URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: magdalukas.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-24 15:09:16 UTC
Total malware sites :1
A record(s) observed :14

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-30 07:18:43 34.120.190.4848.190.120.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-27 22:48:40 34.160.81.203203.81.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-28 12:57:01 35.190.31.5454.31.190.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-27 22:48:40 35.244.153.4444.153.244.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-28 12:57:01 34.160.17.7171.17.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-30 07:18:43 34.149.120.33.120.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-27 22:48:40 35.227.194.5151.194.227.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-27 22:48:40 34.149.36.179179.36.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-09-28 21:51:12 45.60.22.188Not listedAS19551 INCAPSULA- USno
2020-09-28 21:51:12 45.60.98.188Not listedAS19551 INCAPSULA- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-24 15:09:17http://magdalukas.com/build/docs/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-25 01:14:468a73bdca97395b9f659104c200734008fe685faff6734fc31ce0cd575090f1b2docHeodo
2020-09-25 00:55:0032e608f5734fcb68970d54ede47ece4cf463eced4316ce2fd04fb7869d2072d3docHeodo
2020-09-25 00:22:09fe2ee906d8d8678d7ec22ed99ec97b47b6bc55850eefac61f9ec622f2a049bb1docHeodo
2020-09-25 00:06:00eefd694ad7a3c1d10441452c651459410143b5ce0d56e19d39c16c1114105d09doc Heodo
2020-09-24 23:54:5230a0c59711e06c411f4e1a20c649f507a1ef69742192df4ede24d92289aee591docHeodo
2020-09-24 23:16:48733d8b10af3308cfd8ebc53724d8bcc6b47a2a8652e46f3dd15d87ab5ef7f123docHeodo
2020-09-24 22:48:36029de7c595a68b46233e28bbff65f065f8baf48178b6998928ebadafb8d3368cdocHeodo
2020-09-24 22:38:0346996b6a7e3fb5f718730ed86bbfa6e57792d961db1bd60352e17703af38134edocHeodo
2020-09-24 22:21:27b77cd70861b08e97e103e926c367d38fb18c9588b70cce776fab3c7b9888c31cdocHeodo
2020-09-24 21:57:54c4fc9ec7954c1bc71dc415464f2813e6151dd7c106526dfe3aa8d97ec3b8f9dedocHeodo
2020-09-24 21:42:34b9211d9fdc8cf882f69237754fd387b887bd80a07f2abe12c2f687dd04ec3ad4docHeodo
2020-09-24 21:16:45d25aed1074e6086a1e8ee4fb6885c8accddd96469d110e343f36d2e13aaebee2docHeodo
2020-09-24 21:00:3302ef96f4a3c715053acf327bd61196658034d30887f0bb1a9769e4bfedfe0a41docHeodo
2020-09-24 20:46:23e8920178a654a05f4d58c417ab5df624d778f70deb69ef450e79c6511c72e55bdocHeodo
2020-09-24 20:27:567ef0c540f3c535a1789981bcbe5e3dd3ba3809e8d6ef1a9745f00ccd018db031docHeodo
2020-09-24 19:52:51e065d7a8263671a9d5afd66e671dd1d8cb12ccadcde39686f63b37c411d977dddocHeodo
2020-09-24 19:34:199c92b09435e053ed7b07f0d33360b840b95e0bbd64092e06bf09020307e84b9adocHeodo
2020-09-24 19:02:488ffd33471d8e180b9ff498aaa84ef11bf50e846252c62e42e416fe68c1698d06docHeodo
2020-09-24 18:37:07df802c906676713581817048e135afe20200029ac5ff1c840ba82b5bbcda75cadocHeodo
2020-09-24 18:16:5632bbcef052b442f62a2fbb0c5dad498dcb779148f31f2e51d4f7a38245024f8edocHeodo
2020-09-24 17:54:018b90ba12e56de7cf064ee54d147a39175bea9149cef12b45b5fcc04b43808d9cdocHeodo
2020-09-24 17:42:3643204d25bd95979baf79eb7193cc7466a0fd658e87c94d666d71b88ac6979e88docHeodo
2020-09-24 15:09:17460d4f1fa3c90d50ae0a56c6c4c26bfcd3d3d22829baef98b7ea3e9b451974fedocHeodo