URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mawrid.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 14:35:33 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 12:12:54 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-27 12:12:54 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2020-08-14 14:35:35 138.128.187.114simulsative.orgNot listedAS33182 DIMENOC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 14:35:35http://mawrid.net/store/Documentation/2ll2vlc2y...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 10:29:0855f8854dbcaa2832aa10f768c129ab27544b5b153c7e4ea008f7ae9444681eecdocHeodo
2020-08-15 10:00:37e3dc10847c610fb756b701eb6c9eff581d98adda60bbd1df9ca1c41f43e6710fdocHeodo
2020-08-15 09:28:000d05dd18608b5e67e89cd5c7cba41f47e7094084294b33950992871764e43321docHeodo
2020-08-15 09:13:2772af635d51194d2ab428924c2c7f51aa4a9d040e93566ed7302ed43f5fa16eeddocHeodo
2020-08-15 05:05:37df46f526192787058b497745baa89076f7a146abf7904a166ff3c88913d6fe8ddocHeodo
2020-08-15 04:47:328bcdcd0930116eda30e116f00f3d77e1d072a59c4aaa832e7c4b4c202b9ad77ddocHeodo
2020-08-15 04:37:410d12b5e9f5f5999ef15565f91ef3a2e631ca0a35c8747a808a542b2a8d8100b2docHeodo
2020-08-15 04:05:545cf289830a79e1608f952fbb47868d1791f30a61fca435f7f76c5bd33b623451docHeodo
2020-08-15 03:36:030d3465f8f227108fdc7caadec5319a2f0b0309acaf36286e782a5dd70ba7105fdocHeodo
2020-08-15 03:01:569498d65a9d2c5a65e01e599a3d146655f1f3f647168ea647285b8f27d0e6e842docHeodo
2020-08-15 02:35:392052c0368adb81017535da7aa5dae9846fb5cdd1ad7b3dc089d9c2b7152608bbdocHeodo
2020-08-15 01:03:072b1defff772c7e6448125be396c10f7b34b8bbe01d902999824e216358a78338docHeodo
2020-08-15 00:42:44c1f1f9b4ea3631f3eaf9afa4e8f27d8dcfbcbce4c65a47b6ca4778a833104ec1docHeodo
2020-08-15 00:02:532282676dff6e201e68e1817f507dbb2f5ecbeb498367e7aada3916d32e89511ddocHeodo
2020-08-14 22:30:4637452de46a62ad1ddf71058e28b5d4eb72229bb3db88c988b9460318f5b3fce4docHeodo
2020-08-14 22:13:10c837fd8744bd36a0ac0a3a3f11e102063d60651777ee888c2f3f8e83c54a6483docHeodo
2020-08-14 21:46:250cd795725b21f243b5cff4763ba2e4dedc6f00fbb694073be30aeffe8cb36462docHeodo
2020-08-14 21:37:13e8444ce3ccd2f148db30a39cc0b699662f8cf96302119a5e7f2dd0ce42a94cdbdocHeodo
2020-08-14 21:22:23025ef755f910aeb461ef36e7993d5201b78cb2aded971137274727ec619d72a1docHeodo
2020-08-14 21:00:52739eab0c4f294e4ba8fff9f685d6ab8303b5e4ab1caf9482d846afec5aeab316docHeodo
2020-08-14 20:29:504a4029474014846a17463695f4af7917f8fc4fd250f36e96bcc1964d4bce93d0docHeodo
2020-08-14 20:00:5096b6cab1427a652a35407967a7c4f7e6bb2bd63159d8e2510793ea9b9e76093bdocHeodo
2020-08-14 19:29:16b118fd8dcf97cf570ff2c1e3640e17e7fe7bd4f73b7ec79f4aac13d6b1fcca19docHeodo
2020-08-14 19:06:06048a6038219f1fd4bf7e582caa2021f5945fa6b089466b5b262d6aa6db47b1d8docHeodo
2020-08-14 18:30:190800f5f92096b10eaffebb3ca43a7a5006b931823de9002d8c9004a5a96eaf9fdocHeodo
2020-08-14 16:58:5292ffc87ebde551d6dec0d9a939474f99575856d4aa63e78b2db40680f2da2188docHeodo
2020-08-14 16:39:44b5ced3fd9b5203a48e44f9df4cb09216c9527f2bdae51b0d7ee1a53e51c12350docHeodo
2020-08-14 15:07:53f63f10c76f2b6b2a83ab7db285bcb34995b5777deb95e87bc6a9255f4e63a634docHeodo
2020-08-14 14:43:44195495f81ec757b286d74776c59ace3b717a02c3f357abc851fe9702008f66f7docHeodo
2020-08-14 14:35:3469c0f172c5f915aae73813afb13b0dea6ea5b676961d73b0b57614b1c0f24332docHeodo