URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mex035.com
Domain registrar:GoDaddy -
Domain registration date:2020-01-29 17:31:15 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-12-01 15:05:13 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-20 07:21:47 103.224.212.219lb-212-219.above.comNot listedAS133618 TRELLIAN-AS-AP- AUno
2023-02-03 21:47:30 34.98.99.3030.99.98.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2022-03-01 21:52:56 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2021-12-02 20:30:50 92.205.8.184184.8.205.92.host.secureserver.netNot listedAS21499 GODADDY-SXB- FRno
2021-12-01 15:05:14 160.153.193.2727.193.153.160.host.secureserver.netNot listedAS20773 GODADDY- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 20:09:09http://mex035.com/8/nkHeia_6/Offlineemotet ext epoch5 redir-doc xls Cryptolaemus1
2022-01-20 20:09:04http://mex035.com/8/nkHeia_6/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-17 21:26:04http://mex035.com/8/iC023671/Offlineemotet ext epoch5 redir-doc Cryptolaemus1
2022-01-17 21:26:04http://mex035.com/8/iC023671/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-14 19:40:04http://mex035.com/8/9307883_616563/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-14 19:40:04http://mex035.com/8/9307883_616563/Offlineemotet ext epoch5 redir-doc Cryptolaemus1
2022-01-13 19:35:04http://mex035.com/8/XXQ77161/Offlineemotet ext epoch5 redir-doc Cryptolaemus1
2022-01-13 19:35:04http://mex035.com/8/XXQ77161/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-12 03:23:09http://mex035.com/8/715602155488250314/Offlineemotet ext epoch5 redir-doc xls waga_tw
2022-01-12 03:23:09http://mex035.com/8/715602155488250314/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2021-12-24 09:18:09http://mex035.com/8/fcgep/Offlineemotet ext epoch4 redir-doc xls waga_tw
2021-12-09 00:11:09http://mex035.com/8/plkJXpwsb2HEA3OcsOMHiiHZg4y/Offlinedoc emotet ext epoch4 heodo ext Cryptolaemus1
2021-12-06 15:58:10http://mex035.com/8/N5zALqqTmfLxaMH9DstNI/Offlinedll emotet ext epoch5 heodo ext waga_tw
2021-12-01 15:05:14http://mex035.com/huedsj/fiLJgW3/Offlineemotet ext redir-appinstaller waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-21 03:22:06345075974a633202c20da7f744cce921ae20061720ea5d27a474adcc15258a56xlsm Heodo
2022-01-21 02:58:205e0d6d63ac743de0bb942f5367315786752d13884fc04124a4b8f577a3f8bca9xlsm Heodo
2022-01-21 02:40:2819b1cb4bcc5006f6fe58960a449aa850117383b7e330f8e58035510f3be23149xlsm Heodo
2022-01-21 02:20:25c21af06b5a5f866a493669336f0c0d2d4d981faeab18708879be631c5b4f3c55xlsm Heodo
2022-01-21 01:55:2672053ec5fe9ba65c857235179e8529eec75c3aba924b386ecf41b34729d0935bxlsm Heodo
2022-01-21 01:26:598a12bb899a8c477155c5aae284050416300acb42d4b3c7da672f8e12bdee8ec4xlsm Heodo
2022-01-21 01:04:000f5d70d653951694aacfdbae441a87340e2689247cc1dc79852a86d5c8e7dd2bxlsm Heodo
2022-01-21 00:31:22aa778c3fafe2327bc81ba1c4963a5ee8354aeb750a96e8ce5f4d0392df3ddd4axlsm Heodo
2022-01-21 00:06:40442da867e6d871fad0d4e472ef48bd2ca7ac41ef601355875379056453ccf42dxlsm Heodo
2022-01-20 23:55:2497a52b68f8d7ad41ba580f95749d7d810ce3fab98d8ea92461adfee77cfa9203xlsm Heodo
2022-01-20 23:20:25782f99cf1c019d48f827fb6d29e75c842fceea0423bbddd81620697d366bfeeexlsm Heodo
2022-01-20 22:54:45200e8f491dade178eca83bd109426425ffe7ca9d4baf974a204e3835c56ceb2exlsm Heodo
2022-01-20 22:29:55aec2322328224504e216bae76697e68ec37167ececb7693615d72235044bf28fxlsmHeodo
2022-01-20 22:05:1546dadb348869cda14d38466d791ebf6c906f5ec26cc305fdca50921785f48b20xlsm Heodo
2022-01-20 21:49:416b010b591c50b68c8101ed6ffe62e903c6501ae17d1b430a904288c1391d4482xlsm Heodo
2022-01-20 21:08:395eb512924e585833ee9f0111efd74c3e3ced26d8a78db2b71d87bb6c9f684791xlsm Heodo
2022-01-20 20:53:02f3af1bae6675bb7eff796079a60c5a67ec86892f1c09053d2c25fe7d9fcee836xlsm Heodo
2022-01-20 20:09:098e76172204855304fe101c4d341e11fd6e71d1758bd187414fd1aa574da1e919html  
2022-01-20 20:09:04b1551887350e6e3d73f1d159a97f121cdb3d5b3d9f151de703c313f247958248xlsm Heodo
2022-01-18 06:10:3308ed773eaf043bb76b2576c9376b8715da6d2677f07277f709e74d4844343b7cxlsm Heodo
2022-01-18 05:49:19c837ba3be459d30d75ba53677884651f8ea4be085bfc4fd3bd3d87a85c4f2136xlsm Heodo
2022-01-18 05:37:378a1f1920da77f2aa02e0d38a92cc3f9901781484353db80e8940a750d673f023xlsm Heodo
2022-01-18 05:13:44c376ffe4c231464c947bc77a323936d8eb64d85bcd1ddcd33bcc161dae53ef15xlsm Heodo
2022-01-18 05:02:5164d41354ecd7f297389d824c38b8b00241322769011feb0c864269145fd8f174xlsm Heodo
2022-01-18 04:38:001d95f9d613b01b2dcf2ff10254cf77e3210a07f1a209855de18043c161520191xlsm Heodo
2022-01-18 04:11:58ccbc039cf33ad86b9287d5ddeb42977c7b30bdf9e8a728478f7be2f0231c9310xlsm Heodo
2022-01-18 03:41:11865dc6708076f891bd39b67e2f62ac875029eb002601a31442dcd0280c0c829fxlsm Heodo
2022-01-18 03:12:3658a1033b4773f07ae0f7257590bf372fde51e9bc60298c483a5bf53a93210433xlsm Heodo
2022-01-18 03:06:17976872f868b49d98d5e487b42d9bce61f8b05d610fb794ccacbe1ca4274d71cdxlsm Heodo
2022-01-18 02:47:08071b56a5371a11d25784a06fa995cbf3127cafc79a1da89ed889d7d35b235f46xlsm Heodo
2022-01-18 02:32:1405e2970a2d23748d20962e6a506d75a8649a4f5c2b7a0dc7723c90680659f0c9xlsm Heodo
2022-01-18 02:17:59954cce122bbc5f2db9b047be265ecb1c8dbbe04b37eaf5b2f738423610df2d4axlsm Heodo
2022-01-18 02:08:0772c3f7215a023270169a1f1a078c7df9714bdb4ab297fe3bfde6e13fbcb08c68xlsm Heodo
2022-01-18 01:31:33b977c5112c9836972623051077502437f1a49a9b8c0ae004c54d0a5685f5b974xlsm Heodo
2022-01-18 01:21:307a36780755f25695430762b1ae5759a6b789c298db856370cd0b6fd0f857f835xlsm Heodo
2022-01-18 01:08:45e961e46fe0000505f4534e036a9d1d2a59823cf644438a2733ab659e9c22988bxlsm Heodo
2022-01-18 00:48:2664b618a8cd97c14013cdb8352e6959b5f4097adfa9986a19e4a916141cccc9adxlsm Heodo
2022-01-18 00:31:04875b1c9e36a5cf567317565b0b54324da0aac7ca5c69f0c688853731da4082fexlsm Heodo
2022-01-18 00:03:442fed78e7159614ab93c099805eda683afcb3a8a0efcb75d260f19202886700e3xlsm Heodo
2022-01-17 23:50:35053bb9b9096198d542ba99d4aa0148e9af3797c17d2b874f406bf9d35749d809xlsm Heodo
2022-01-17 23:27:133205e9241e6f23942fd5b8ff4babdf561cd0022a6d42a800075046bb9e627eb8xlsm Heodo
2022-01-17 23:18:12b74ebda344b21397a7dda793d725fc98a04efae5d4cc51c8c8b6f9c253bdcb83xlsm Heodo
2022-01-17 23:01:0547c80c975818ab9bd09449d2130bcfb94eeab3b0aaaa784f5c2b56cc3d32c796xlsm Heodo
2022-01-17 22:40:07f4bb1e4f32c5444db3de6d023a3e27ecd0b948e8b13b1d54d7c725ff63dbd7daxlsm Heodo
2022-01-17 22:22:33d184b3138413ca1b9e64edc98add0851bdeec2158f3a247532593deb9cbfc808xlsm Heodo
2022-01-17 22:10:47ffb2a0ff4ab817787bae6e304ecc561e2e839edd4d20194227a194e6e8bb7b0fxlsm Heodo
2022-01-17 21:53:412350f0180119d36193a0ff0d35370865e389ebf2b910fbfa8419c7a2258a9356xlsm Heodo
2022-01-17 21:40:30d617e18915823ed787d6a6d05689a574c7286b6e0c1dccfda44870670679f7b5xlsm Heodo
2022-01-17 21:26:0441291cb4964e72d525c1d83d4e5c7d4301706940d56d42f0cc2562445e94bf4ehtml  
2022-01-17 21:26:049994c128dac8fef0f5b7a94e7379a6eb0f2b3ab28cf8c641f2fecfc11a1100a9xlsm Heodo
2022-01-15 19:37:311e26e9f4adb67bd88974704cc63f90f195aeda22dfd68e4d7eb9ca4ece0d1d63xlsm Heodo
2022-01-15 19:19:245e522b60a9aa3694fe9ff31c028d85daee8a4df5011ebcf7a44ea1661dfcf547xlsm Heodo
2022-01-15 19:00:276c4e9288c11bd332eca6874187898648c605529694355f2a945ddfe0aba788a4xlsm Heodo
2022-01-15 18:41:169324abc8d81187724943e9372969e0559ecc4f2f9f976258bd59078bdb74e9d9xlsm Heodo
2022-01-15 18:31:117bd561959295ba5aad56e198caa95e3b1165906ae704be0dea8874044e92aad4xlsm Heodo
2022-01-15 18:06:03b88760806701d31c1def6072265db39908d6ed77beb6f5d60263e8a44a46f120xlsm Heodo
2022-01-15 17:48:100045b20232732fb2c4598671f7d31824da64275a796b6da748355d3aed6af989xlsm Heodo
2022-01-15 17:37:4287a3b24117e7f39be9bcfdce77aeb0bdc0bdd0c7a6b6a508d4252d8d547f68c3xlsm Heodo
2022-01-15 17:08:5192b75d16d13348770c16fac4253587736d813b5be5efc510d13adbe505c3019dxlsm Heodo
2022-01-15 16:57:454a50690244ff1302df056492fac462a3d8604d6657f79f736e2ac9527722b4c2xlsm Heodo
2022-01-15 16:43:11501a67a818729282cb9c1bb2c8060e926bbfc3a4f351c1e11a7f43746bd8b756xlsm Heodo
2022-01-15 16:25:52100411c1d9d483e285fb39e5aa3a00df0433e418629428d90b9f9a7f9e393735xlsm Heodo
2022-01-15 15:57:3962339184034e6ad69c9803d78caf51eb93963736899000a79763942bdb54b751xlsm Heodo
2022-01-15 15:38:05f75a08a379be0f82b2a834beb70b474b6dc129824ff96a27062bcbf86bb9132axlsm Heodo
2022-01-15 15:15:40a5060366b1c36dad5149d5a828e1480f4c31bb4e3041796f014eff93e55a322dxlsm Heodo
2022-01-15 14:47:18e54c7e04ad7a623d9ef4cf30a5c8cd0eaa26f3a162d3e64bb39e9c755d8f839bxlsm Heodo
2022-01-15 14:18:36e869f1f1c15fc3635f603c1f201e91c4d4fc67e27d48fa526512922a2dfa61acxlsm Heodo
2022-01-15 14:06:48aad14c7063245eaa7cec884fdbf70fb9b202755952f6306a0a608bdae6f3f80cxlsm Heodo
2022-01-15 13:48:36af4524f85f636f8b929b04a779bee53c82da66d25d3be5a761b49d081af082f9xlsm Heodo
2022-01-15 13:15:279f593a4d8c3165dc5052f06fac8f6bc92bfe45012131fc75cf27ec63ce1f3adfxlsm Heodo
2022-01-15 13:11:00e122abd14608a2f8f418442d0c8d4db849b832d246000e22b23216b64fc5d148xlsm Heodo
2022-01-15 12:50:14b5ffff49dd82dfbb3629980f11d5976df500410b593e2c0e336aff839d69dbb0xlsm Heodo
2022-01-15 12:29:24865eb35199ab84b4cefee238e23662fcde705cdd1f89fa2e8adaeb2cd4fe13a0xlsm Heodo
2022-01-15 12:05:32e37e5c57c8ee2c0a6920611443300efbaf70d3070a387ad075818f869ca3de35xlsm Heodo
2022-01-15 11:45:1559b33acb84e8dd6d711de8a559541650a6c8ebb01fcf0db0676b1136045bd440xlsm Heodo
2022-01-15 11:37:43a7cfb5d0925102f683f4b36bcee2d840de06fcc2b4111419836559a3bdb557adxlsm Heodo
2022-01-15 11:28:0518407ac6698ef4bcd8d03f4a6e0934e0f737014d3da7b8b9f9573aff85531e86xlsm Heodo
2022-01-15 11:10:0824e6bb90d4b84c8fb6769e7637035f9154e23fa9ba28b65c5162f1d5e3b9a0cexlsm Heodo
2022-01-15 10:37:487b13a221a0b62f54ec6947573c797094f113558c1bc574b6bacdffe3061cf72exlsm Heodo
2022-01-15 10:14:39d0209810287321712b7d094dce723b36cf1fdb8258c3b3c41b49b7684f854983xlsm Heodo
2022-01-15 09:53:51676121a2e44ebeec23e8103a93adec3154731c96e594e194b21398eb0da2ad1dxlsm Heodo
2022-01-15 09:37:32460f8a1daadf1518b1f27f19ce641ba92a1ae23c0452656a068e5f46bce16623xlsm Heodo
2022-01-15 09:22:369a31fc23a27bd0e049c2fa04ef0d1f830f4183b026889fcdbea3969a2d9e4092xlsm Heodo
2022-01-15 08:58:297036b5af3647086ffe5272a4c48851f215d2faf6205b73c402acdc8f1629e8d3xlsm Heodo
2022-01-15 08:37:0244b990e0cecfdbce9a3071b4b5a23cb9bfd7fbccb6fb5eb267b229a822c932b0xlsm Heodo
2022-01-15 08:22:4062ee016f8e7b7c66a4b5ce151a267bb09faf53130401252a9f11a024c14f6e13xlsm Heodo
2022-01-15 08:05:54c8ae806c1fad8007f17331fc0ea71d000140443e4596a430f7cd80332ac3c2cbxlsm Heodo
2022-01-15 07:44:173a65abf1b08c0b1d64979d349e28077ac40c68c38fd7f2581468337a6e5d848axlsm Heodo
2022-01-15 07:18:34d90488474a115987753f7d96f2810900bd6abfc52ac05aeed67710e18e0314adxlsm Heodo
2022-01-15 07:01:15af74adf2376ab0a8fb16735d44fc3e72bc4480a91b2cf9de85cd2f9ab7fe1fb5xlsm Heodo
2022-01-15 06:45:3855609e9411de2aa6dca0995747f89cc0b89081e6722e497433da8f8d02e9a2f2xlsm Heodo
2022-01-15 06:34:52ad1b7552699a3ccef19229a0eff41da0233a54e065123850af66488c3d64c266xlsm Heodo
2022-01-15 06:15:530c68a7f1d74f3e00c0566eece5ce5825b0d3698dc7f108664e3d9892954062b7xlsm Heodo
2022-01-15 05:58:281f93c92652672883150a833d6bdfdf434bde9d61121c95b4a0b77740afa8479cxlsm Heodo
2022-01-15 05:39:262966763dc88ba44de5f3aa8ff82addad4bb4b567bdfe60a067f169098258c418xlsm Heodo
2022-01-15 05:21:040090643800e1f49a41801bb84916471fe71b2778e2cef65930e5b25b3c62fc8dxlsm Heodo
2022-01-15 05:04:5808f4133865fa8c1f178159bd516a53cdae4e3a980e273ab9cac3d2f8964d6a98xlsm Heodo
2022-01-15 04:45:550400c5d7c8ad85387bca95f3beb4be0b192f8a53aaf64f60e631ac66c60b5504xlsm Heodo
2022-01-15 04:23:435225cb80d26dfdd86adfb738e4bd1db0465b96e113af141c8cbd9d0bf4dc1e45xlsm Heodo
2022-01-15 03:58:16db676ef714ea818edca3ff4a25da38808cbec2a6d7b944a237e44ad29d8932daxlsm Heodo