775116032ad0712d602780ff9370cfb0ddc8docHeodo