URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: rzd-med.kz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-21 00:47:01 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-05-21 00:47:16 195.210.46.63srv-plesk33.ps.kzNot listedAS48716 PSKZ-ALA- KZno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-05-21 17:22:05http://rzd-med.kz/wp-admin/parts_service/sw52j2...Offlinedoc emotet ext epoch2 Cryptolaemus1
2019-05-21 00:47:16https://rzd-med.kz/wp-admin/parts_service/sw52j...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-05-21 15:14:189b5dabab677cc2e0ea7c151f246e4c9591d51a04ce590fc079eb1666cc44f1b7doc Heodo
2019-05-21 14:46:197ab11f10f3e8c44689c783fa8a81a4cb8198c8c4c590ee3b8a7098cfab26926ddoc Heodo
2019-05-21 14:00:20c7fc9b8dac0a223d3dc280f2a3b161b2592304a055a1f6c9dcb385e329d44a4bdoc Heodo
2019-05-21 13:37:214058c92ce66ee6c95a068c47aa7c881305e2e84ac60d8b8f52d0735b42605686doc Heodo
2019-05-21 13:11:1772306a55d75df63a03d274eba3eef0568b5882f0e84fbc9969e85dc5ebf81358doc  
2019-05-21 12:24:1976458b834de22f4dff0ef5087e8ce583339ff73fae4018094b371b281c3bb5c7doc Heodo
2019-05-21 11:38:18e34fa966fd234ccbb5a94a53017bf89970e4e43a4fc5bfa3b7b8fe604db1f937docHeodo
2019-05-21 11:03:15689d76f9ef4bde4a011d61442bd18dc415a674a87972aaa49b737508a0930a74doc Heodo
2019-05-21 10:36:166229dffd0610efac2db5dac33334b46c30698582062a60c4f9447b3be6f14b69doc Heodo
2019-05-21 10:11:13a11b5b03d65aafe619f5d11afb319e76af74a69745027ff251be286a9a702103doc Heodo
2019-05-21 09:43:1262b58695b0d8584c62dc127ef605a5ee3abe122c846fd2cd7ae97a9d36f56a74doc  
2019-05-21 09:19:142fe4bd0c37b3fa4dceeebfdfae4aca917bc55f1b7b0d3537536be992a08f9025doc Heodo
2019-05-21 08:52:115ce31b8f154082604f2295d26d0808d348ab04dd01da6d3aefcc113b683e3826doc Heodo
2019-05-21 03:27:13739add20d743a8d00b6fc26c0e0985b6876748fe5fee82b81c62b49cb151f571doc Heodo
2019-05-21 02:40:12f3a34ec584abd1dcdad7c65782cba7b633124e29a05649adb97b0e6492f37e4fdoc Heodo
2019-05-21 02:15:18a044a40de89da2345b2ebe7ba33c7cfd51693afc8e070bbb90158f4a21be57a6doc  
2019-05-21 00:47:1455da62fdf470a46c62d6189c5f83b709563510689c96b67136c15ca6411aa845doc Heodo