URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host labersa.com.

Database Entry

Spamhaus DBL:Abused domain (malware)
Firstseen:2018-12-06 21:40:12 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-06-05 02:30:5154.254.97.9ec2-54-254-97-9.ap-southeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02 - Amazon.com, Inc.- SGno
2018-12-06 21:40:16103.16.199.242server2.minhoster.comNot listedAS131775 IDNIC-JALANET-AS-ID PT. Jupiter Jala Arta- IDyes

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-05-07 15:44:04http://labersa.com/hotel/QahN-IMnDiZwF1TIMVT_LQzrvOcFq-E7C/Onlinedoc emotet epoch1 heodo Clean@spamhaus
2019-04-30 07:57:09http://labersa.com/hotel/9JDk2/Onlineemotet epoch1 exe heodo Clean@Cryptolaemus1
2019-04-25 10:05:04http://labersa.com/hotel/hn6B/Onlineemotet exe heodo Clean@zbetcheckin
2018-12-11 18:25:17http://labersa.com/Telekom/Rechnungen/11_18/Onlineemotet epoch1 heodo Clean@Cryptolaemus1
2018-12-11 14:25:07http://labersa.com/Telekom/Rechnungen/11_18Offlineemotet epoch1 Clean@Cryptolaemus1
2018-12-07 00:59:39http://labersa.com/IRS.GOV/IRS.gov/Record-of-Account-Tran...Onlinedoc emotet epoch2 heodo Clean@Cryptolaemus1
2018-12-06 21:40:16http://labersa.com/IRS.GOV/IRS.gov/Record-of-Account-Tran...Offlineemotet epoch2 heodo Clean@Cryptolaemus1