URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: safamo.ir
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-30 03:08:06 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-30 03:08:08 185.128.139.142mail.qeshmkala.comNot listedAS48715 SEFROYEKPARDAZENG-AS- IRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-30 03:08:08https://safamo.ir/rsVa04Vd83/swift/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-30 15:10:44a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47docHeodo
2020-09-30 14:52:1163d11b10d793151af69aa10ba45dcd9de40ca61834d018e42474786090043655docHeodo
2020-09-30 14:18:23d46320a38b414b43c59ca8d4290d2da2129bafa4cacc5de0162242e761f1dffddocHeodo
2020-09-30 14:14:17728b1a60c5af8cf394d48d6bc7a6a273117da463ab6316c2b43a2fe72b26709cdocHeodo
2020-09-30 13:40:21087b9ff622ebe92583a05a548a41b6384ca243ee1e54af69e35281cc16c6ee83docHeodo
2020-09-30 13:03:1054f93880d0f4c65aaa29acd1dff0cb761aa8dc7388f96435e8c55ead32b30dfedocHeodo
2020-09-30 12:31:52efa9c669d5b042ca0892a07861b3f039c3d61f0fa89c57348ee5058445f2db1cdocHeodo
2020-09-30 12:08:52d206f9b0e7b447444d1f5d592716186fac89b660509dc88efa51a5701e795a77docHeodo
2020-09-30 11:52:18e2a69925ef4b6f6223ed63f7f448dfe63141874f1a6d195735f3846c4ca9ed8bdocHeodo
2020-09-30 11:29:31ea04aeb35f3ee924c978225fd95f2fa3df8a4847a761685ad79f96c82886f80ddocHeodo
2020-09-30 11:07:52a4ba9b07b2355a1be394ecf01c4d26aae440491439fa0db4e7905eaa82a79e81docHeodo
2020-09-30 10:45:582d09a2c2cc27e1e5e697d5c7fd6e7cbba00b82f6e118d417147a336d7c4fe92adocHeodo
2020-09-30 10:11:24a8dae6d86f2ae529335810a70a6f959f195bf9fd10f2ade7549334ff2767cd04docHeodo
2020-09-30 09:36:00ba44584c1f1d349168d9003b0bd7fcd9d738c17877427c3f02ad492598d5c637docHeodo
2020-09-30 09:08:5119d2f19f8fb5285fb364123fb36a69d0bb65beb57b8bbf7d47364b53b6e60317docHeodo
2020-09-30 08:46:27dae3de0260b268fd89734a96196759e0a878835e38a868db1ec44194c212e1f0docHeodo
2020-09-30 08:16:14950f9c4f6561a52ab6850b63b0551b2e75c7232b28c11aa0e470001d770dd194docHeodo
2020-09-30 07:58:1819377355e91331d5f2438275b1af46c6f266bd250c9e6a421feb6deaa86f7caddocHeodo
2020-09-30 07:37:438cc454cbd44284ac4a4b398e7fb7e8ef64466cb44537458d884f54fea7d6374ddocHeodo
2020-09-30 07:29:475bd1dec77e268f1da221047d95d57981748b9f359c04a76b1b80de3a2144c67ddocHeodo
2020-09-30 07:19:418e31afb89d4b0d827dede24be0d862b7e6ee93b5726a90722e3d29f493922546docHeodo
2020-09-30 06:59:284ec76c0d7c5f6a2a489dcc31a5670f9d7194cf38c6e29b0e002193b6750e1ffedocHeodo
2020-09-30 06:38:00070fa7b00421948236bfb6bd84797e0ffa8f842cf034d0086b4d9f3fb5391649docHeodo
2020-09-30 06:17:350a2e10583a6c70298eb3c353e0a15ebd98c8a9ae09db8e6cc9cef513e39c95dcdocHeodo
2020-09-30 05:50:57fc6f0ac3e38b970866e30342911b1f72bc2a028a33a093badc8c5694321d5808docHeodo
2020-09-30 05:37:538ab2e6cb8892b88bad960fc01887038298cebc93804c11f3bf92624541fd00dedocHeodo
2020-09-30 05:05:44d0ce4cd7cb0a84604bbd7f40f0aa48a2f09e21fb9eb3d4b72d64cf88790f3081docHeodo
2020-09-30 04:44:10c648f66670c65dcb17a1ec6a90617481190da0ff1eced41135b2435893b66c22docHeodo
2020-09-30 04:25:2109920ec2c5029cdb6177cee45414e34e9307a6f40548df1ba80385c44cfcc613docHeodo
2020-09-30 03:55:47267635371e8ce155728f5a57ac788f36284669033c41d39c1bd6f1168b3c469fdocHeodo
2020-09-30 03:18:395b04551305572c828c0ac8143249ef7e94223b0fbf7d12b43f77c4e3da8bda45docHeodo
2020-09-30 03:08:071a2856f6dfce0f239bb89c2fa41ba26f9d1761dd09caa8312e58c26aa1411369docHeodo