URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | otex.inform.md |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Not blocked |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Not blocked |
| OpenBLD : | Not blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2021-01-05 12:21:02 UTC |
| Total malware sites : | 1 |
| A record(s) observed : | 4 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-19 16:23:27 | 31.172.75.170 | 270980.fornex.cloud | Not listed | AS44051 FORNEX-AS | DE | yes |
| 2025-05-09 08:34:07 | 91.228.152.145 | hostde30-1.fornex.org | Not listed | AS44051 FORNEX-AS | DE | no |
| 2021-01-05 12:21:03 | 5.187.6.135 | hostde21.fornex.host | Not listed | AS44051 FORNEX-AS | DE | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-01-05 12:21:03 | https://otex.inform.md/wp-admin/QTMqrsIWIyh5ItL... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-01-05 14:04:09 | 74cc67c1d7468460ff1f1fa0123fc12507010fe38a0931d6aae10ff539e0b63d | doc | Heodo | |
| 2021-01-05 13:57:42 | 56107ecbd594f1c684f729d239e501bb2d1561d6a584d7ba0a0d69ded2bbbb18 | doc | Heodo | |
| 2021-01-05 13:43:32 | dec912faff311861c29da440acd2b9397c1e37bfb5be458cb8b21fcfc150d152 | doc | Heodo | |
| 2021-01-05 13:30:23 | 80fadde081a035c58538d60c3829934f50b57a18850e7506eae4157595906af0 | doc | Heodo | |
| 2021-01-05 13:20:32 | ef6c966c74e229e34f880f5df67c40fc69a57caf55d1b033527dd9c5be04516b | doc | Heodo | |
| 2021-01-05 13:12:21 | 2325bb3d4ffb081d6234ed1bca74f8662b1f85c6d27d6dec106e376590b7263f | doc | Heodo | |
| 2021-01-05 12:55:39 | 01bce41750258f3d232b9eb7fe7901a88167254f0fe956f557bb33aced7cfec5 | doc | Heodo | |
| 2021-01-05 12:43:30 | b7a15626391073fea818a17906f508b97f3ecc2657103fc17761d2868b5a65e6 | doc | Heodo | |
| 2021-01-05 12:27:13 | 755c1e87c9c3e345b5eca450c1c72e05e691421932a8d8e26048990f9cb2ab5b | doc | Heodo | |
| 2021-01-05 12:21:03 | fb98c716e390d5ee1a67d0672d65fb94afc21949fcb158f654fb6405c079071f | doc | Heodo |
DE