URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-18 11:39:59 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-09-18 11:39:59 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-04-27 22:02:48 | 104.21.112.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:49 | 104.21.16.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:49 | 104.21.32.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:48 | 104.21.48.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:48 | 104.21.64.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:48 | 104.21.80.1 | SBL681411 | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 22:02:49 | 104.21.96.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2020-10-07 05:43:47 | 138.197.214.43 | smtp138-unicard.alteramail.cl | Not listed | AS14061 DIGITALOCEAN-ASN | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-09-15 23:04:05 | https://natacaoisrael.com.br/lzdan99nss/v9d4b63... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-09-16 06:29:04 | 32b64c216d2a44427fdf3edfe941de9017c0ac4864f88a73a252fd4256c7024c | doc | Heodo | |
| 2020-09-16 06:14:04 | 357de09bd2572ca949d4409cad4cd61b57666b750ce0caaf51241eb4725a473b | doc | Heodo | |
| 2020-09-16 05:43:16 | b7ef6487132afa596eee56ae8e75e130b2cb003eb1f2b2a765401d651fa6a61b | doc | Heodo | |
| 2020-09-16 05:39:20 | b55bf8d95ff3a2bbad6b0601a57de2a479f99a33add787f61befe740dad11b66 | doc | Heodo | |
| 2020-09-16 05:08:41 | 5cce38afd4ebb2d6788c1c97654dacf76b69f37c87f90e32970b3b6e2e707d80 | doc | Heodo | |
| 2020-09-16 04:47:38 | 48cf59d8b7c9372f65bd02e6ca168e0651fdbcc3b7330dd22b34a5df23c384f1 | doc | Heodo | |
| 2020-09-15 23:04:04 | 5d4bee6f5bb0d02b980f21c2ae731bd12d5de2e2810058e6098fc888a7cc6f7b | doc | Heodo |
US