URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sageartisan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-22 20:58:03 UTC
Total malware sites :1
A record(s) observed :18

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-07 20:01:29 13.223.25.84ec2-13-223-25-84.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USyes
2025-08-07 20:01:29 54.243.117.197ec2-54-243-117-197.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USyes
2025-07-04 04:57:42 13.216.111.180ec2-13-216-111-180.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-27 18:45:51 44.213.46.149ec2-44-213-46-149.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-07 13:59:13 3.18.7.81ec2-3-18-7-81.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-05-07 13:59:13 3.19.116.195ec2-3-19-116-195.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-04-30 10:53:36 3.130.204.160ec2-3-130-204-160.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-04-30 10:53:36 3.130.253.23ec2-3-130-253-23.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-04-30 22:05:34 52.71.57.184ec2-52-71-57-184.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-04-30 22:05:34 54.209.32.212ec2-54-209-32-212.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-22 20:58:07http://sageartisan.com/wp-content/1KsvR/Offlineemotet ext epoch1 exe heodo ext waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-23 03:07:423a676f5b4b15b8f5f3beaa7474725da15909549d351b210f3950da9ab9c6e12bdll Heodo
2020-12-23 02:55:05e2917577cf73531da914ba42227f6248b9bc3185442aee0643d4fefa9f9f6b0cdll Heodo
2020-12-23 02:43:329db53fceac1c3b57010ab70bce64f3bc874eac9393e021813c4c9196922211eddll Heodo
2020-12-23 02:11:21003c8c8062e2d22caf4157a5bdad496d26dfc017423ea121ba17b07301fce3bbdll Heodo
2020-12-23 01:38:426499ac59f3724613f7db9ed209354bbb935677bba946eda113eefc47b4b8618adll Heodo
2020-12-23 01:26:26eb93bf0779e91b109f18c2eadbee6c31380252241e55eae6cfd7a4991b15a3b8dll Heodo
2020-12-23 00:58:564090c96636f6eea75bc972d3a2665e1449bc7f2d1ca6f303e7a137630d6f1c30dll Heodo
2020-12-23 00:33:35a49c81b2cc942a03fe92c8e223303a21fd223896836a29b9877dbbb874c3bc6fdll Heodo
2020-12-23 00:18:41ce2df4c3c0e71c3b0e6b28cb58bd8b9f37fd4f6c3389127ff7638cfa70777d8cdll Heodo
2020-12-23 00:07:467fcd3f6ba9f6e24a79f27d2ecdc5a4b22cd3ccb9a74959a1cf34c3ad5520252fdll Heodo
2020-12-22 23:42:268d675328b27c74e851ec13b3869c0fb45f0efa1e135ca41563cd9e61155e81d2dll Heodo
2020-12-22 23:37:36cf6c43bc251d8009db8ac733cdef2e7a595d08bc85dd154db3df1065bdc79a4adll Heodo
2020-12-22 23:16:2430759eb996173210c93c100a6673d8d3b82f532ecdf90b358bc5a2a18edc372bdll Heodo
2020-12-22 22:57:59dbdaef811cb231a5bfb26cf558dc4bac2304d1afc696cd4d0025b0fa3f5fff1fdll Heodo
2020-12-22 22:47:40fb45877eda3c1637075e760f112c1c3f9ad6a2d2930563bf5d5ff8dc84163c88dll Heodo
2020-12-22 22:26:13d1009887702447f7d78cccb3bbe4201bcf15e97b14b776d6de983903e4b4f93edll Heodo
2020-12-22 22:10:5757de72b94d14f86d7183348376b2ff4c31817954bf210a3ec5e40a0609d2ca04dll Heodo
2020-12-22 21:47:41568a36023f6b451a53bbec7df51a512415e937db99a37481a624156276e1b9f7dll Heodo
2020-12-22 21:35:18c5696eb578559f65901c7946f97419827938dfeff4e65815f8846410ea7575b6dll Heodo
2020-12-22 21:22:55f462edec56b55b590b565b37e6f662873ecdb7b925374f65842f5febb0591c05dll Heodo
2020-12-22 21:13:3964a86956e2000e107b85bc50b33e04b0d03283949624240921907c970d36cc05dllHeodo
2020-12-22 20:58:06910ad4103a1dadf2b2d5c1a37c9333b1d50c2471aa9c78ef81d8cdcd1e0aca36dll Heodo