URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nanogeek.co
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-29 09:12:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-12 01:20:26 65.108.19.62server.leapdigitals.co.ukNot listedAS24940 HETZNER-AS- FIno
2025-11-02 22:11:57 185.230.63.107unalocated.63.wixsite.comNot listedAS58182 wix_com- USno
2025-11-02 22:11:57 185.230.63.171unalocated.63.wixsite.comNot listedAS58182 wix_com- USno
2025-11-02 22:11:57 185.230.63.186unalocated.63.wixsite.comNot listedAS58182 wix_com- USno
2025-04-27 13:53:18 162.55.29.176server.leapdigitals.co.ukNot listedAS24940 HETZNER-AS- DEno
2021-02-23 14:35:32 5.189.150.241vmi988134.contaboserver.netNot listedAS51167 CONTABO- FRno
2020-10-29 09:12:10 162.250.190.101engine.leapdigitals.co.ukNot listedAS26832 RICAWEBSERVICES- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-29 19:00:04http://nanogeek.co/wp-content/3ezrNk5Yss0WD8Jwt...Offlinedoc emotet ext epoch2 Cryptolaemus1
2020-10-29 13:34:18http://nanogeek.co/wp-content/3ezrNk5Yss0WD8Jwt...Offlinedoc emotet ext epoch2 Cryptolaemus1
2020-10-29 10:06:10https://nanogeek.co/wp-content/3ezrNk5Yss0WD8Jw...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-10-29 09:12:10https://nanogeek.co/wp-content/3ezrNk5Yss0WD8Jw...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-29 15:33:3575df04fe2bbfe95af6c2ff3ad6beb372645597b0350f6cc16f995a09e27da829docHeodo
2020-10-29 15:27:2775df04fe2bbfe95af6c2ff3ad6beb372645597b0350f6cc16f995a09e27da829docHeodo
2020-10-29 14:57:58134e4b929d0e83768f3bad032abd87bd8d004dd2a7256fb9ff9d4bfa9f29e5fbdocHeodo
2020-10-29 14:56:245edf42ab917e99566d6904b93308695efb66e834390a35fcdc05d184cbca6ef8docHeodo
2020-10-29 14:37:422d52e6dff2839f2f2b4c4e01290c96b9b924d0e8f276847481da31dfea122414docHeodo
2020-10-29 14:28:155ed767510e9b2630ac3c6ea38470821c0c85acaf712cb5f45eddd5f6e0fcdc17docHeodo
2020-10-29 14:01:5729808c9db3a80e9ed46d4aecbe478dd8e57089d7e2977c916421cba71b0d6c42docHeodo
2020-10-29 14:00:419e8de88a3e7aabf6248a4a17e376f37501cb0437cf9127abda8283191eee760adocHeodo
2020-10-29 13:47:145db58ed4308eeb76f9c66c885d4f1b53530d6c42eac9d755e67bf41989094087doc Heodo
2020-10-29 13:39:10d285ea691c4ccf35668c9aeb1166e56bea695d95174c38282af932e47157a46ddocHeodo
2020-10-29 13:11:30b770e53d7a44c680b7ce2fc81e13b5de570dce0b57c587442874b3c5f6f94d83docHeodo
2020-10-29 13:09:07e134359bfa4a04bffabf20a6522d2a4c8d807619578853ba0387aa395b6495c9docHeodo
2020-10-29 12:49:25ac100d3e7a4985580d980cb7dc26527d01d4166b7bc89405dd21918ae03f7faedocHeodo
2020-10-29 12:39:40c77bdf30a9a94eafd3718a954bd79a8e9ad3b32761d6c45ae1b79245df7599bfdocHeodo
2020-10-29 12:19:4993ef9ecf091dd0a2f463f8b10a73d301ad965547315b43fcd5c1a4995c513525docHeodo
2020-10-29 12:17:4193ef9ecf091dd0a2f463f8b10a73d301ad965547315b43fcd5c1a4995c513525docHeodo
2020-10-29 11:48:488e33cf2204f19a828e1018b6ab9c762d52deb1ecd43a920491561fefd654086fdocHeodo
2020-10-29 11:48:378e33cf2204f19a828e1018b6ab9c762d52deb1ecd43a920491561fefd654086fdocHeodo
2020-10-29 11:36:31854dd0441e71fcb4f3237e94d7a738e26a8f320c3e5becd6b94aedcf7237eb09docHeodo
2020-10-29 11:36:29854dd0441e71fcb4f3237e94d7a738e26a8f320c3e5becd6b94aedcf7237eb09docHeodo
2020-10-29 11:06:150ecd1fc385ec00c604b5f5f04953a2a13067c7e7fb0066c32e90c706e6a5826fdocHeodo
2020-10-29 10:58:043a1dd7ec119b96ea68facb223082a398ff4c038e58e7d166c80d7a7d4a3758abdocHeodo
2020-10-29 10:31:462427ee3cc0798fcee02c718a1fb58d735d9cf3b0ebd9bb10c14cb9326bb5e489docHeodo
2020-10-29 10:29:328e812f35e13e8d4d2d376ab456fb4335c9468ba58bb5a4bc7fdf14c959388f6ddocHeodo
2020-10-29 10:15:461e63648100763f7fe5822fa5fedd5b5b9c87d1bca425b6745c236e3bff92bd0cdocHeodo
2020-10-29 10:12:31371a442d56b47bd24ec601a710beb116a75f09be269d0a2e18b29d6fe0927bc1docHeodo
2020-10-29 10:06:10a943a1b78c2ddb8ea536ad08b2eaaec624c324079322f272f1e1a319b5603a28docHeodo
2020-10-29 09:52:43585ab6cc0502c04dedbca9318f5d7d278050dcfbeb477a09e8fee5b66916e38fdocHeodo
2020-10-29 09:31:2738df7a8d7d8ddeec4905b01777148222f208d5030b7a44665b5fdafb5bd9ff19docHeodo
2020-10-29 09:12:0972e4ad0a1b83a8af4bffff0b32b6f8b9fe9680a323457b9ae5b866c9cf789ca1docHeodo