URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: narsanat.com
Domain registrar:Nics Telekomunikasyon -
Domain registration date:2009-09-04 09:58:30 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-23 23:48:03 UTC
Total malware sites :1
A record(s) observed :19

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-24 23:09:43 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ayes
2022-02-24 23:09:46 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-05-05 23:15:29 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 23:15:29 104.21.96.1Not listedAS13335 CLOUDFLARENETn/ano
2022-02-23 23:48:14 104.21.86.69Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-23 23:48:14https://narsanat.com/banner/TnIhz/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-25 14:22:56885156ec4a088b318ea47bde22f77722f2ca725a3f4d3db7582840630ac7af44dll Heodo
2022-02-25 12:39:071bd33a653202210da9e53795147b7513c9b7fda2b85366920b49d6a1db338271dll Heodo
2022-02-25 12:20:494f9c71b9ec7ac3238c264f969654b9c97a1d9b0f0f23c7b9b515ab4edfd4d111dll Heodo
2022-02-25 11:50:52a69ff8f117318567a1e8cc1d2f3f05c9eea48ad3e3e65b89bbfa8e97105054efdll Heodo
2022-02-25 09:54:05b8c74d5e07afb0c7c0945b5afbdba3fdb4300c97af7dee40d8002e7c9fa232d5dll Heodo
2022-02-25 09:48:09874acd0b26d4c7aaa860c1ed46bd66ddf2974937065b7f633799d7805ff6253bdll Heodo
2022-02-25 07:45:29dcb7b72431194f6651e8d61932c4dcc0acff3f5e34275e7259c19e6b44c9b4f4dll Heodo
2022-02-25 06:45:41b9cee7f9ca7e0f0352b4f9136d6d588967e82cd280d00b53b2c259a80fda37e9dll Heodo
2022-02-25 06:22:12f38983997c52d2c127dd4790b0741796a40ac4f791d1e9df8b463f74f196fadcdll Heodo
2022-02-25 05:02:00ed93f4a2b6d7e7f3946ac552f1345fd1e503a74c0fc2eef9bdd0ecd29b07bf98dll Heodo
2022-02-25 04:19:29ad34d37081d3a2913874cada72501b1971b2a402f561387bf9a9e2a06b55e3bfdll Heodo
2022-02-25 03:38:081e5a151d4e054a0223db3875fda74ee8ae709d9f34886d5b27fe4f2e73795572dll Heodo
2022-02-25 02:35:37f18de61da178fcf49cb8b9b566a3a7cb54580294af16884b64e8dc80eaaf8a22dll Heodo
2022-02-25 02:12:123b398d954890a3b99a20591903cdd6490a31d7a3bd705903ff7edeff610182c3dll Heodo
2022-02-25 01:07:394e43ae87bbc6c04ca8239cf626d1f41683d3600aee6cdef136979a45a8e5988edll Heodo
2022-02-24 23:12:50966d614c8bfaeb4d18148a3571a6f8e07f24c381051d8f747cbe46a1b21082a5dll Heodo
2022-02-24 23:09:389f8cb6fa52081a79dba17eeeee55ab437f5ee486555e442680909fed03cd96f6dll Heodo
2022-02-24 22:06:090baf47a58d1f84a715fe94bc9a12d73051448dcf9cafb6cf997c932d0caaf16cdll Heodo
2022-02-24 21:03:43bc624a30dfcd59752461dc3c65a45bba1297b2bb5beacca28d38a1ad9344c9a8dll Heodo
2022-02-24 19:50:38a71580f3e2c86f4df89d2ef1a61122097a448b3494daf0e385a85f93d8e9c862dll Heodo
2022-02-24 18:15:342121bc6f46e55477c91e9fa49242b2f70efcd582a812f8fbcb7cc034acc45f6adll Heodo
2022-02-24 17:26:57669845ece6f7af5754f1b88f9c89a01654acff2016e0864ca083defd870d097ddll Heodo
2022-02-24 16:18:08903108102a50fd84e7a92419f9beb64314825fb14b8926b7b0913409e2275b4ddll Heodo
2022-02-24 15:23:157b36cb6a99fb6c3d16c1d76899d4389f9d76fb0a52363244301f56a68f86383adll Heodo
2022-02-24 15:04:10c26a2e75b67e78bcf5d2f9e725c998695a661899c06e343f513b06306dc5602edll Heodo
2022-02-24 13:59:2866f8f542de0ae69c5d504d7ff7727fde4005e226a3689be2ff16a9bfb74a9ab6dll Heodo
2022-02-24 12:13:159c5d774826e1afe62d5f14320a46145ceaedcf28a575b9a60f2202476a7acfc0dll Heodo
2022-02-24 12:01:25d8eb85affa2357b3848c0c16a17ae894dbf68b51de9abe389187ea4831da2484dll Heodo
2022-02-24 11:03:41816d3f921e382cd2f457086b6720fa02d20faafb70f24acd61ce5f7310516a1ddll Heodo
2022-02-24 09:04:47ad603c618b9e9c8c1e7c1f09c6b723a7135cf1663f1ce2b1314e43255ee25ff0dll Heodo
2022-02-24 08:52:38aa1e21ea89fc4f0bd077b62b626abe21c28ad07a9be20f56b93e3b3a16ecb7afdll Heodo
2022-02-24 07:47:50aed62e6665eb44d90094cedd77092467a8dea8016b006d3714c2346b0b96690adll Heodo
2022-02-24 06:10:444c9ed87617b739fa5d1db67ec159b6fe571d9d6ee030d0bd85a447aa0f27186bdll Heodo
2022-02-24 05:06:427be895f71f6074e34748ae2983a07f09d9c42c02359fbbcace6b440fa0225c21dll Heodo
2022-02-24 05:03:117e01c935b524c3e649ac8dea5f4348631a0014044f1388ed33c9cf33960dbf67dll Heodo
2022-02-24 03:45:29c34e367a2697a096645eff6c01dd297d2baff4205c30216bbfcadcca6d4c707bdll Heodo
2022-02-24 03:14:58b08628881cd391195fb3edc3d08d5e2cd37c6125e359d71fb255d3261a34e295dll Heodo
2022-02-24 03:03:04a4dc857d41b894fde2737ff1d1f7a1e010696de0f22e56d27a88e23f6970ea20dll Heodo
2022-02-24 01:53:233542b1f8af11e745c42f395cde691beadbcfe8277bb58d22c53bcfb8fcdc5772dll Heodo
2022-02-24 00:03:52ab22e3ab17f2e006fda88fbe6edca135ae9f01afd0f3e09e4d01776ee208a093dllHeodo
2022-02-23 23:48:13f56a71a05ee026bc16ed9cb695b06e736b202c9e17b1fba91f0a3285cc1bc676dll Heodo