URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: s125738.gridserver.com
Domain registrar:GoDaddy -
Domain registration date:2003-12-16 19:25:34 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-19 23:33:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-19 23:33:10http://s125738.gridserver.com/wp-content/27uFeZ...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-01-19 23:33:06http://s125738.gridserver.com/wp-content/27uFeZ...Offlineemotet ext epoch4 redir-doc Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-20 06:03:45ceafd90b9d8a1fa4ba9b8f81f1c3b138570c8768b75ac1ef0d3bb126cc6d497cxlsHeodo
2022-01-20 05:44:37ef091c8fd3da5e55d7349f328528de0c8efbadff875a3a2f4d07355acc5a98d9xls Heodo
2022-01-20 05:36:56aec8e11077b3155936201e3011ee82bc5f9736383849d3070901ffc60cd62ca6xls Heodo
2022-01-20 05:19:495a1489af62963b07c39a536bcd6d0912b6e83fe7c5f14f9335660d0ec8e655ccxls Heodo
2022-01-20 05:02:033683dfe7d6ca0aca155aef7febcaf8434fe6545ad7937b3adaa2fdb2ee22fd80xlsHeodo
2022-01-20 04:48:31042d4b59153d75848595e19536f77437dcb1a52e851dfa507596159c99c74adcxls Heodo
2022-01-20 04:30:261cf09e78181661d05a2e9e41e578ec23bfc41f6cad88f9cccff741d12df4c570xls Heodo
2022-01-20 04:20:317a7a59440f9c5bb479634e84bd8b2226662e847bf2e87c1d11f476fe6ac55ca2xls Heodo
2022-01-20 03:57:341bf2fd1660e48510cf19cfb1f9211d2af3aa71753d2e3d7dd047de4296a7f678xls Heodo
2022-01-20 03:39:54f43c7941272a2ffa5252dd03a62fcf67ebcedb4eeefb62b83e282df408cbd899xls Heodo
2022-01-20 03:30:505ec87a479b9e5146659d31735fb5623b0228ae859bb32ea019a465d85aa76950xls Heodo
2022-01-20 03:04:40ea79275a76b6aae0dd672f7b56b4df776d7a1aecb5304d84f2c4aafa490159a4xls Heodo
2022-01-20 02:50:529e2f1d0f201f452c51c21d9e00eb6cffc3bbe14d90c4adbf799577dd71c296cfxls Heodo
2022-01-20 02:31:068abb9df7dbb7c37ef4298c320074b668493d97486fa893ed0ef7c33001f20966xls Heodo
2022-01-20 02:08:516870a3234a064d132910bd9014704b328efd30ac8acdfda2eb5f7d8b2670674dxls Heodo
2022-01-20 01:56:47d715a57325bd00d8e636808ccbde7de3711c27a9277c8daf9063f2aa93ee45dexls Heodo
2022-01-20 01:50:16ffedad564b619c6e6c73bb544d8916e3b58ca40a11c2f97cbefb2fd742c43fe3xls Heodo
2022-01-20 01:25:28e5286287b252f12295efe836725b8d213e3e35a8f0cc9a5d74e2251d43305908xls Heodo
2022-01-20 01:08:251721d1176db895601d861e05ef2ca153746eb52ebe309bddf537b2bd9e539b3fxls Heodo
2022-01-20 00:53:235d4e5e94d71f8cd829e79c8b158960ddbb53203dcb8d5228373a924964985fc2xls SilentBuilder
2022-01-20 00:45:328bcff8d42cea9f71c7dce1e7769d1baa18cdf736b6d25c7979bc896bfce25cb5xls Heodo
2022-01-20 00:28:4206be4ce3aeae146a062b983ce21dd42b08cba908a69958729e758bc41836735cxlsSilentBuilder
2022-01-20 00:06:04bdc735ff6181cafca367001ce29ddc5389cfdfd6c2f12957415231a74215f525xls Heodo
2022-01-19 23:52:0871218d4b13d7c5ab1cd1583b1646b4e495f88b8acedb0376a89e02a11354d674xls Heodo
2022-01-19 23:46:166b3e355a49db68b7601915ef40cd22d3647bf8316e43a2ec51ee375fce85339exls Heodo
2022-01-19 23:33:10909664581c9c1270d91b217c94841e2f6035a12c5f15725c384b2fa746b0b3ddxlsHeodo
2022-01-19 23:33:05258ad7f2beeb6b12167219c3bf41ddf926b0833dd5d20a1f719a2f247f276606html