URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: lib.e-hon.info
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-02-26 16:53:19 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-02-26 16:53:39 157.7.144.5www.gmoserver.jpNot listedAS7506 MAINT-JPNIC- JPno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-03-01 07:28:22http://lib.e-hon.info/wp/wp-admin/css/colors/bl...Offlinejs Ransomware RUS Troldesh ext zip Anonymous
2019-02-26 16:53:39http://lib.e-hon.info/wp/wp-admin/css/colors/bl...Offlineexe Ransomware Troldesh ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-03-13 19:47:300bdb8423ae51bfc1b73866cf26b26d85c2a4b675b2926a96fef5f647a9f970b2exe  
2019-03-10 14:08:380ff4e2ac3179c3838c153ab3ae66e37c7015cd163ba8f059648058655fcf874eexe  
2019-03-02 07:53:07fedc08db9a2b0a5a083018723cb8c1799978f0f59bc54706ecea4cbff61b7395zip  
2019-03-02 04:14:1030a912863a4a25455c82becf5e68535a155c7bfb11cd9eda1628a851b3e81d4bzip  
2019-03-02 03:43:10218f7427f5bceb4a8abb10c802f1dd50ad364eeac29a2a145a2a6801884c0b81zip  
2019-03-02 03:28:1649aa3e773b4dedd13011918f110ccc5093e42215c942ff7b141e517ac6cf7894zip  
2019-03-02 01:13:10006dd8d9786cbfa3e63a70457cf424f679c4eb7990420cb36d18abd7f0a31d50zip  
2019-03-02 00:11:11b5a8cd1e6ceceb72af3bb2d18c6152fd2d99eec63f74a8dd51149199bdf95437zip  
2019-03-01 22:37:06194c6d0eca94ab809f27f22def1784f85afd3af8036ccdd87c1fec5445d3533ezip  
2019-03-01 20:40:10722c0ae981c7f44fca879bbe275f973634538fda48c809162aa31acd80e22604zip  
2019-03-01 20:21:076402f729c712cd69ec5ac2783d60137e7d7162a4d90e84ca21d5a674baa7a92azip  
2019-03-01 18:01:080a41adf21d900e5cf43e1781e730c2e90a01dc5237faf5b908091e22f810214azip  
2019-03-01 17:37:09ab57c415a28868dd7fd1b9995b040fb0a7068905fde236e213a9b5c0cc731899zip  
2019-03-01 16:53:10fa2395f047f1bd1396c480055ff0614f0c5dd3ee62d04a9b814972fd77e7bce2zip  
2019-03-01 16:22:0690423c4992976f51cc5de7c85bfb266c7cde4f087e43abc094f78b807fa6cd3dzip  
2019-03-01 15:50:1040e5ffaa56d704f04128b4d186ad788e411bc3eb45f0a514cff4079b2608261bzip  
2019-03-01 15:19:0614e32d23344a2a1bf2fb0dacf904655a4ae26be51d382a31afd028302b65371ezip  
2019-03-01 14:51:0796562aa65f6c20288d4e109680d1218c2b774d65d3ae75dded047aaf48eaeeb2zip  
2019-03-01 14:20:08c863ee3dba45d19bc01b641c28c78377bd0b96287f07c8d89f546a49c74341c2zip  
2019-03-01 13:48:08c358637981f0f0e3dcd8f9a593e605c08d61d5f79a66c2de03b1d2fdf1c68350zip  
2019-03-01 13:16:0847dfc05a77294a1b7a4e0792d2efb460d19043d43e79f704292537377d01294bzip  
2019-03-01 12:17:070e5744812afcd5d374ef02b9e731f2c8987dd29fead51079db618fb8b12ae79fzip  
2019-03-01 11:45:11eb3623496fdd271e84e4a2bb36e40b5f2d26e1780218ed0e942d421cb98920b2zip  
2019-03-01 10:42:09f7764b19bc4d2014463dccb4ee8f61a72db3ae10241ff0ad6c66b500fbec2dcfzip  
2019-03-01 09:12:0694f02e6fed567a3c1bba0cbe56b748c60c6f8478de48416670a8c3ff0228cde4zip  
2019-03-01 08:43:0895b558fe1916917cf9e1a2c671af9ebbbc55c7fe3c81bc8b9687bc7d95199438zip  
2019-03-01 08:13:15391a3defc2f9ec2de3e163e6f5655e5580d8390bcc156075b6fbc7caefe131e0exe Ransomware.Troldesh
2019-03-01 08:12:091034beaaca6879e4c214f3eb588c59a380b48ade7bdb3e70ff00151ecd665fa7zip  
2019-03-01 07:48:08a36a47a94cf5a1e3f2758150652224a925832604d5e3f02858f718924435c7c5zip  
2019-03-01 07:28:22ce00031b75003f84a7dd308f91483e198e5666171776f0673445656f730fbcf0zip  
2019-03-01 00:40:0280febde88e93687893fee2cc8f25b95873a6c7ea673f2cd13fa0bbbab5f7d4dfexe Ransomware.Troldesh
2019-02-27 15:17:27c39f06f2a0dc565e2ed34050fe24b266c084d15cfead4f212b31f8cf386e4490exe  
2019-02-26 16:53:3973c904d658efa66370dfe8ec83a39c3038343b03e5509fa3280c85bd76790b32exe Ransomware.Troldesh