URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nestradas.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-09-20 12:11:01 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-09-20 12:11:06 198.187.29.35premium70-3.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-09-20 12:11:06http://nestradas.com/wp-content/plugins/contact...OfflineRansomware Shade ext Troldesh ext JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-01 21:47:13067364ef7ba19e38b3dbbeba452416dd23d849ca2a8ff860560d2478513c85d9exe  
2019-10-01 19:16:16dfe57a7a0828fadf6fbcfd82374de0ef154a32268935a1e6b2c24724ec5e6b8cexe  
2019-10-01 16:37:2007288a7372424950dc7caeef00983297fb0f0736519c6578d527e0b0742e67e6exe  
2019-10-01 08:12:3194a4510a44aaec16b5020dfe20e703186580b015de406fe5e18e074114c2c100exe  
2019-10-01 05:42:32bbc13a739aa76d19b09d49581f019cb0777dd6352abe3825dd075a338853c12cexe  
2019-10-01 04:56:10fbd365095977410504e89f457c506c86dc38dff21b605bc49c550ab9c7c2a00cexe  
2019-09-30 23:03:115f2ab5aa6ecd8e18c00a62df4c98812069167ae6889a22f90d4409b42a49ab06exe  
2019-09-30 22:41:179dad6e694335678ce9fba1c3839b9d2a8bcd66fac8782f212947d47f3d0a9bd3exe  
2019-09-30 20:37:131e13384886104bd2c65f01c983e8e54400c5561a5100b242f8f7e51a78feaf84exe  
2019-09-30 18:36:14f7211cc00cd484a4be41553f9c32de3ae812a61e9eba2b52f11da9bcdf7716e0exe  
2019-09-30 17:52:108592c2f4d354b3ab4e46852098efe9ef9cc86c2ef54194be51a8596349eeea06exe  
2019-09-30 14:47:2207a1a741d46808a894b3e85a6c74433b9c3e7a9dfe0b56ee3429a63cdd195c7cexe  
2019-09-30 10:12:159d99205a99b64592022d338e632abc506ccae9c6f7b8e3fe9337272615bb9e7bexe  
2019-09-30 04:10:15fcfc258973f9a15834c4435fdee090012f5cd6c5cab77534249d4227e708a2f4exe  
2019-09-29 23:44:1368604ddd3addee6eb14d51262e810620d0a695642affde2e32ccffd947486ed6exe  
2019-09-29 23:08:0917e5af24dcf7d55c62f15ffd5dd4b4421967d0c26eb5396b9bd711cd25bbb80eexe  
2019-09-29 21:10:148c87ee78138c9ea2ff80a322689bcb86b7dd63ac65d1d5f912eb89ab342d3842exe  
2019-09-29 15:42:10d91c972affd2792641bb3c33b419f6ea27fc9c315a57fdee278e44e6ed5ee34dexe  
2019-09-29 15:17:2121355b1c3d140b6b6779234df1f9bd74cb2327ecd15c93bb11a65a9e494a9c5bexe  
2019-09-29 13:56:19d1cd17d3ec8a3016c2f66affe414fec996701cdd7eaa911d58b4a086b6194758exe  
2019-09-29 05:22:1679720b45dfca2f62ee7098f529f5b6175d0a4a085d42054c1e631d1b90b668e9exe  
2019-09-29 00:33:233f4666e161788be12595071f2a998c78e68455ba46f43f604ca1ea8c111d68b8exe  
2019-09-28 21:38:1981eb4b59c2fba0278f1eff6025c2c3a68a0e2ab0f39dfbf1207a6b22085853a3exe  
2019-09-28 18:18:1885de9029098ea3fe1e6059a0e0082989c467e101e9d71926cd5204ddec2c1b38exe  
2019-09-28 10:17:2340844c828c7d0a76c9cfbf6f15695577b3dfef9aab2e2a2f0001c74c69287232exe  
2019-09-26 09:55:1701cf8ec4e32525dd98d1a4a1ed1c6b47f727e760382fe3e96b741d222708227eexe  
2019-09-26 06:16:11429712d042889f01bde251f4808c08ff40f0a0f269701b0625930494bfc4284dexe  
2019-09-26 05:14:468041facb5ae4c3d991dcfe1a5f1bfc1536da095b86e7b2f83128e4df5d067eb9exe  
2019-09-26 03:15:21ca941b028a74551edf748531b2485d88c7bbab4b59f3564665d02c04d484dbfcexe  
2019-09-23 07:52:06198cd0c71b4972f102044d03d5124a4d84d8c7d368c1f9805ea89e8380480086exe  
2019-09-23 06:54:4112d243d51dee5b26047357ebdabdd46e4250d722aba239cb58a5d1d05f8bdf4cexe  
2019-09-23 05:59:076d0a15074126186aebd286d10afcfc30901a3ed423470e53eab4f155105dfcb2exe  
2019-09-23 05:46:009c51ed41dd76ca6271e556adafbeaab89d9555d88a1903cb17e3f2d873429f92exe  
2019-09-21 10:44:09d61ddbb3d384e234499ca50b1809a258ec92f646331cf47483394131ab3705c7exe  
2019-09-21 09:48:290d9b32f08e8c0af957405a39752ecef4b5b686d11ee978b6780915c3ed0b641fexe  
2019-09-20 12:11:06b7d5c66725810c90c16eac28adfed02a40ea845d38f7a2ff2d6020c1092f21b7exeRansomware.Troldesh