URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sanatcifiyatlari.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-14 12:37:14 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-17 08:37:10 31.186.11.172reverse-31-186-11-172.turkticaret.netNot listedAS197720 TURKTICARET-AS1- TRyes
2020-09-14 12:37:16 31.186.8.162Not listedAS197720 TURKTICARET-AS1- TRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-14 12:37:16http://sanatcifiyatlari.net/dup-installer/5/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-14 19:18:162e7b0c20a67a0a13b279780a65cc73a830627962ab6aed5e303bdccabbb8e418exe Heodo
2020-09-14 18:54:453ea807777c7ed98da576d191dc85d864603c21cf1af922ffac902741daa67002exe Heodo
2020-09-14 18:46:3645c49d870daa43f7c1242351a6363ee9384a155b2a268288985bf3ae2a9046d0exe Heodo
2020-09-14 18:31:436b973261d3999a7b216fe78fc405aab88ec60c010b9dc2a5266ea662df85dd46exe Heodo
2020-09-14 18:21:55d454c63f35342ec9f38e18ba9d5e77b7a144f986cdbf0efca85e77c5830c0558exe Heodo
2020-09-14 17:52:21f310c5c6222a126a52179f68341112ed1b2e7f0080ec97d50039b997bc362d98exe Heodo
2020-09-14 17:34:571223547320dfd7d3b9b318feae74e2d0d7aa5a6549055378e1d6c549d95f8c1aexe Heodo
2020-09-14 17:25:3936198d78457d4fa14769f242f623f66edddfb641316f6237be0b07595e9fce59exe Heodo
2020-09-14 16:59:231400d1ea0167058d11f24d46116f5b70542f015337f3bc39ab2a3f1dbf4305daexe Heodo
2020-09-14 16:42:13e7def25071aec0dc09bd63d4a68177c7b44d24a0d63b47d3736388bf104b0148exe Heodo
2020-09-14 16:17:30f0580edb2695788391ac9b3fcd7475bb2caad994a35083fd1c11db4da8949c1cexe Heodo
2020-09-14 14:28:113ac00a3dd1b9a5a59866a86f7cc8ecb7981dc333e0d007ba9c0aee017ad53ef5exe Heodo
2020-09-14 13:59:36e24ec70fd21dce1d6256c345dd600d9168c32d47f5ae9e2aa38552a8817d397eexe Heodo
2020-09-14 13:45:19d02d7c18bf7e0407433df821e22f0ae894190ef4a3849ea1c4e666c8a855448cexe Heodo
2020-09-14 13:21:57a6df3c34be124ccca39577394e68458a27179b198ea4f17776e8a7434cc6affeexe Heodo
2020-09-14 13:00:55358632b45fac78d17abd03f2bcebf020f356002c182502fb2259201cd139236dexe Heodo
2020-09-14 12:57:00dace4ab57b58d27634f46a8d6fe1d4890ffd4c258cf272e8e1d792fc6f851011exeHeodo
2020-09-14 12:37:166b1b8da1143ab6b6f7bd47b0c01aa265e0e14daffb1924b69e9dc3b0d9748628exe Heodo