URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | roomtorent.com.my |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Not blocked |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Not blocked |
| OpenBLD : | Not blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2020-10-20 19:27:04 UTC |
| Total malware sites : | 1 |
| A record(s) observed : | 2 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2020-10-20 19:27:06 | 111.90.133.20 | Not listed | AS45839 SHINJIRU-MY-AS-AP | MY | yes | |
| 2025-05-14 03:48:30 | 15.197.240.20 | acf3b736b777428f5.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-10-20 19:27:06 | http://roomtorent.com.my/wp/DOC/8w8i3g462zgpaw/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-10-20 20:42:29 | 8cadf5fc31643a1acc9b991d110e039e7e0520e94783c61d9caf5ccb2481915e | doc | Heodo | |
| 2020-10-20 20:17:34 | 8ebe3eb8f2fc91787e217da76d31b3108744220f6cd2a5b74fc6b57c9c681317 | doc | Heodo | |
| 2020-10-20 20:02:52 | 23a9e81e5c9457c32d731feaf07be0b1d576fb91bca54fa944bf0f935fc2e277 | doc | Heodo | |
| 2020-10-20 19:27:05 | 05629606f534987dbd7a93fac7517060d5cecab4931a3db68eaa0969005b3bfd | doc | Heodo |
MY
US