URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | nepalelectrical.com |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Not blocked |
| DNS4EU : | Not blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2020-10-28 10:43:03 UTC |
| Total malware sites : | 2 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 2 (100%) |
| A record(s) observed : | 6 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2021-06-05 22:11:00 | 91.195.240.12 | Not listed | AS47846 SEDO-AS | DE | no | |
| 2021-03-26 00:17:32 | 162.214.156.4 | cloud.servers800.com | Not listed | AS46606 UNIFIEDLAYER-AS-1 | US | no |
| 2021-02-12 17:00:55 | 52.74.77.232 | ec2-52-74-77-232.ap-southeast-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2020-11-03 21:22:22 | 54.251.210.131 | ec2-54-251-210-131.ap-southeast-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2020-10-31 12:09:00 | 54.254.179.168 | ec2-54-254-179-168.ap-southeast-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2020-10-28 10:43:05 | 18.141.51.146 | ec2-18-141-51-146.ap-southeast-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-10-29 00:12:06 | http://nepalelectrical.com/nepalelectrical.com/... | Offline | doc emotet | |
| 2020-10-28 10:43:05 | https://nepalelectrical.com/nepalelectrical.com... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-10-29 00:12:06 | 5a3856662e4cbb0a005a296d49553490ac6012c6d56158cdc1b75615410ad792 | doc | Heodo | |
| 2020-10-28 13:05:10 | 5a3856662e4cbb0a005a296d49553490ac6012c6d56158cdc1b75615410ad792 | doc | Heodo | |
| 2020-10-28 12:44:53 | 7c5cba3f361edbd305005728464aa36e44d98db05cc52860a979780b6036fac6 | doc | Heodo | |
| 2020-10-28 12:18:48 | 06604f59215e3e640ecafb3ca8ba3151c4ef3dbd390ac1c996becc39c0540e24 | doc | Heodo | |
| 2020-10-28 11:56:29 | ccf6b5ffa1615196b2e6ba3008606a6a4a2b16ba73ef6d1c68095343fcac2d7e | doc | Heodo | |
| 2020-10-28 11:16:21 | 586ff0aded5422c4339495e0480f86f8454c8a813252983954522edc060f6e0e | doc | Heodo | |
| 2020-10-28 11:10:16 | b2a8f6bc160f4536d6be6a9e5ef41244a96a2bf0de49f9d088c5d68853f2d69d | doc | Heodo | |
| 2020-10-28 10:43:05 | ada1b895d8a1af1461e0b32f2366bef386fa6b6d3235cf99f9838896ba16d2b5 | doc | Heodo |
DE
US
SG