URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: roken.com.mx
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-04-05 20:11:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 15:31:26 104.131.126.37roken.mxNot listedAS14061 DIGITALOCEAN-ASN- USyes
2019-05-29 21:15:31 3.18.225.230ec2-3-18-225-230.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2019-04-05 20:11:09 3.16.27.98ec2-3-16-27-98.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-05 22:46:54http://roken.com.mx/wp-content/yDhfG-JdJCIkCO2s...Offlinedoc emotet ext epoch1 Cryptolaemus1
2019-04-05 20:11:09https://roken.com.mx/wp-content/yDhfG-JdJCIkCO2...Offlineemotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-06 09:10:229cded79cf1bb9165b4d0f8b996706f745cba51a96191354eedc255ba6265857fdoc Heodo
2019-04-06 08:39:14b171eceb553936eb770763dfd6115fc6f78ca8d88bc6aa2b3f660f9c5c17b286doc Heodo
2019-04-06 08:07:16f4282b6fc250485ebd045d3008195a5c3e2b385c5caaada93ea221f53326d3ecdoc Heodo
2019-04-06 07:36:200ad46f34200d42b625843e3e3f1b3e0d8547006862977766858d55fde59bb61fdoc Heodo
2019-04-06 07:05:1951f2b641b6cf6bfa3cd6b58809672cb4168eebf6ed0aebe9e96be5f98f3f9e02doc Heodo
2019-04-06 06:33:13e39863e66ab0f1bf0b8d35f2715d3de220f6bb3d0c28b68d8f14d53ed1acb7e4doc Heodo
2019-04-06 06:01:2295849588def5977986569c59b046be25deef8c7612804726ac96e53c0f1d2a8fdoc Heodo
2019-04-06 05:30:25754fab3c5efd2221471e392003a6bb547ea501c463b996d653b84ba22c030a4bdoc Heodo
2019-04-06 04:59:1448b35306314350b996c26ab3ef587663b6a008cf550a213773445a47a6d58acbdoc Heodo
2019-04-06 04:28:11ba78bac81758981def2ca13c6678d5163b3c4d9f7891555e777a3f1893eb8ac6doc Heodo
2019-04-06 03:57:15f18c7ff29f31a1495f12fb6775bf1cd1ccb6eda9658888ed85ab69cf00058f99doc Heodo
2019-04-06 01:52:1725a7b76113ae29e8734e95d16e50d8f9a3ca419866602cfba894d0c3819c3900doc Heodo
2019-04-06 01:22:15b6455ee5b79e3040cc76b88cd3004ca315cd96f2cee695ffd89c34c51523b716doc Heodo
2019-04-06 00:52:129ff546db3b05117fffcce39830d52acf2f46c8eb536ac3ca4b84e9e3eef07589doc Heodo
2019-04-06 00:24:13d1d756451258f60d10e1c46540438f9a7c9ad84bfe7b4a1cb944ae02e456d3aadoc Heodo
2019-04-05 23:52:1118d89f625ec18cbfcbfd523f09f5a3c6b2b546e6b5ac0173f2a9f8237d509364doc Heodo
2019-04-05 22:49:136daf0a0a5112444b7ffa2012fd62794d1658e21a79018fc3a69d48d6c99d4a8adoc Heodo
2019-04-05 22:24:13d72aab1ec1befb352a29892128bd8aba31531e6d965f903973fbb15bd2f71584doc Heodo
2019-04-05 21:55:09310c672343531ecc8fb2bc22b979a34f6e3c3d6c56eaad0dadeecade3e6c64d9doc Heodo
2019-04-05 21:27:08aa4dbc44304abe8aa207e31f7f0eaabad3933dccd1c3d004ab68edc87e75cee5doc  
2019-04-05 20:58:1360973bfc7ccac458d9ac4b7192a40774316b04d86cdb106b0c205d75778b7c65doc Heodo
2019-04-05 20:29:08b3ff81bf64f077e1b466d3696c3528f9c644d503b515473b16803610f240dd05doc  
2019-04-05 20:11:09e8ca6c66c79cca9404a9f6a6920ff02010dc799435381a97fd5c57cf0c3abb41docHeodo