URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: prodominiospruebas.tk
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-20 04:47:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-20 04:47:12 52.117.30.9sv2.prodominios.comNot listedAS36351 SOFTLAYER- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-20 04:47:12https://prodominiospruebas.tk/presta/u3U/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-20 11:47:570950c1c3d529dab37051abba25150ef64240c7be603cffdd9a6d45666a1b9920exeHeodo
2020-10-20 11:34:274c33a32f7b5596edc2243455053730bc8edbe09408abd568233bedb30670742cexeHeodo
2020-10-20 11:00:28a7a642e2d42f253428f9f5be94732822c77ec38f0428a6ef3e6a6a4bf1d3f94dexeHeodo
2020-10-20 10:04:31d314e0d34029e21dfe8c905206207b3fef6e5259e7574cdbc4165a4064ef3aaaexeHeodo
2020-10-20 09:47:394164758ff89164824651e418520c0b5ae237e9c26eec13071a4daadb4fb340cdexeHeodo
2020-10-20 09:34:01225f391b82990cb9d31abcff53490bb6ed8b894a3a6cbe270aab3c9594bb2912exeHeodo
2020-10-20 09:09:3814b6dea37c010febb29919a8534c4a8b274ecddde9b10dff0dca10dbb37ae214exeHeodo
2020-10-20 08:46:55b49604c260dce20a680aa5e8122c268f7320c50fb104dab03470244aee078bb3exeHeodo
2020-10-20 08:25:4042cd9f0a4a1b81331b458fb22df06124810e4f1d610de99f577ca92afe69dde0exe Heodo
2020-10-20 07:56:098c1fab5716ee708b742591f53f185a29941271d79b03f9e53e432bf5380335a6exeHeodo
2020-10-20 07:14:5526726c2f070f1581de5d9ce2b6039b1a996ac828f3083a103516bdf2958783ebexeHeodo
2020-10-20 07:10:305b201fe37c607c089e2221073055eeb05474a9d28fbc1ef4298c6c985ca0f4dcexe Heodo
2020-10-20 06:43:0040aeae6c3f474cba2315f06aeb3bd2ed0b7ece5e16a7cc49a406b624823581a5exeHeodo
2020-10-20 06:13:2121ff9aceb38a04cf1be9eb7d4993696ec15f0717396b2c9795a673d08ae61084exe Heodo
2020-10-20 06:07:526f8d9dc02269f999d2a0e078694aa8483ecd4c8804d3087d600e74191e58be5cexeHeodo
2020-10-20 05:43:49d674c54f45bd1dc7e745788a05e8dc4d1fd2c0223bb0e7bf497166a1c5070059exeHeodo
2020-10-20 05:12:34e24d074cf83d9c92c4f727ee7bd72433762f21fb6e8d2715001cc673a821ea30exe Heodo
2020-10-20 04:47:12a88dbebbe3c2de49632db093b01c26ed45b686338cbc725553dca5a5c30557e7exeHeodo