URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: lang.zokido.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-02-03 16:33:04 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-02-03 16:33:07 18.218.149.182ec2-18-218-149-182.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-02-03 16:33:07http://lang.zokido.com/wp-includes/payment/a0c6...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-05 08:39:101c96dc2ca50755af8de45649f800c5bc8afe690dec831035e2c9c004447e2e63docx 
2020-02-05 00:52:15e527106b7b801d1b8e017b680f48edce29cceecc8011eca4be39c8b579f93f51docx  
2020-02-04 23:21:1072f4f5e9da9b5bdb21aca95cf1f4a1fe70f0b46f1bb06362050575f2b89bba19docx Heodo
2020-02-04 23:11:59d47c77d9d0def102dd934260114120e0bd5fd719e88480dda4a53342cc6701e0docx Heodo
2020-02-04 22:03:275c8b1d8e3d56033062c99365e6168f4a7380bcea6d31183a95b637cbd1964ae3doc Heodo
2020-02-04 21:01:1613252b1537ea524fbf41887649a605a1c78432a6ef185b632b830e1b7a9d2ff0doc Heodo
2020-02-04 20:28:3585bb5f9f21253ff54f5e3381ffbb62663ba4814c3dad89b424c7a7f96c0678eadocx Heodo
2020-02-04 19:29:182bd9c05ea5ee7438175c8719cb9dcf44f80427e18cbbf2673d6b0c588e5c71dfdocx Heodo
2020-02-04 18:28:0851de2ffabdc12f8de2065b26504dfc5b08f4450a5df357d6bb931f50029b5205doc  
2020-02-04 17:22:04c982de067a39609887af77ce1ee6464dd34d3f224cd39f4b9f882ff50523491cdoc Heodo
2020-02-04 14:57:24d54d433ab9521a95a2a8403047450c6e4e1d2c74e2d24d339d06799255fea522doc  
2020-02-04 13:40:11ed6fe435d8858c9022bba057c44d5c167d0e3be265432ec2a6e6e7566a2b14b2docx  
2020-02-04 13:25:00e287605d52fdea9dd92211be22bc069c0ae55f5352eb522b36acc093a039d5fbdocx  
2020-02-04 06:08:31f9e543d1d571fd13ac0fc5be73c92d0deabc33d912858da5ae4f32f2c71b581ddoc  
2020-02-04 05:04:36f2c7448af551115033f0d8537dfa3c58d5a08d48dc1bc8fcaae88afc4747084bdocx Heodo
2020-02-04 03:58:286bd3fc1307186158b609d41f8e621e7ef79a9d0bb813fbb540b3199a401e3620doc Heodo
2020-02-04 03:09:39c19634a7184722aedb59353d2b52bab698dc8f37fb7588021e4ec0feffd31d8edocx  
2020-02-04 02:36:348fe505fa9b560c0679f0f1c6961db43b7e48d853ec0e16e9613b3fe65f1cb101docx  
2020-02-04 01:27:31da2462d327bb486e6653409aebddb7c095d0f253436735db3d84c503072045b9doc Heodo
2020-02-04 00:54:57360ffe599f41e4707c6584c2b44f4818de16367d5f4e7f2f8f46ee374dfe7b24docx  
2020-02-04 00:19:29ace8c92e451556996c866189669d1e1366891923c167590ad67a29f46a35e250docx  
2020-02-03 22:50:337e6804aae6a6cb80304cf2e4c3ac3302a2b9a95418063cf427cbd6823b8faf8fdocx  
2020-02-03 21:42:29b5df694c837bbc541082fb7f88283effad9524b3449c71b5a02e30a4d9201261doc Heodo
2020-02-03 21:34:0847c08f6d535e40c31f26f81a4c1da6ded6252e54e8add4bdb1db033fb308512cdoc Heodo
2020-02-03 20:14:1113ebd8cc80fe0d18140b6deec77af3ee048c4ad302fd2e43a804b2aa69529017docx Heodo
2020-02-03 19:13:18c6058c7a0473c478142505a894625c010bed4cc0e0dce23a1db2e140990bb9dadocx  
2020-02-03 17:59:2706712d872dd8d2c306e13bf2c520658b4dafb36e89285af985b6af6369225144docx Heodo
2020-02-03 16:45:183bfccf265670f48debb6c84d0a9f244f5d28c8abc8d097c8accf5f88ba778448docx Heodo
2020-02-03 16:33:051d8b19cab700a0148cadd106b25f4a8b7b699eda132e1b19d8207f8c77ba01dddocx