URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: legalserv.ge
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-03 14:32:01 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-05-03 14:32:03 217.147.225.112host0.domenebi.geNot listedAS20545 GRENA-AS- GEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-05-03 14:32:03http://legalserv.ge/jkmoxed/u2azqyjxeqshkjeuxzj...Offlineemotet ext heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-05-04 06:52:219547c3f40f790fab370c5620245c7736282c4931b82100c519746d8f3b072bd8doc Heodo
2019-05-04 05:19:20b5943cddfd81d8e13ebc274ab01b43b892335e54df790fbf375dec25d70437a5doc  
2019-05-04 04:33:173b7b28b3da34f41ddbd1a6ccfe94bb0726c1d50bb42ca83b48db7fb0ca542ce8doc Heodo
2019-05-04 04:00:183d27988d2bf5995fb39453cf9a94fd9ab6319ba0ffa17f3cb3b8e8583cf2327ddoc Heodo
2019-05-04 03:13:155354f08d420e5f3b9e57955862ebe8414beccf3871d49e4283ad1a37a5757f8ddoc Heodo
2019-05-04 02:27:19321e1dfdb20d4f1a378472a4b3055a9c98804173e5e0c362039c3a118ab8e24bdoc Heodo
2019-05-04 01:50:15f29605f7da73e128b8c8a3b3c984b6d2fad00a690d29fe40e88712fa1cd4c943doc Heodo
2019-05-04 01:04:20e0de872319d3b08cb7322884af7dac8f10632fec564862c9c6364ff2c01a07bddoc Heodo
2019-05-04 00:18:21e308c87030596d6f208f7166d05482820d0218e2d2f2dcb4d2b95044022583d4doc Heodo
2019-05-03 23:39:18e5aa5b51397436303dc0f190a2c8ff026d99e7c36c728ed657cd284eb62c623cdoc Heodo
2019-05-03 23:06:18ce0dd149d783089c8567d59c766017c31a84863a4bed4db476786851cf827943doc Heodo
2019-05-03 22:20:220282a70dabec4f4b6cc1f477cab7a97e23558677a0b6d8bb55f329b9719deb5edoc Heodo
2019-05-03 21:42:13eeec0046cd334722d51b9db31e8c18d1d6ace4246c790bbbc311d553c2f3ddd4docHeodo
2019-05-03 20:56:14652704b888af5863f0257488f71983c3e23f71e3911227f79673a42bc0106331doc  
2019-05-03 20:15:13713731afc7b088f533618af3af16111a8d182496ab0fc2964a575fa5dd5152efdoc Heodo
2019-05-03 19:41:11db18c4598bbacd610a58daa6caae5b9cf0dee2994ab5a969e81ffb0dd5f5a3c7doc Heodo
2019-05-03 18:54:09d357263af9dbbba4d29f2dfe47d9303c020b883f1cc7cdd24390e744c8d5c3eddoc Heodo
2019-05-03 18:08:17e9e43ab26026d27b320558c640d84a267905da08b8b0ae46f170fdd6a8f52f68docHeodo
2019-05-03 17:21:0847d5b493497550fbfa7b76608e82b40b7432ec6fd0efd5b162d1901a189133f9doc Heodo
2019-05-03 16:35:0744a9ec9139184e5516598903e348f4d7b01e982c020934dc2cc03d60e0f7f02fdoc Heodo
2019-05-03 16:01:1379b6f593af071528bec7bdf1e1dc916bb1fb622dee27050b56b399c55c654cf0doc Heodo
2019-05-03 15:24:07d1c30d524c0e13638c93c5d6c708e318d8e0ccef1a50929c804da51efd3bbb8cdoc Heodo
2019-05-03 14:32:03f029880d606aa137ede992ecafc9cb518d5e0464266b497cba4d10ddc6a6925fdoc Heodo