URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ligheh.ir.

Database Entry


Host:ligheh.ir
Spamhaus DBL:Abused domain (malware)
SURBL:Not listed
Firstseen:2018-12-05 15:57:52

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-12-05 15:57:53164.215.130.74cpanel4.tegrahost.comNot listedAS41881 FANAVA-AS Fanava Group Communication Co.- IRyes

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-14 20:24:45http://ligheh.ir/djQkh-YYnUXWTZCFjt5L0_iyQAYZvj-9n3/Onlineemotet epoch1 heodo Clean@Cryptolaemus1
2018-12-07 19:01:02http://ligheh.ir/xerox/En/Past-Due-InvoicesOfflineemotet epoch2 Clean@Cryptolaemus1
2018-12-07 16:23:16http://ligheh.ir/xerox/En/Past-Due-Invoices/Onlinedoc emotet heodo Clean@malware_traffic
2018-12-06 01:35:17http://ligheh.ir/En_us/Attachments/12_18/Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2018-12-05 15:57:53http://ligheh.ir/En_us/Attachments/12_18Offlineemotet heodo Clean@zoomequipd