URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: loginbr.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-25 14:04:33 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-06 01:10:31 187.1.136.141web15f45.uni5.netNot listedAS28299 LWSA_S/A- BRyes
2020-08-25 14:04:36 177.185.206.96Not listedAS28299 LWSA_S/A- BRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-18 15:54:07https://loginbr.com.br/help/parts_service/BNLyQ...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-16 15:36:16https://loginbr.com.br/help/OCT/Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-28 07:48:05https://loginbr.com.br/help/LLC/vig98m6i/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-08-25 14:04:36https://loginbr.com.br/help/204795/z00pjei19/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-18 16:34:23b2bff83e324b221fb399d81c45adc6aa217cf5c97c2b7cacd5d92e8fb8757373docHeodo
2020-09-18 16:14:215ccd67236c37294b1d0433a19bf424554de4595df95a856a15610b947ecf2232docHeodo
2020-09-18 15:54:077f9a58c15ccb78968557ce3d1a009c37718ab6739a1b09484c91e624c4dfd939docHeodo
2020-09-16 19:04:399ca5390e9af21757dc77575f56e9d0528c527843951ae719c3aedd2d8680ce7adoc Heodo
2020-09-16 18:52:39d4d482bd99e2f75b977c3fe22ee3df44c1e3758bd61f0636d31c1e35c2d38be6doc Heodo
2020-09-16 18:22:10278fc88598a0bfe49be55465fdb975272c6315e3845d604caba7631cc5f32595doc Heodo
2020-09-16 18:12:446ffa316248fda88118682551c3b421820281e25578cdfb9a13e6457f174d7ba8doc Heodo
2020-09-16 18:00:434254483388cd90e041291de79b3a3d26456908113cb0b2957401b5838c949c38doc Heodo
2020-09-16 17:17:434d88090314c39059da536bb37270cdf7ffadeeda4ea768b55dcb9f2b807586f4doc Heodo
2020-09-16 16:40:479c7a17b3e9bd6913701b7e8dac9cf2408ec57752e2c2515ba3e1b917fe40659ddocHeodo
2020-09-16 16:05:013cddfe22684c82c3eeeb0d3c0c8745719dcd417db42c4ea6774c9a10d1a88f3bdocHeodo
2020-09-16 15:36:15962d453203d41ae26badcb1083a24aada6ccb51ae5ef7a416d850a0b8cee6c90doc Heodo
2020-08-28 12:58:13f49d9546a53d5b00619acd8dd32985c7475d25628ab997d7f6160250372fb2dfdocHeodo
2020-08-28 12:37:21d1511a600b9d22d7d714df89c667ab913ccfe116fad6aa3759320416e83f6e23docHeodo
2020-08-28 12:27:170cd591e888f747fa51f114956af6c01d36b7e5a352294a21ebb17438d525440adocHeodo
2020-08-28 11:55:52c4cda086323512134f845db4fcbec97b3eef21782d3378e21ed8e054886dc2ecdocHeodo
2020-08-28 11:35:06897badf4396e30453715e24d47447d219f4fd288e60ae52935136278138dedcadocHeodo
2020-08-28 07:48:05f35f09ee31dc9ba4c3d871882fadeeb10ed716f5a87be56e6129b111b6e5e34adocHeodo
2020-08-25 14:04:3510216de03866c86a163d074495bfd71636ac299c24a2c6f0d482a733a5582c62docHeodo