URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: oxahaus.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-28 04:31:33 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-28 04:31:34 162.241.157.164pymeil.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno
2020-07-28 18:45:19 204.11.56.48SBL494567AS40034 CONFLUENCE-NETWORK-INC- VGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-28 04:31:34http://oxahaus.com/igr3z-cl1v-367593/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-28 15:27:5854171a3ad4b125dc2795767c4e783e474bddf5f973b21bfaad94b3d15057b763doc Heodo
2020-07-28 12:30:100034fc70978e5e2fbd485351d863a0f1f6eb072e56cf5eac63df39bd8aa5bf40doc Heodo
2020-07-28 11:58:48814e3bf4e6588ecf751e5808d868435ef992cf6b301d534341fb90d254f91cfedoc Heodo
2020-07-28 11:37:068330eec3e5619dfe033c6d7059a8b53f1cd6319c5960f917d5b4472534fa349ddocHeodo
2020-07-28 11:15:250e447707a2cdeef876e102f3abda24f1258292d7396aa4578f55049feb5bda64doc Heodo
2020-07-28 10:36:365a1b1395bb79c4317f775809aca06f12d3425e60f4bd5b00770264fcd61ddab0doc Heodo
2020-07-28 10:32:55a94f8d3b4fe1a2990dd3bac5f9256d56b8fc49291c7fe4e5b9dff1ca9e04d00adoc Heodo
2020-07-28 10:17:231fded3892f4fe5d626ac2db13e3fa102887a58570ff4e24394e6eff607f980a5docHeodo
2020-07-28 09:55:28c006d3ae2670d993d05d0cd218a9538d9a86d7616a270ef3577ff939eb581418docHeodo
2020-07-28 09:45:440f7a1a362551fbf90a3548715a9bb55797d626eaba554963fb8a15a4fe5f0aa1doc Heodo
2020-07-28 08:07:034fc696232ad4c1214d2b3d17bcf0f268ddab6901590133a86284fd475bffc038doc Heodo
2020-07-28 07:52:0235f182246a6245227b09f3f93802700efb8a0ca75d89922a7f8ec04f38d1ba05doc Heodo
2020-07-28 07:36:16efc93a4b32e611d4d72a3dea59ead7b779e734ab7ce5047f1b22804c11e2af3fdoc Heodo
2020-07-28 05:47:05d652244433caaa17c36aac28e633467530b4f4405da4280dc2ce54de0cee1f96docHeodo
2020-07-28 05:31:150d39f230923320beb88f5bdeda5a7e91fa8120c2075accf63923d2f841c08417doc Heodo
2020-07-28 05:19:263c55a57713d1ba096109507af046d6d13e7ba7bd1827479d8c852e9d79e068dfdoc Heodo
2020-07-28 05:05:45cbdeff74fa8d111211cc49ad3ca3e9e9e3e5e59ddcebdb5e84ed2533049bc8aedoc Heodo
2020-07-28 04:45:45cab4d45d60200950fae4cd52903511954692dd72cf41a2384e20a76ed5877cf0doc Heodo
2020-07-28 04:31:34997b7506897a396b4c1e64626606dc6012bc47971998f43dfff8b8ad5b91058ddoc Heodo