URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ketoclubindia.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-31 15:13:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :49

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-06-25 00:17:53 15.197.240.20acf3b736b777428f5.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-05-27 21:10:15 92.113.16.10Not listedAS47583 AS-HOSTINGER- DEno
2020-03-02 01:47:40 34.93.232.111111.232.93.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- INno
2020-01-31 15:13:07 34.93.13.129129.13.93.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- INno
2025-06-04 10:18:16 92.113.16.38Not listedAS47583 AS-HOSTINGER- DEno
2025-06-12 00:22:52 92.113.23.95Not listedAS47583 AS-HOSTINGER- DEno
2025-05-29 05:24:12 92.113.16.58Not listedAS47583 AS-HOSTINGER- DEno
2025-05-25 14:52:16 92.113.16.66Not listedAS47583 AS-HOSTINGER- DEno
2025-06-20 13:38:12 92.113.16.67Not listedAS47583 AS-HOSTINGER- DEno
2025-06-12 13:32:47 92.113.16.7Not listedAS47583 AS-HOSTINGER- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-02-02 23:49:35http://ketoclubindia.com/flth/DOC/04jib955/g127...Offlinedoc emotet ext epoch2 Cryptolaemus1
2020-01-31 15:13:07https://ketoclubindia.com/flth/DOC/04jib955/g12...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-01 08:41:558ef3a86989c9654cd7b0914ab743459ad98702ea960612c66e331f858a791eb0docx 
2020-02-01 07:12:22da2dfdde77d319fa7d1a1326ca2ce99142a8d194e609eba08264875f442e240bdoc  
2020-02-01 05:58:3633a89c876ed4c1f54ac3ebf60cd427562e652b39263734b693beb3be9e6c67ebdocx  
2020-02-01 04:30:43ac59c732daa8085badba3321495b6415cec136aaceaf03e509380f2d2742866bdocx  
2020-02-01 03:20:38c117593f754a9dafdfb9c3bcaf46d70eda6bedf7ee811038f00aad85aa541355doc Heodo
2020-02-01 01:58:427e702ae9bf205d1285af80c992428c4c748c6c50e07571916481437c9ca70609docx  
2020-02-01 00:57:4400abab34cd75538d9fd580736dcde930d31c1c93209c7ba6fddaabbb2cef1382doc  
2020-02-01 00:11:377adf027cfbacb9e234e80ea5563bb9f7e1dcd003c562a6964c9c65524abcf3d4docxHeodo
2020-01-31 23:56:356c30f2c3483bdcdb6544377812c9a3188ebba7111f6c59b5f2c2bcee90a0cdf3doc Heodo
2020-01-31 22:25:2878189db51d029cba090eb74853c255ae01f91ae08c6215195b58fa1442c247e8docx Heodo
2020-01-31 21:18:32b2aec439ceb35e1750a11e9cbe83f427ae4e0b4b25a54500410d7eb74e31bdf2doc  
2020-01-31 21:07:249acde9478f827a67975691003ecb6ff2b7e1c319a38ba4ae94e40804654cacd0doc  
2020-01-31 19:50:222f76fbb18ce11d65b1b0e5929476bbdb89d5850d8cd2c1840da889700905d5e5docx  
2020-01-31 18:19:2360014812542949a195f1d7ff40509bcad41fd6141d0ef19c0a527fd553fe44b7doc  
2020-01-31 16:48:22c65e54d8fe1847d0d081c3058842c5b0254a355c41756816944d2fb8fcf08a54docx Heodo
2020-01-31 15:24:24dd7ffb73c534ea606a7282f2d2126ed0feac359939a237270440750165714eecdocx  
2020-01-31 15:13:071a9f37e9a56825f56f5aae52e589be9873a3db932a9834b32640a4e9eb595465docx