URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: preinfra.co.zw
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-17 20:18:18 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-17 20:18:20 62.171.165.22vmi1287972.contaboserver.netNot listedAS51167 CONTABO- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-17 20:18:20https://preinfra.co.zw/wp-content/so/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-18 02:43:16169f03cee2b674a04eb777235895e2e6d94f82785fac8764ebb330df2bf2448ddocHeodo
2020-07-18 02:31:41ae45c36cd420955b42fbfcd33461d38830fc732624a22faa6e3f0308685127fadoc  
2020-07-18 02:17:5381cd5ce6123449ba648b0d4e9e5b254c223fbec0959ca04f739d278bb49e0761doc  
2020-07-18 02:10:1780e277e15058cc1c440200dfe3163744b701225ecedf6888dc08e9f77df37601doc Heodo
2020-07-18 01:41:071930614813330328ea07ab82811cdce5464d3cbde53b3f4efc556b6d710ea453doc Heodo
2020-07-18 01:34:03a30f8738c5c98b2de7d7eb1186fefa526d08737e091f8ea318c581c6302be595doc  
2020-07-18 01:16:05afe17af2b3879fe76b895116463f7220940640a33528a0eef0eee6d5e175d2efdoc Heodo
2020-07-17 23:44:57ad8ec7c667bb0c0c8f29d5da291048d0a7ec8f118a640c6e97788abc0ecad0ebdoc Heodo
2020-07-17 23:34:39b2d96cec3e229314dff1256d64085b45b1187f3ee72f8110cf23608d4f7baa9ddoc Heodo
2020-07-17 23:30:3961a437bbed8e3ac3a4641ce788de7880516f124ad0a3223f107e92fb0cf969eadoc Heodo
2020-07-17 23:12:09656404db090356761eafa7b73c9528cc277067a7e77743bf9eaa8d17e7b3b522doc Heodo
2020-07-17 22:59:5383f66d992e12fef5ce5f9bd4d34b909c05733fbc574d98eb9524003fd005d738doc Heodo
2020-07-17 22:52:031e1fb8134d9ede5ca2e5b740ff81ef5e76206eed5933c5c2786ecbfa2dccf624doc  
2020-07-17 22:40:50f8c49170d4bb1c283994a9144581603bc6b9fe74cdb7f60b32806e6345ed035bdoc Heodo
2020-07-17 22:29:231ca54edf6c4dd0c896bea1dcf8000035c111adb890a2d2d395489c1c3b24d6e6doc Heodo
2020-07-17 22:20:054bc9be17841664c17490eef267f70c56282b93df28e99ed18d9707915b7afbc9doc Heodo
2020-07-17 22:07:580ed6a205ad85adacc36105c44edce7d87431ff059a8227d3632aefff52781396doc Heodo
2020-07-17 22:01:570c6fdbb83539fe76c8db143e036c4eca7464535d8b900318b5c0870b3b8024a7doc Heodo
2020-07-17 21:49:4082c401148abefde60b6f557d36ae313e40d65cb3902f6d0d4e94a14308a7e410doc Heodo
2020-07-17 21:40:32e37ed35ad92d7f72dd82ba694d4ff1b2811ed68857e2402e20f46bbeebbf8b7adoc  
2020-07-17 21:23:57ea488cfef075f8314cbc01390816578b77f0f03778254e6a802d18e5e764daacdoc Heodo
2020-07-17 21:12:172bf7104daa2f9fb6b14ed29ae9754235ecaac0191bcaad03cce793808026ed3cdoc Heodo
2020-07-17 21:02:42f83e196ddacc66388f92a4e8aec132445b3cf724beb962528c9b860e82bae6b6doc Heodo
2020-07-17 20:49:36d92cb1bdecd2ac46696a43f0a13682eddfdab906ae7430887a5dfbe33174b9d4doc  
2020-07-17 20:43:35d0fd2d71c1267d3ad20bbc348b043e49ea7eda9acbfbc30e64dafb296a1a9011doc  
2020-07-17 20:32:168b8ccd4f24be195ddf2b59efcacfe6486785230cc152b5a31a5f5e217050a8aedoc Heodo
2020-07-17 20:18:192c7595169fd5112718de088c5732bbd01072fc38297c809cb782f5a5dbfd6a87doc Heodo