URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sadaprod.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-20 13:26:38 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-09-28 08:07:16 72.10.160.211mail.cpamg05.likuid.comNot listedAS36666 GTCOMM- CAno
2021-01-20 13:26:40 149.56.115.88ip88.ip-149-56-115.netNot listedAS16276 OVH- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-20 13:26:40http://sadaprod.com/bttxlf4.zipOfflinedll Dridex ext reecdeep

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-21 17:13:09642ab82c74a436b00f64a17174e23f40a64b721b6128e80a70e3cbffc7d3424aexeDridex
2021-01-21 14:39:259c9dcacbcb40813c2efc0d9934eace278cb39e9042a215d1cef9ad6eca43a478dll Dridex
2021-01-21 09:55:1006e890b836e0087897506148583b71de6d0c1837b465dfe8e69c6ec1c6462b7edll Dridex
2021-01-21 08:12:1090bd41b029a4618b84125ea9b16256f07d8a29ca4a11e6a902bbe336c2386f52dll Dridex
2021-01-21 02:06:394314efb523499b2e7bd3de57d762c972c11d65790d6415ce3b9d3e84176c88d0dllDridex
2021-01-20 20:46:40fc646c8e5daae0acb513d09a199292da6a9f35b4c4bbc0fc452da63f541aed1ddll Dridex
2021-01-20 20:06:492bfa88a5c855f4d24139d5d9c556cfbdb05a5a68b23a528ae53226d526dc4e7dexeDridex
2021-01-20 19:03:31c2113f0ef3c074e672e4fb416720db882141c27a39fdba160f86b58eeac5af06dll Dridex
2021-01-20 18:33:132f7d44672a0be121841f5bc447c5c4580846c8ba385bb2c6815c6879f5cda2d2dll Dridex
2021-01-20 17:54:3302ba693d75dee6a99d3a2414f6a426940696a5ec5d2d7c8f368f929697e55e54dll Dridex
2021-01-20 17:21:48c0e892608e649eadcb648daa1e3cb8a4bfa7cfd41a6bb522f3766a9804400ca3dll Dridex
2021-01-20 16:45:5637e3ea6fccd37209f1e11f3781565e2f2eaa2de13ddf62ed75330936951cf445dll Dridex
2021-01-20 16:06:03f14930c641c001377c3c4c468fc97ab43acde69287819c134d529d95c0fb7bb4dllDridex
2021-01-20 14:11:46791252fc4def3c4c3bdb270633ffc88c0e2cd8e8e8ba299825a83841a273e7dddllDridex
2021-01-20 13:26:40b9bb671587f2dad8a3df83d6bd0b7b8327edf93fadbefe8b6aa7eabe6698ae88dllDridex