URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kulzein.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-17 10:06:02 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-08 12:26:07 103.229.72.33103-229-72-33.idcloudhosting.my.idNot listedAS136170 EXBCOID-AS-AP- IDno
2019-05-17 10:06:06 103.229.72.62cl450101x.i.maintenis.comNot listedAS136170 EXBCOID-AS-AP- IDno
2019-08-25 13:12:17 91.195.240.117Not listedAS47846 SEDO-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-05-17 10:06:06http://kulzein.com/tcsa2fo/titjckjb80xyv6xjs9l8...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-05-17 23:54:223eacfc188d4965afc5a7859cbfa609b042103c5d259bd5e06ac9b09193407e5ddoc Heodo
2019-05-17 23:28:22149491df7598cf25ce82f3d2246e38d21e4b58405a46d01f31578e74d14c67e9doc Heodo
2019-05-17 23:08:149814ca1124dadd3009d9f097df9c035c5b45a06259385522d4dce2e62b532d35doc Heodo
2019-05-17 22:22:12b8c88fb199d1b85bbdadfa6eb18900e10b45d9648d58813a3299bd78ffff95cadoc Heodo
2019-05-17 21:56:14905054a52591125d76babef888817ac143acfd554b34129b3eefc4ed3354f63edoc  
2019-05-17 21:31:15e561a0d7b7b38f5d8be3cb5e975490f9bd7c41a9a355f10f3caecae7c1266623doc Heodo
2019-05-17 20:53:114bb22eb17b6ba8363d24def18eb31eda7b7ef4b1ff153d0404c064f8cd678593doc Heodo
2019-05-17 20:27:11a00d938cc78698d9d5c30a475c012748592258d6a5b9a98c5760b6c4f818f1c9doc Heodo
2019-05-17 20:00:11ea33d741a3e4ad54074d248ce9d1d759470e56fea67ba20c18b6ea3142abff55doc  
2019-05-17 19:31:11e9e9f78904bfff3c083ac80f14b6b67eb9548de76c70c074436c5c3be0fcd6e6docHeodo
2019-05-17 19:02:11bf87ade5d3fbd0a6cd7b0f8df8ee288b908db87a97a7cfab811932b9f33daefddoc Heodo
2019-05-17 18:16:13867694a9389b1ccb6e0398fe65cfce4abb2342dc96227a70e0752f4674c31b3cdoc Heodo
2019-05-17 17:53:119dac448f232b14f9ad5c55c1b3c0fc014fc087b9169395d3da26b37505f757cfdoc Heodo
2019-05-17 17:23:11882ffbf086e84f11e69e931eecd74ed054a7e16c45edbb9a060e340411454eb8doc Heodo
2019-05-17 16:56:203b916160839e3b5e737f8942687f521056c21076e24a11edb927dde7b8384464doc Heodo
2019-05-17 16:24:101284f9d42544a53cb472449914be3819ad74ceaa4d663bcde8059cf1c9311223doc Heodo
2019-05-17 15:54:134787a29c36f495b4260c86542625bfd1f887982f9cd1cba4d9947f0bd2ecb878doc Heodo
2019-05-17 14:51:13af6fabaafa47d6413ec3d4f4e17147baf9ee8edcfec6e039aa6209704dd71caadoc Heodo
2019-05-17 14:18:24eb8b638faafccbbdb03c1f1b88330482eea048ff20467a65f7f9aa8c2fabc829doc Heodo
2019-05-17 13:40:11dec2820e893385e609fb5a1f2edeaaf7d06bbbc4fddce6499f5e034d4d8df346doc Heodo
2019-05-17 13:17:1489d028c23624816d3b1c34f28acb7ae32d92142060c5a43ac19a03a5fe041ef9doc  
2019-05-17 12:36:1228d9332fd2b107a7579b147dfac9fac3c64b4b84a900b0f7b4d9825729c02f31doc Heodo
2019-05-17 12:07:1316b073a56a77d960ee2a7c6426a4da145ca030e2fe9212df4ca41108ee86435bdoc Heodo
2019-05-17 11:29:15adda97c27fbe9249055b0af372e69209d755cfef5246f23f740a6d9e8b658231doc Heodo
2019-05-17 10:43:128e00a33702efda087f6971215696e0433ca9521b3af2ee39d2f53f780981d397doc Heodo
2019-05-17 10:19:19904a35d7f7d6e22d6002a8b8e13aa1ad04c828e7fb4148ddd393e5f1dd713a3adoc  
2019-05-17 10:06:052d702bad28921c0c1a8c3d99f090670249f16dd593d70c50127bd54e35a98f93doc Heodo