URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nms.edu.np
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-15 21:59:04 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 19:35:56 68.183.246.148Not listedAS14061 DIGITALOCEAN-ASN- INyes
2021-02-11 23:32:16 198.54.116.164server220-5.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2021-02-04 17:35:06 50.87.153.1750-87-153-17.unifiedlayer.comNot listedAS31898 ORACLE-BMC-31898- USno
2020-10-15 21:59:06 50.87.153.17050-87-153-170.unifiedlayer.comNot listedAS31898 ORACLE-BMC-31898- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-15 21:59:06http://nms.edu.np/pantologist/Scan/rjbbSQckZwLMCi/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-16 06:09:1923321ef2552ae21809b21f51b4380c31d17917222fe373a59d73500eedd99fdfdocHeodo
2020-10-16 05:50:1637c21f0f578d3c63515c63f95541e4b9415878dbcdd420e28a57ad221d118f2edocHeodo
2020-10-16 05:11:16a6091d359b405ea83e58000e282b0bd40824c64d36b4546077d786ff19124be1docHeodo
2020-10-16 04:46:1315c9b8c96805cb5eec520765084f122d2d992f581b1e885ec67341e7b7954006docHeodo
2020-10-16 04:42:04e1060cac90651fca560ea068577920a996a6c367a67862a2dff84b3fff0a0f63docHeodo
2020-10-16 04:15:403d2d1bcb7c7201d4f9d46534f05e425a076fd6e5c3ebf67709ec194a0373c5ebdocHeodo
2020-10-16 03:47:2833e9aa06794873710331ae9974a1df6d3d1529d39553dbd6a504a1181b05bbe1docHeodo
2020-10-16 03:09:30ef15c47fd8dcd129ee3580f45ef2062281b18b7410002a2631200043b9d170aedocHeodo
2020-10-16 02:35:309254602e28d8cbcf21f9c2235f5dbb7deb8be9c6b331d735643b5892b2115cb9docHeodo
2020-10-16 02:06:20878bb13d04d93f1209ba23990aef838329f86ff7fbd86d5bc6bd24da81dbf0f7docHeodo
2020-10-16 01:30:20eecadd7f746afdb1f94c964c104b0bb340a550b78887329ed6a982be9d4455f2docHeodo
2020-10-16 00:56:41476b7bf1aa229f05d66696a3bfbea19b4dd3a2a7e504e5fcecac84fe1819d91ddocHeodo
2020-10-16 00:39:2177336efe637e5b6480a97a6764e16c75424a6c44345993fbc87a04fdb1a4437ddocHeodo
2020-10-16 00:09:20da9a336d9317f48aed4cba7796f4910ab150a17642f0969e23d548e69d1b63cfdocHeodo
2020-10-15 23:42:21d1fea8b66cd1bf042820cc0c454cdbc6863c24dc54b90afec02b4b0c51394734docHeodo
2020-10-15 23:30:294be03f6e2d9d995b0c327a02bb5c0dd41b90691a3da98e256f2defb4695ef311docHeodo
2020-10-15 22:46:54609112e04613f2eed3ecfddccfd458d553696c160e8d452d24621c02e2ecd9eddocHeodo
2020-10-15 22:29:219224f06c0199e984b9bc5e2cfc12af8d8ea1d1022db475a557a1e93221030f76docHeodo
2020-10-15 21:59:06beafc1267a6858915fadf22b33115584995aae3cef104ec6cb8e2cf4e07434a6docHeodo