URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: lemep.iesp.uerj.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-28 13:03:06 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 11:10:59 13.58.11.17ec2-13-58-11-17.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2020-01-28 13:03:37 18.222.59.112ec2-18-222-59-112.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-02-03 19:14:37http://lemep.iesp.uerj.br/wp-content/2029913823...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-01-28 13:03:37http://lemep.iesp.uerj.br/3xmtp/Documentation/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-03 20:14:260d7ea58a5c9c2e9c564452f61b6fdc2c2a590d27f718ff40d270537518afb93bdoc Heodo
2020-01-30 13:51:0066ce0412a56ef126518c548a01fa047ef3c4907a4b789951cd7493f06b752835docx Heodo
2020-01-30 12:21:34382183402e627de6b3accd327ba6a8ec34de0f32f5e93e6a98d90cf2825a573edoc Heodo
2020-01-29 15:02:39135e6e64bd7742b372ada6b825319eb55fa6081a563f2bb5b8c41b146badb7e9docHeodo
2020-01-29 14:59:39297fd91043a8029b8962d475697106ba99591e11fd9a12213f50dc4df365404bdoc  
2020-01-29 13:28:17caeb63c281928fabb08a3fd9e2dc5ce013153975c7c123520486b8659e018454doc  
2020-01-29 11:58:25c39aa63290c4b66475a91f31655d381cb05d871f118ec9c5128f64d19dadd59fdoc Heodo
2020-01-29 10:26:1000c6c2872b1a02fa3f58be8e21c979ea70c7bd05b19610c2f6b3a4e3e9f062a8doc  
2020-01-29 07:23:1905d8ec5900b6d0131e9189d1fb55c81b9ab126884a7b01401a0bfea7685cae67doc Heodo
2020-01-29 06:02:02c4e98ede56a0efb2e0953087b459ba70b7bbfedb7262693870cff7eabf85c4a1doc Heodo
2020-01-29 04:35:191208b26b61ee90bf9d193b78b7be525904097e614d9afe182f39e23f28b52abedoc Heodo
2020-01-29 03:04:05bcb689d8bd11a69debf1f16db09a8d7f2d101b7fc3c8624a23b10619acc2ee59doc  
2020-01-29 02:05:11130a5ecbb3f69579a5aa81511bab80615debda2fbc9c723f1d0303fa44013a4edoc  
2020-01-29 00:12:57e52715b694f6cdc90821034038903a67121b9f80502757bdce73ec1bc3a0e406doc Heodo
2020-01-28 22:51:39d049be38a287df1e2e1ba9d2b6426c925a97ce5d71ce1ca10028a9345fc06cdadoc Heodo
2020-01-28 20:31:0069870612eec211dca6a4b7da2289fae4d1560824eeaf57088fc35b6c124c4804doc  
2020-01-28 19:22:4427e26cfe086dd78066078af4841f9a9f5f8fb96f1361cea3e68ca77dccf2040bdoc Heodo
2020-01-28 19:11:311b7bc827a4727fa1be41320c628be6adc8c15da1cd8ae42f0400a0dba37b93e6doc Heodo
2020-01-28 18:05:31b1ab99a923481add4837b0cfdd043d0cdc32ef155982d00666e1ce577377cd51doc Heodo
2020-01-28 16:46:33ded5192d6efe1543e2d2d6f5ea45781bc0c6d442bc02cd4237b93c1a261adac5doc Heodo
2020-01-28 15:15:299980032e1043354ebc75f35cbc87f2ce29c74078f007909d1a5822f6556e20ecdoc Heodo
2020-01-28 13:44:087a0271c1fcf7e9f90fef9133d78d426301b5d6ad2b82770ed8fb1468097d3102doc Heodo