URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: rtgpanama.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-28 21:44:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 00:56:33 66.225.241.82priva20.privatednsorg.comNot listedAS23352 SERVERCENTRAL- USyes
2020-10-09 07:56:53 162.241.61.244162-241-61-244.unifiedlayer.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno
2020-09-28 21:44:05 162.241.60.183162-241-60-183.unifiedlayer.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-01 01:46:09https://rtgpanama.com/eviltwin_sym/attachments/...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-09-28 21:44:05http://rtgpanama.com/eviltwin_sym/attachments/q...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-01 01:46:097d2c8d827a62c501876d11119d9989eae86dc953f1f0ced0c65a9567cb616fbbdocHeodo
2020-09-30 10:38:567d2c8d827a62c501876d11119d9989eae86dc953f1f0ced0c65a9567cb616fbbdocHeodo
2020-09-30 05:53:10fc6f0ac3e38b970866e30342911b1f72bc2a028a33a093badc8c5694321d5808docHeodo
2020-09-30 05:31:3624e3ba16d86892e3c786b97123151b7a2294602a61bafd3c546475d0597a2a37docHeodo
2020-09-30 05:04:43a9b4569007c2822d7d717a8ea3a4e3a496c52a3f2011519ca3c4dd5e42011465docHeodo
2020-09-30 04:34:4209920ec2c5029cdb6177cee45414e34e9307a6f40548df1ba80385c44cfcc613docHeodo
2020-09-30 04:10:32a1cbbf8abb7c17079dd727968cf72dadead6f70a04ffc9f51b29860c9a8d4801docHeodo
2020-09-30 03:55:373d322e72fd831b7624674c0a9ed650c75bf0cf2d05e5c2dcf7746ee4187260b3docHeodo
2020-09-30 03:24:085b04551305572c828c0ac8143249ef7e94223b0fbf7d12b43f77c4e3da8bda45docHeodo
2020-09-30 03:01:3342c1f3bb9e1fae138c02e1447a93ea34c9c4859fca0078bdd3ea01145c4ed12bdocHeodo
2020-09-30 02:38:141854226276e84dabaf5ceaefe8e33cd56360b60752eef6ff1a0e8e1657931e53docHeodo
2020-09-30 02:17:20797ac0be9b6e1c912dab41fdf6c487642e027c1a24c2a6510ee3a1a326ef7bb0docHeodo
2020-09-30 01:54:52aabd54aa244d3a19daa025d685a63495581f02a35c44e11bdb76ea7bbf7360badocHeodo
2020-09-30 01:40:508649c9f23563646d5b0033bb729307388ddb4396da639cbf0385c08ec0a01cffdocHeodo
2020-09-30 01:16:55d56585c6e4a0ede125061be754c5a0c9b45728232d4c61937ffbc047df3aae30docHeodo
2020-09-30 00:59:30ff1650382e69268384234b18f44e36d54c6f3dbadfd3a0ef497e97729639a6b3docHeodo
2020-09-30 00:35:0375f032ed1b4c5d9738c4ebee1d878f1fe5307cba5c43dc44ce2443a640e7fb2fdocHeodo
2020-09-30 00:08:53587adcb5768ec9aa8b3be79e9ea740bc5052b9d0f09d4b2854fac3ff667edd4cdocHeodo
2020-09-29 23:48:17d6baf92252e2e3e673077f1cea8fc4bf0e240f4383dffc91c53d88857ba5fdf7docHeodo
2020-09-29 23:34:195a9f82efe64ed654c3bc8be5822ab7e6cc987624f9b90222d1ecac779b7d2347docHeodo
2020-09-29 23:13:44fbdacf9e30368d59414b52f459d935964b7833d6d8467bf0eb4ccfa97f71e4d6docHeodo
2020-09-29 22:59:58a863d09af176344fa94c7820a54398bd505f2ee93f7f66a6f05d3e60b71479ecdocHeodo
2020-09-29 22:57:1491d4d101c3e8a665106bb48847dbee3791e2a9a04c0adb2f363ae7767e463337doc Heodo
2020-09-29 22:34:3476d3bae4ebe683a5d3ff0d90971119c287a3acbab073e28b979ad7eaa60e37bfdocHeodo
2020-09-29 22:18:14a6f13db40e3ed06a80aa775c78382c22282019f54c1f646ad0cfd78ffa13bfc8doc Heodo
2020-09-28 22:25:4017d5a70293fb25971975ca6e3db5b2c8ab64a4ce026604b60278b18d01c0224cdocHeodo
2020-09-28 22:04:37fb750c257e518602c4a6384f5e206558a523d360ef67037ec095446dc04034fedocHeodo
2020-09-28 21:44:05929d7e6048f9e35070989f784268013a55e08fca900478f5303eb8255879e5c5docHeodo