URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: olympicksmedicare.com
Domain registrar:GoDaddy -
Domain registration date:2021-02-02 05:29:57 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-18 15:03:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :22

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-03-19 16:56:41 217.21.95.50Not listedAS47583 AS-HOSTINGER- INyes
2022-12-21 23:49:00 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2022-12-14 16:00:48 13.248.243.5a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-12-14 16:00:48 76.223.105.230a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-12-13 08:16:34 15.197.142.173a4ec4c6ea1c92e2e6.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-12-13 08:16:34 3.33.152.147a4ec4c6ea1c92e2e6.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-01-24 11:44:28 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2022-01-24 11:44:28 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2022-01-18 15:03:15 104.21.27.48Not listedAS13335 CLOUDFLARENETn/ano
2022-01-18 15:03:15 172.67.168.234Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-18 15:03:15http://olympicksmedicare.com/css/W1MI6iqe/?i=1Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-01-18 15:03:15http://olympicksmedicare.com/css/W1MI6iqe/Offlineemotet ext epoch4 redir-doc xls Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-19 15:01:59e65457b2422f5bf91f36b2f1a6d12469325b7b580d3d07262777b764230414f0xls Heodo
2022-01-19 14:53:422aa7efa32ff3a10578150ac14855265c450d524d03cecb15f82fa16fd696043dxls Heodo
2022-01-19 14:36:174cd7a9573d00e7cf41a66b48f93031073ed5751a546dd851d52e805248aa3972xlsHeodo
2022-01-19 14:18:55b5ca16a64ab14a0b55fc7b71a1591ecbf68a94fa5a2c2d623ee21eb29091df25xls Heodo
2022-01-19 13:55:03b3f61c413300fc14e38b6ca08af0658891e70a469784a8302a46e5f0a7d91daaxls SilentBuilder
2022-01-19 13:45:1876faa078d1f1713f316cf3d152958b0db77d8e9255dd084d902b460fb3ea97cbxlsHeodo
2022-01-19 13:34:033e5b209e2071ef8f81812b294b0805a18d118d4a7e8e5c50c967a20105581a6cxls Heodo
2022-01-19 12:45:060c4b8e3f9f33c533fb5f6f6aff0802f3fe3f9c0eaeb8bdbf82687c98c999e3bexls SilentBuilder
2022-01-19 12:33:5980eee1c94351d2cf598dc0b19d25ae8ce3898e3420bbb20c67a6e2e09a4a740bxls Heodo
2022-01-18 20:57:2895141c557c2da97c647844e7c27133e0f8ba49907e167088ad774ed57e950294xlsSilentBuilder
2022-01-18 20:46:55e944c07dcd112199b08ae1650f64104edba74b93d20e88a5b51e9869c5d43419xls Heodo
2022-01-18 20:27:54ab1cfc5403e7fd780f3dade25696cc27faeb1bee71ec075940c364687c539e68xlsHeodo
2022-01-18 20:24:104e93c1dcd947587f5eafca098b66e47c5a20fe2106e01e044249c2ecf1087a69xlsHeodo
2022-01-18 20:02:3181160f192650a9729f0015a0c97d664f747f4bd3b7c6bea6aab0b80d768f547axls Heodo
2022-01-18 19:53:05db3cdb2ac31dead6ed8c92e15387433f9d1f1e22bced252500894becaf2f2cb5xls Heodo
2022-01-18 19:31:0433c979f1db0c6fc341c654586b28b011a8b600a9804b0911fabd3b42efff8e0bxls Heodo
2022-01-18 19:24:2182886e6719904de8dd0846ae2579838e5342418cbb6b43f029f51d1d376810caxls Heodo
2022-01-18 19:02:126978c9aa20b2ed1411f6ca8336985dd7d75f115d5eabe77ffdb0be327b87c034xlsHeodo
2022-01-18 18:49:01a0e643b5d8b85b2c75c6e3b3bdbaf33851b2fa58c6453ed5dbb436bc52b18ae9xls Heodo
2022-01-18 18:35:55f46200d10671958e27b019f1501f27f33ec5c0e0aaf34b8a526f6aeb8cd1662exls Heodo
2022-01-18 16:08:45e6a55d3065b29b2634244c18d442d767860dde8b31b384e78ffa5a532f690a08xlsSilentBuilder
2022-01-18 15:50:41faeddf651c26d7da83c2fa5c8c4a79c87ed1b3485682d350b61af795687c06caxlsSilentBuilder
2022-01-18 15:34:06193d044e84f776310495eaac6c95c173ad5ddb730b53fed2617f7137b52f55b8xls Heodo
2022-01-18 15:20:18a027881e587b66a205cba9400a98fd8ad6acbff555d9e50e44062ca3954ab283xls Heodo
2022-01-18 15:09:28f2eec7c90adf3fae2715dadcdfd640c6d1205aa93b29525dd46ebdfb6dfaf0f4xls SilentBuilder
2022-01-18 15:03:155fe180908f64eddc15b778af084abd112ed95ecfbcd690dfabcda4aab7e2f9f7xls Heodo
2022-01-18 15:03:156b5b90934eeb17f5d4429434768a979538eb33b65a9585bfb7faae886d560cb6html