URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: layagroup.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-19 20:24:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-02 07:13:47 18.235.92.123ec2-18-235-92-123.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2020-10-19 20:24:11 23.111.169.24223-111-169-242.static.hvvc.usNot listedAS29802 HVC-AS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-19 20:24:11https://layagroup.net/wp-admin/5h/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-20 11:29:38b267c3aa9fea4fb90669cd1792aa58034e2ea1db257bd2a3e58b1ffa42cd64afexeHeodo
2020-10-20 10:57:014607fa16f68942ffc61b73c8fb346d9c7dd5c71cb7b069d5d5bd731a461fae93exeHeodo
2020-10-20 10:15:56ee670214d5ced5a14cadc9950c2dffe46ad10f7939ff1c8e3e1326f27fde9e1cexeHeodo
2020-10-20 09:51:20363a05a9c231d57212c3d33c6d868b6630eb43150828f5d2a70ca513821c9648exeHeodo
2020-10-20 09:26:51972085d4daf39fcb0a4677849a6db9b89060ee1e8aa7b6d3b6f8599e8d352a0fexeHeodo
2020-10-20 09:09:2754a356c80fe6d67169f610e28ab8217a94cdf9ef962440ba68941aab9ae4067eexeHeodo
2020-10-20 08:29:18fc0790691e903d5e2502e442039ca2bd84a0e4c3fbad09a1bd30c5e414542c5eexe Heodo
2020-10-20 08:17:44c245f57468dd08522549b0de298f78b83c06987a10c9d4b328436a96a063b3d3exeHeodo
2020-10-20 07:52:027bf25efc608a50dfc0cee99465f7f4cca32ff8126803e326f93639536e21bfe6exe Heodo
2020-10-20 07:25:27903cc87cd59a4896b47cf88982e2e12dcd9be42c30ed760e9feb90f0b1687297exeHeodo
2020-10-20 06:54:47d45046d4132fc9ebdf2fc2b9f5db454ef4283f6115175139f6a61168b67912e7exeHeodo
2020-10-20 06:50:3105377dbfdd2ebac80315b9a352f8928f353b3a4f89eec6d085706e4e6d458523exe Heodo
2020-10-20 06:46:37d9c8b680e38d768e307d50674938f2391c4b051eb549e4c20c459a3aeb264820exeHeodo
2020-10-20 06:23:021bdfdaff6882e6505955b7e1cb18418dc6a3ed527ba68a4ac8b395f48b553ab4exeHeodo
2020-10-20 05:57:0407f9419aaa930614c1ee9a12348751283b83beda36b267c47759f79e41575501exeHeodo
2020-10-20 05:33:18d3c569425b8356d89477a62c44a4e375b5c56b7a8b63a773ad7614f518c5a32dexeHeodo
2020-10-20 05:19:39a0c95bef35c435fe6a2d0b28e9428cabecb888ab7e1982d335cf70122e0fe3e7exeHeodo
2020-10-20 04:50:19ff56a41435c97a7c0d8bead133fbc28cd19f6aeba11405689c66242e27c08c54exe Heodo
2020-10-20 04:26:00834c2b4d3055fad34023cd8148baa98740d0a888f5412dbdf68610d47e440bddexeHeodo
2020-10-20 03:53:18e13af91b444703aa59dd6d6cb133048eef0a62fd6933efdb743075cff63c5571exeHeodo
2020-10-20 03:34:41c030a5770820e72ec6e7a0835fcb6cf6ae2cdd303dbbf91df421519f8c0211d6exeHeodo
2020-10-20 03:09:168ab4237df2b5f70126e5c50628fa2f4be79796787bbc2738a46f9fdfa4c02018exeHeodo
2020-10-20 02:43:273f64dcead90f73117f932e1148c58e3351d13af3c80dd74adb32fa305163d073exe Heodo
2020-10-20 02:08:24c74bcebf2c2573968405bc2a524cf9a694dd02aa4600bba1e35a02dfee88a2e2exeHeodo
2020-10-20 01:42:2341a3c7da4ed9ef277900857141e459c387c6324ff9b00e1828b593af39167b8eexeHeodo
2020-10-20 01:31:0426f3c6d1e3237e2cbe6a5b5a83befd7714d601db4e47c78dd0dfbfe727c67440exe Heodo
2020-10-20 00:57:162de4d99edd1d7f0c31481c13ee2c2bc1a81ec5090e8293f399c3c90b96e8860cexeHeodo
2020-10-20 00:22:413bed390b72cd429938b6aa20b55ae6f58a21d4871cfc91d66c66bef6b8eab890exe Heodo
2020-10-19 23:56:24e6436cf6fa2ffb0bfe15cd974b6ec7c83312797bb26133a5046eb583ff7d2026exeHeodo
2020-10-19 23:27:27183e48a9376921f454c83901847ad7b88940ec7a325532c657ff3ec6c78b83aeexe Heodo
2020-10-19 23:14:3399da2029c09b584bb0cb9c5d067fea1d884b0d36c2de347087b3d76eded144adexe Heodo
2020-10-19 22:55:560857bbea50b4ac8a5664277b2832158f39a186158f14262be0bdcdb1e34d2ab4exe Heodo
2020-10-19 22:32:4872e45bf850a26b5726f4c98710e6dbb76a33306008375b2480f3a1b0dd121fe3exe Heodo
2020-10-19 21:58:4332dc1730ee41b8193baf7bf6e4091e2d7f9b005179c9913d43e6314e84279333exe Heodo
2020-10-19 21:47:4947ed9e2d53e3e099a354926329bcc3f3576d7539c891951ad992710dcea982c2exe Heodo
2020-10-19 21:32:213db889cfdc1bef38275e96963037300aeabefca45b4228f58b29ff3c17a2f9ffexe Heodo
2020-10-19 21:11:211968eac07e13eea409dff196ec1dec80c1e53d1f2bf9d51413776599deb72660exe Heodo
2020-10-19 20:24:11588783f33c31258e00d3126dcd26de9f81962c2083698152c09d222583fdbfeeexe Heodo