URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: llo.eiwagggg.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-12-28 06:32:08 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-19 03:17:34 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-09-18 14:34:36 172.234.26.236pebble04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-03-08 15:42:00 207.246.94.159bibledude.tempurl.hostNot listedAS20473 AS-VULTR- USno
2022-12-28 06:32:12 104.21.63.82Not listedAS13335 CLOUDFLARENETn/ano
2022-12-28 06:32:12 172.67.144.83Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-12-28 06:32:12https://llo.eiwagggg.com/files/lll/llpb1133.exeOfflineexe fabookie x64 jstrosch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-03-05 19:09:34f71d370a0e8974718206d9b19d78b280016f4ec9587a113bcde482d87f63f0d4exe  
2023-03-03 01:23:5864daef91dd501d561bdf37e0d9a2dcfacfd74f751dbb8aa2bdd4d8ebefda26fdexe  
2023-02-27 09:33:17e9556cd103f66ec6d90b8096804ccc3fd18f41db2f26355503fa8fbf5e6c3e39exeFabookie
2023-02-20 14:39:18a7dac3cfc92259067148f76b5454c75f5eece50d612ccf7678ee78d1c5099625exe  
2023-02-20 03:54:086aab7843104f46c1245b6057e5bf346febf8459d63ec2c9de500e5843907a0a6exe Fabookie
2023-02-16 06:31:415e616003629c8604e0345f7ffb0902c641438ea73ad692cf1e2100e5560a6e0cexe Fabookie
2023-02-11 07:56:12fd6c77bfc453c6270c44fcabb019eb7f183a7c8c3521e705188600ed95ef413eexeFabookie
2023-02-08 06:56:1861c7e6c115f4f051271f337205c02631b84f0c182f0e912395d533c78b14b632exeFabookie
2023-02-05 06:40:083f59d2cf23b45b7f56563e85bf818f827f2607d12661fb438bcf031550ec0ec0exe Fabookie
2023-02-04 18:38:50afa66894fc1f1d7563dc2b3686ed64975e44562d26617d90f6e73efaf80acdffexe  
2023-02-02 11:07:25ea3c6db7cd5e30d7591b57c2e3cf09533811fdf692a3c2f5293c351d67dcefa6exeFabookie
2023-01-30 06:50:2724b4317184cdd8aaa1757bef61a8688e6d13d33602b54b377240cf77f97311b6exeFabookie
2023-01-27 12:05:472ff76bc4da9995c9d30edd3b54e838fa5f3c55f5a12a8509d82b2e4837b55510exeFabookie
2023-01-24 17:26:46624b429fdaa3f9df7c3a64a2e8346a8dc4aadbcccbf1c6d9093e1ccbe62f5cc1exeFabookie
2023-01-18 04:58:1383445fe867e8da8ba4fb04394286bb230e2e2b84c11b9f300f8d51e07735ebccexe Fabookie
2023-01-17 07:50:0171cb75b1d9802ab256a74a0271b247f746f40b006d3f7b72c2721dfc6cfa12a5exe Fabookie
2023-01-16 08:28:380bfd4a96acacee615c06921953c327b2995540bb1468a560db712a374b83b77bexeFabookie
2023-01-10 07:19:39ba24cdb8e754a938cb0d6a8c0510a8eeeb6ec65638baadfc65f648b9711ca7f3exe Fabookie
2022-12-28 06:32:121e126c241e44a04aa2e834e6c6ea7c81b717c6acc4bb9128dded17f2db612fa3exeFabookie