URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: maiseficiencia.pt
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-03-09 10:49:11 UTC
Total malware sites :15
Online malware sites :0 (0%)
Offline Malware sites :15 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-03-09 10:49:15 195.22.8.66thebe.dnsthebe.comNot listedAS8426 CLARANET-AS- PTno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-11 09:54:05http://maiseficiencia.pt/bolton/eff/KINso7mbwsW...OfflineAgentTesla ext exe zbetcheckin
2021-03-11 09:50:05http://maiseficiencia.pt/bolton/jo/C6LtRwndslDO...OfflineAgentTesla ext exe zbetcheckin
2021-03-11 09:50:04http://maiseficiencia.pt/bolton/dec/HGcxymy3z9J...OfflineAgentTesla ext exe zbetcheckin
2021-03-11 07:31:04http://maiseficiencia.pt/airline/plane/Table.exeOfflineAgentTesla ext exe opendir abuse_ch
2021-03-11 07:31:04http://maiseficiencia.pt/bolton/bob/miD8vWpjFbo...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 13:38:10http://maiseficiencia.pt/mobile/phone/time.exeOfflineAgentTesla ext exe zbetcheckin
2021-03-09 10:50:16http://maiseficiencia.pt/who/phyn/dRfy6c09UAewE...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:16http://maiseficiencia.pt/who/mo/5xQsZfJqbJZtw4w...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:16http://maiseficiencia.pt/who/fd/6CXgDLFuVFtaua3...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:16http://maiseficiencia.pt/who/dec/PURTbhpxpyBidj...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:16http://maiseficiencia.pt/who/okb/SkawGNlw6CT11Z...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:15http://maiseficiencia.pt/who/dj/AHMxyHS2qbzyOoM...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:13http://maiseficiencia.pt/who/eff/XtFqBBthkOTq6n...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:50:13http://maiseficiencia.pt/who/jo/i8LoCecZ1I7jChx...OfflineAgentTesla ext exe opendir abuse_ch
2021-03-09 10:49:15http://maiseficiencia.pt/who/oma/VB4RuRcgkf2LkY...OfflineAgentTesla ext exe opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-03-11 09:54:05bcfe1890f9d006f55afedaefe56c8f80284138d6e26d5a2e8c20b356a8e93824exe AgentTesla
2021-03-11 09:50:05a72b5e537bb683e6f899eed4d01dc5651fd08444d2e652ca069565b388319b5fexeAgentTesla
2021-03-11 09:50:04a531d0dc3f6de444cc16fa7247c8a69aade91caff7a211cb36250612bebf19ddexeAgentTesla
2021-03-11 07:31:045e218a8b6cf31a57468b4954c81b8c43d377d9428edbe7f987dddcda3e755e47exeAgentTesla
2021-03-11 07:31:048c25bbd2cf2a15f5e1aa7a5758e964c5910a3db33cbf0b7e4b05ce08c5d332a1exeAgentTesla
2021-03-09 13:38:10f6e22531ba4f81c7cdca2c6b44a55200b0ab04cfb8480410bc4c2fc615c3ccceexeAgentTesla
2021-03-09 10:50:1675b59f0fab65f85418dbdbfe3204ef57300afb0ac3ae1ebbc916a0f146dd1958exeAgentTesla
2021-03-09 10:50:16141c2b5e463040822b46540a4ae7114e58228911f4a8899387d048915e1466cfexeAgentTesla
2021-03-09 10:50:1459ae886db69fa1872a483819cf552630f6a454afe2b81fb48cb5012db8e67797exeAgentTesla
2021-03-09 10:50:14747ee0971e16540fa80072cdcc9e28a2f3fca2303303920c802219ea64c5bef2exeAgentTesla
2021-03-09 10:50:13f002c41c789f3a5692c0657d671f279a05daf9814d5c95ca0ecff4d6b1193153exeAgentTesla
2021-03-09 10:50:12c8b1422e0faff76b67b7cdfe2e9be0ba799522e729aba5cd191b1809740a7fd1exeAgentTesla
2021-03-09 10:50:1024b40144e879cf514f53d275d142591d56019508da15ab7387a808f694f4daaeexeAgentTesla
2021-03-09 10:50:10ac510fe7d59ec0a730090c49465a16176547c16cd318f302bb4f26cbfb5f61e8exeAgentTesla
2021-03-09 10:49:145a522a09a839c118c67c9ff08e9c0a00f8ef0b34ed0f3404496e43f36b78839dexeAgentTesla