URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kavvayirivera.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-05 09:58:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 10:09:04 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-04-27 10:09:04 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-08-12 13:19:55 139.59.74.104Not listedAS14061 DIGITALOCEAN-ASN- INno
2021-01-05 09:58:05 167.71.226.139Not listedAS14061 DIGITALOCEAN-ASN- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-05 16:56:03http://kavvayirivera.com/wp-admin/IEL4OoIyy3imkc1/Offlinedoc emotet ext epoch2 Cryptolaemus1
2021-01-05 09:58:05https://kavvayirivera.com/wp-admin/IEL4OoIyy3im...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-05 15:09:52bd8676ec8de5eee9beeeaedc3d1ca615cc6ad79a8a46488cae1c51662ccf084edocHeodo
2021-01-05 14:55:52e1ed12bcae0da4c4a1154924ad77715d27052249f5056a72f02f9c6a42a6ba59docHeodo
2021-01-05 14:41:0962eb0fec7cbd5f5678dbf2c5760339f886634b8eb21cb6280e81ed8ba852eecfdocHeodo
2021-01-05 14:13:189d3344c7f11a66cddc96025ccae4c5c62eae3da75ef556b810858c35307be91ddocHeodo
2021-01-05 14:02:2035d0c557817977e6a991a0c32c5616c13a96abe0290c16f231cd53fd8e3b8d91docHeodo
2021-01-05 13:52:1359a5bd5a89cb04636e5146b6637154636d8e608014dba50b76e584d9dbfeebeedocHeodo
2021-01-05 13:41:06dec912faff311861c29da440acd2b9397c1e37bfb5be458cb8b21fcfc150d152docHeodo
2021-01-05 13:38:005d0da887ed070060c78e25140cd25c95645a139a31d8792e981833b42204f99ddocHeodo
2021-01-05 13:21:29ef6c966c74e229e34f880f5df67c40fc69a57caf55d1b033527dd9c5be04516bdocHeodo
2021-01-05 13:07:14e8dd54b2b1b279a38872b0613b3cdacd0c6e0ed1440722f7fd83f0b6b15caa40docHeodo
2021-01-05 13:02:185811f21b56ff4e4ebecda822447d72e3375952d4762d2289f132db72185e47eadocHeodo
2021-01-05 12:47:35f6e3ab2fb75c4dad953b4eabf8acdbdf4a8a40840e32e3f178fc2b044b27dec4docHeodo
2021-01-05 12:29:18755c1e87c9c3e345b5eca450c1c72e05e691421932a8d8e26048990f9cb2ab5bdocHeodo
2021-01-05 12:20:29616f225c95d629abcbed5b0326f80549cd8519f657ab6086a9fa79f009d02f9adocHeodo
2021-01-05 12:08:18c5093981d845dddb3354e358477d1865f47564bebb0fea43cb8588e31955e4b2docHeodo
2021-01-05 11:59:43bd60ff7c004eabf4a4e1ec0d15c9df1c8500a909033be1dbf3b570915556d24adocHeodo
2021-01-05 11:45:3541342ac5f72916869e1744faa15163c9b757a890f2911b9c64a79d7498cee7f3docHeodo
2021-01-05 11:36:599ae915057958cea9afdf68d25db2382af275e1df97697179b81cee8948202f35docHeodo
2021-01-05 11:15:19603d7730f21916f22bff3d707e9aca62706ef588424f3e135db099388395091adocHeodo
2021-01-05 11:09:19ff12ebb01a78239f88677715c2dd26f3d7aa9368c15a94590bb5a8035adb043ddocHeodo
2021-01-05 10:49:06c117ee4b0325e948b2914fc8b400782b97cd6409b0b6ff7663abcbe03bcd02b6docHeodo
2021-01-05 10:43:013a093fbce2d9a90e3ebad205dc7c4ce4e55d26e27a30389742c087f5e236940ddocHeodo
2021-01-05 10:20:52cf82a74d446d45ed33d89a5dc8bf3054c759af8178dc44386bf1b751bd841176docHeodo
2021-01-05 10:13:467a478c1c24c25e82274c1757d5603581f28754f7a8614b646701da5fa27c6aa4docHeodo
2021-01-05 09:58:05a7869470b0a958bf59fcb425e192a86232d0d34072fd6c97a6c9e1fa0fff6ac5docHeodo