URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kd.nuftp.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-29 00:59:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 13:40:54 104.21.41.45Not listedAS13335 CLOUDFLARENETn/ayes
2025-04-27 13:40:54 172.67.159.245Not listedAS13335 CLOUDFLARENETn/ayes
2020-02-21 16:49:49 176.9.219.134static.134.219.9.176.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno
2020-01-29 00:59:06 167.114.200.243ip243.ip-167-114-200.netNot listedAS16276 OVH- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-31 22:19:06http://kd.nuftp.com/pulkit/eTrac/l1vyfdl/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-01-29 00:59:06http://kd.nuftp.com/pulkit/attachments/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-01 11:17:438ef3a86989c9654cd7b0914ab743459ad98702ea960612c66e331f858a791eb0docx 
2020-02-01 08:41:21a2c15bbccb011facd484ff6ea4e335bb5d02892a6f247ccb953d9be7770495bddocx  
2020-02-01 07:29:19da2dfdde77d319fa7d1a1326ca2ce99142a8d194e609eba08264875f442e240bdoc  
2020-02-01 05:58:2033a89c876ed4c1f54ac3ebf60cd427562e652b39263734b693beb3be9e6c67ebdocx  
2020-02-01 04:30:24ac59c732daa8085badba3321495b6415cec136aaceaf03e509380f2d2742866bdoc  
2020-02-01 03:20:22c117593f754a9dafdfb9c3bcaf46d70eda6bedf7ee811038f00aad85aa541355doc Heodo
2020-01-31 23:56:2123289e198b845e220d81ec454211ae4996497e3cd0c46bdfcb2202ff7c67d2fadocx  
2020-01-31 22:25:2478189db51d029cba090eb74853c255ae01f91ae08c6215195b58fa1442c247e8docx Heodo
2020-01-31 22:19:06cbf7c85d8c7352b91f6f1887014170afa27da025e20e1208b844e97302b5b5d1doc Heodo
2020-01-31 01:45:455eb7a7a2d5f10d6a7ce69fea271f6eb546bce3e7bb76d8f9446005630679dbf0docx Heodo
2020-01-31 00:45:49757a48d02b6fe0b6727f63c17977c6b7dade46c23a91bd48a77efce02b1619b7docx Heodo
2020-01-30 23:31:30563071c05c838bf4e64f6086d8bb5924015ff2656a1a377b37607e77922bac62docx Heodo
2020-01-30 22:03:42201abdb8d9d94e5edac0b0e5da31b12f15e30a68967998f103247779f84f6311doc Heodo
2020-01-30 21:17:1195be00b6fb770b3aa5d4b55d82d0079098d6d7a3cd9d9df68e470f5dd0b01a69docx Heodo
2020-01-30 20:35:561989a1ba92b07553f5089bd063e76edafddfcd4c53774fc697c8835d7f10adb5doc Heodo
2020-01-30 19:04:381b5d6a9fe7a562d4d940efb272ceb962dda14a0cb672a089fe2a0ed20585c0a0docx Heodo
2020-01-30 18:27:34643bbf34d9e019017fc813de23d9d7b7d1e622e67679b779a60a3de0153f7ab7doc  
2020-01-30 17:46:083476381f8a76d5131391144afc9072ad6ffb33c7cdd6aeeb721600c5743992e0docx  
2020-01-30 16:36:20cc7d8ba3bc76b203da5c3994f672d0a3d03d98fcf9e5a8913db8535608bb7f9fdocx  
2020-01-30 15:36:53024971076d176b3083c588a0dac66a884220a800c5e08afbd1b1a0e410b7dd31docx  
2020-01-30 15:04:43bcaa904b499b15bb8bdfd3594adbb8792a1f6d6c0719df8c754ae70d5e01d1afdoc  
2020-01-30 13:50:2682d1024bd444604aae666bebf1ddedf2ff5bb943374429cfdaf894f7c19798c3doc Heodo
2020-01-30 12:21:030e8bf4227a4711a00bdef9eecc715129b94f89647c1606b0826974f91b00c90bdoc Heodo
2020-01-29 16:08:51135e6e64bd7742b372ada6b825319eb55fa6081a563f2bb5b8c41b146badb7e9docHeodo
2020-01-29 14:59:04e18317c574e19a90bb705a85073532bd2ec510834ab8698ca864112a79aca9d2doc Heodo
2020-01-29 13:27:452974d01a1a4da0562902c3971327dcc14301362344429bb27e64548127418106doc Heodo
2020-01-29 11:57:40676826308fd42a8c5d5130e1994e49f1e6dcbdd69ef8fc7d2e1b522eb3177ae4doc  
2020-01-29 10:25:3400c6c2872b1a02fa3f58be8e21c979ea70c7bd05b19610c2f6b3a4e3e9f062a8doc  
2020-01-29 08:53:39d42397f2c35dd3c7b8b6b015e39fb702baf614c404463137e12ad718fa899956doc Heodo
2020-01-29 08:07:343bf12769229661d5dd0a25950302e189697b914c141c2afd1b39219a381a4becdoc  
2020-01-29 07:22:3105d8ec5900b6d0131e9189d1fb55c81b9ab126884a7b01401a0bfea7685cae67doc Heodo
2020-01-29 06:01:27c4e98ede56a0efb2e0953087b459ba70b7bbfedb7262693870cff7eabf85c4a1doc Heodo
2020-01-29 05:09:101d40fe7e5e339b9c7aba765c1aece29bcca6afc02982df12b4b25700f1a84f03doc  
2020-01-29 04:34:271208b26b61ee90bf9d193b78b7be525904097e614d9afe182f39e23f28b52abedoc Heodo
2020-01-29 03:03:266d72c1be3cceb805742428eb4000d1cf3844b8ed260fb71e89c621d97c4a0c47doc Heodo
2020-01-29 01:43:19c5b333f57b6a77143f6ba5eeecc8a8d74cb86ec487e5b251980e2b56bf531a47doc Heodo
2020-01-29 00:59:06e1f1b232a04980c6014248b22ea858ef02201531a0b4ce425e9235e5ad3a527fdoc Heodo