URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sd-1130049-h00002.ferozo.net
Domain registrar:Register.com -
Domain registration date:2005-04-26 15:24:57 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-30 23:51:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-03-30 23:51:06 138.219.41.198vps-1130049-x.dattaweb.comNot listedAS27823 Dattatec.com- ARno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-30 23:51:06http://sd-1130049-h00002.ferozo.net/wp-includes...Offlineemotet ext epoch4 heodo ext xls Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-04-01 07:27:3901c0169c20d6d3f1ef670cb180a6bba00773b10470c460b5c140e414492da173xlsm Heodo
2022-04-01 06:48:15f3c06e72e6b0cddb3d66545d59bef1288458f9c106ede60b0507f095971e7067xlsm Heodo
2022-04-01 06:10:09033009536542621d4d21d3368787a56ecdf807bccc352f8014ebf00a5a57c6f6xlsm Heodo
2022-04-01 05:16:14c171d718d9aecb5ad1e27309660f8da7a568f9798e03d4c6683d7825b5a122c9xlsm Heodo
2022-04-01 04:05:265144b4176d2f9e56ad483565884642378be09039de1f2a353cb355c00dfa1894xlsmHeodo
2022-04-01 03:16:36ea8981ffdb13c6d1dd874a5a86e7079bb053c862a92849bc571846a6762dc7d4xlsm Heodo
2022-04-01 02:41:5473dc0a16c8430b50b28054c9e0b1e54cc8174554e7b63b4e2fa4be17c3cac1d6xlsm Heodo
2022-04-01 01:33:51e487c02def7287335acf2278332f27a4a585960d8ba68a14c0b8370535440c3cxlsm Heodo
2022-04-01 00:52:28dec78675ed65ce3c282f1d9d3e4a1da9209c833b7aca7b14647e1a944b002400xlsm Heodo
2022-03-31 23:44:187b5aca9a82485f669d10db3cd974bd416d8c41f460a1cc9e81eb7a5ec0eb1574xlsm Heodo
2022-03-31 22:56:03e4a6b88e713470e3d31c81c890d21472b60eb097b915f29ff70c688bf397df8bxlsm Heodo
2022-03-31 22:03:43c7f63ce6becdd48402150d223d11b5fb003ec48c57f2d856c8d979e5b3da4254xlsm Heodo
2022-03-31 21:59:148d56be834c0179e7c6eb48e5182c8a9478aa5afd0c88e1c54592d9b01ed11fe2xlsm Heodo
2022-03-31 21:12:37441ae7dcf7d20f39dce4201542202d7c62c067457d1476c2bda9c819979879ebxlsm Heodo
2022-03-31 20:57:390baff6c11648937580735dcff8208034790a0e1ee649431e79b2b6221d825c40xlsm Heodo
2022-03-31 20:13:48522056ad088097c5c827ddabc4a8e7ad95b16563043dcfde8aa2fc4b0df81a1fxlsm Heodo
2022-03-31 19:13:222fa93c2dfef003816d473094a03ffe57ed6fd6cbbd21f22831af88634fc3287dxlsm Heodo
2022-03-31 18:18:5148f3f48c930933448b555efe67aa364e098504f2273ec2a4792803cb4a21b8bdxlsm Heodo
2022-03-31 07:17:58894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7xlsm Heodo
2022-03-31 06:25:48f6d9028f6903f57570a969a97a510120fa11d93ce778cfeac61862c36d6b6bd2xlsm Heodo
2022-03-31 05:27:0963ba5c63fa8f569c1870ab57faeeec2933a7bdb28c90458f6c5373f1a71dcef4xlsm Heodo
2022-03-31 05:01:072e1db4578a7534abbaeb0e65b01b0da5024a9e27d99c3a9b29b03cca35b3a096xlsm Heodo
2022-03-31 04:12:145285de9e0e5323564d48a5d9fc627190ed9bae90f9c0e818958768b0d7c856b1xlsm Heodo
2022-03-31 02:33:2965b87a95369159fb3d54556f3f316f9e13eadd8b95e9e13f6a8d9cc79f43a8e6xlsm Heodo
2022-03-31 02:30:14f869263419a75a1350a78400b9e3dd186488c7c76d299e7984af7e5e0c91d75dxlsm Heodo
2022-03-31 01:30:28764d8e72174b0666952016caf95096e85219dba6554a8ce6db74b8244b3e7590xlsm Heodo
2022-03-31 00:44:52db67f0509c5f982c9eb1fab5a17d14ea07d5a1e13b2f5ee3b35ccf93700588e4xlsm Heodo
2022-03-30 23:51:058eb161bd22ea52d987b19953ebebe364df8a0779ed9f42ad96c6dec32f8cce52xlsm Heodo