URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: madebyrob.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-30 12:06:03 UTC
Total malware sites :1
A record(s) observed :16

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-19 14:49:24 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-19 14:49:24 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-10-18 18:55:43 104.21.16.195Not listedAS13335 CLOUDFLARENETn/ano
2025-10-18 18:55:43 172.67.215.147Not listedAS13335 CLOUDFLARENETn/ano
2025-09-17 14:39:08 91.195.240.12Not listedAS47846 SEDO-AS- DEno
2025-04-27 14:26:00 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:26:00 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:26:00 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:26:00 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:26:00 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-30 12:06:05http://madebyrob.net/photosbyrob.net/balance/71...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-30 19:11:17b3c476526978c5ce2f22627e47f21fdd3a16f03b166965bac3be05ca29b80575doc Heodo
2020-07-30 18:55:35e36e626e95cc4e2feb34bfba30b423f08786bde39a1ddda5fa65ce1abc18bdb7doc Heodo
2020-07-30 18:37:246013888f6a433a2c09ce1e40de20a8c59ad6b21234fea7ceee7a41df2ddaca65doc Heodo
2020-07-30 18:21:389a039540a5c66db061b1a3fb4f0e45324d5f2b48cedc6c1bf88e4b8f1b887302doc Heodo
2020-07-30 18:04:593980bc03e6441886276662410ebdae8017ceb3af1230c4464922bfc2afe9908fdoc Heodo
2020-07-30 17:48:3522f70d70bfdee342e6bb2e63626c613fe001305a03780dafd1b43a6889dbbf39doc Heodo
2020-07-30 17:30:2807e776c54df1af3395854812f0a6b7915acfa69f07c466e088eab9655d99d886doc Heodo
2020-07-30 15:59:13e44fc7d94a825e4d43a775fa247ddca6f4f8593e3605289e79eb4a8210025864docHeodo
2020-07-30 15:38:36c02e0eb20c2fc2499173394f114c843e96a7bedfb367ad2c5b83b11d32bc5e7cdoc Heodo
2020-07-30 15:20:14962a4c9cebc2543e78e0cfc5d7a7d80aeb7e6681d8096c50841ca5f650728b7edoc Heodo
2020-07-30 15:01:36ce8a5ee320c9b6063d4b5abe1ff2a16a6e9c5d1c49f4f88425e345aa8c140b7edoc Heodo
2020-07-30 14:35:08fbde268bb3b1960b075be4472b42270bebc9726fd35c46d5ccdc91c2eaffe665docHeodo
2020-07-30 14:15:494f19ba76c2453b5e8d9ce0c53afa7d743e59dd61b4c60dbef2a5ad2412d4c6cfdocHeodo
2020-07-30 12:42:12644ecceefd25470a4909b40c0d4c590ef6f5df9613ed3ed3703d2795a21930f3doc Heodo
2020-07-30 12:06:05447fdfcc30d11f2fd62e95d3664f1821b6191a0cbe600aaafeb56c56bc799625doc Heodo