URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nikolas.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2018-12-07 16:09:01 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-12-07 16:09:03 162.241.217.219box5514.bluehost.comNot listedAS31898 ORACLE-BMC-31898- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-11 17:03:05http://nikolas.com/wp-content/lFHqk-eM4EEjV6ojP...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2018-12-07 16:09:03http://nikolas.com/IRS.GOV/IRS-Transcript-treas...Offlinedoc emotet ext heodo ext malware_traffic

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-11 22:26:09b6cfe1983ff1d2fb772c8e68fcbd69f805d5b488ded023a6c13de39965af95f6js Heodo
2019-04-11 22:04:177ca4540e7f5caf44b46378c7861c9403373c7b752034f5ef7d4bc06d2c1e28fadoc Heodo
2019-04-11 21:45:17e2a11a63b4671b0f5f73973dd064e0bac6e5b79ccafef064488da5a3b885146ddoc Heodo
2019-04-11 21:33:157712ca3ce8eaafbec596710a4164a651155ec63070955212b6c770edb7f13c1adoc Heodo
2019-04-11 21:01:244cbf340b5b3e21206fcdca35016b0d5045f2c509f982961585407c451ae2a238doc Heodo
2019-04-11 20:30:163501e4e4c86e7f0acf77d18b68f9adce40422224d04d148e27ed02578df76c92doc Heodo
2019-04-11 19:58:22a5ee1d697ca24e67bbd9dead396d2fd94f3a785bd8f9969ce51e5a8cb8fe6bbcdoc Heodo
2019-04-11 19:27:08b1a6afc983ad35e8c5cae8e6ef315e43f6555983a863c141872698c9135959a6doc Heodo
2019-04-11 19:12:10d194ff91d5c737ca5fb69b24e3118a426e54b65e968824691eb9bd463f6cc4d1doc Heodo
2019-04-11 19:04:19713f84fc17d6c37720e731f364ff47c9dee7f3142872a24d35f81b86973b3b1fdoc Heodo
2019-04-11 18:48:07181915f7fa382ade554714cab6f2819e9c9ff984d466fed79d1feab803cf50e7doc Heodo
2019-04-11 18:42:08ad23b779d4003171a8b5780144004d88e5b01c16e74b2d6ec91c2805f57e6da7docHeodo
2019-04-11 18:31:127184986780a4c1f14b49e53f064518f0c5c12b47d12a5ad687a0df344b6188f4doc Heodo
2019-04-11 18:22:1848e3f8e6c681906cd7761367509c928ac0baef0060568a9bd5bb5abe3f84f30bdoc Heodo
2019-04-11 17:50:188a1a1d1ca48c3886c2dd482907ce8981495899d7e19bb0c2e0b873bcc7e62ec5doc Heodo
2019-04-11 17:18:1891eb83248be3b3e24d6cdf4eee9eb181c117bd051d7845742a166f5654e1fe49doc Heodo
2019-04-11 17:03:04778799ba6d4bd50f09c563b1a2a92fe0bc08e451a8440f0d05d3f5d84bf0114fdoc Heodo