URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: meert.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:34:31 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 22:01:26 103.169.142.0Not listedAS209242 CLOUDFLARESPECTRUM- AUno
2021-12-03 16:38:54 52.213.114.86ec2-52-213-114-86.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-12-19 06:49:07 185.182.56.216vserver39.axc.nlNot listedAS48635 CLDIN-NL- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-12-19 06:49:07http://meert.org/cgi-bin/DrjIA/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-01 11:16:19f10052e10c319749ccd6aead272df3e831e4d4224a32ac589e1a577db38e2b70exe  
2019-12-20 03:01:58b9df29fbee79903dfee1f016e0b5dd827d47e34c41aa1162040aa3e61f6a2d33exe  
2019-12-20 01:01:0669ed4bf7095c2d6d34586b85b2560885dd9511b4d7d6a9bfe22afd0f2bbece5dexe  
2019-12-19 23:00:01d52c3376c1b55909f85457450804318ac8962268592d8b5aab8999c8ae16a06bexe Heodo
2019-12-19 21:38:424cae3f1eff35915a02123b4dea80da4bb144f6dddb7507d35bcaa912424ebad2exe Heodo
2019-12-19 20:57:4443f2d883012acd85d9e323eaef569d9bce412e36e0302cc94a62862c3e6ce311exe  
2019-12-19 17:49:12087bebb1c762507b7f968943f117cc57a7e12f57f4817876ec88d2b5620cc2e2exe  
2019-12-19 16:59:36e584a810d9862647ca6ca6a0cfd5b2780957301f36b450d15f5908312ac91f66exe  
2019-12-19 14:58:30b2e73a8a0617de9dfbcdf69f031ac91e4c1a53d58217e04dfa85bc0997273245exe  
2019-12-19 13:43:29026c02ca98371d7d8f0e5127034064f3bb70410340cb0f1f2d7e4fc45b86a33dexe  
2019-12-19 13:24:38b00620fd0470068d3709c5cd6e78e93f543317943a84265edd4cb74ff018c83dexe  
2019-12-19 12:39:1649947961c69fc1c2d7709c73f02ef20ceca55fa60028d871c796d80a4cfc06fcexe  
2019-12-19 11:04:16f5085366e761c1d60d3c423ea34a455a877fc9e0019915c43bf905d9a5273d5bexe  
2019-12-19 09:48:1296977039f2a2efc2ec8a9fc7cc6e3a0ea908bffb3bd8c439540a50315ab95078exe  
2019-12-19 08:49:11cec71363ef6333d5b02bdb99ca4122c9fa12bdd097358e92a9b572c01d5fe19fexe  
2019-12-19 07:42:21976be839990f7bd3c5c87d25087e8a69461c77f409320d9e06abd5b9b3d6379aexe  
2019-12-19 06:49:075af8a65ab2ade1f7bf67f1ccd7825963db34bd93c8e1fa97144aab0bcc42790bexe Heodo