URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: securedocusharex.com
Domain registrar:Atak Domain -
Domain registration date:2025-03-28 12:19:12 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-09-13 19:11:05 UTC
Total malware sites :17
Online malware sites :17 (100%)
Offline Malware sites :0 (0%)
Newest active malware site :2025-09-13 19:11:38 UTC
Oldest active malware site :2025-09-13 19:11:15 UTC (Age: 2 months, 10 days, 15 hours, 7 minutes)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-13 19:11:15 198.12.66.123cp1.host-forest.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-13 19:11:38https://securedocusharex.com/atera/Nodustrunm.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:37https://securedocusharex.com/atera/yaegerrob432...Onlineconnectwise JAMESWT_WT
2025-09-13 19:11:37https://securedocusharex.com/atera/ajewarrior.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:37https://securedocusharex.com/atera/Jingle.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:37https://securedocusharex.com/atera/Wisemenchat.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:37https://securedocusharex.com/atera/snowhiteout.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:30https://securedocusharex.com/atera/Sadfewego.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:29https://securedocusharex.com/atera/2poasdoc.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:24https://securedocusharex.com/atera/Future.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:24https://securedocusharex.com/atera/intruder3000...Onlineconnectwise JAMESWT_WT
2025-09-13 19:11:24https://securedocusharex.com/atera/whitepower.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:23https://securedocusharex.com/atera/tron67.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:23https://securedocusharex.com/atera/Bunkerjoe.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:19https://securedocusharex.com/atera/Powergod.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:16https://securedocusharex.com/atera/cartman.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:16https://securedocusharex.com/atera/Nightking.msiOnlineconnectwise JAMESWT_WT
2025-09-13 19:11:15https://securedocusharex.com/atera/hardly.msiOnlineconnectwise JAMESWT_WT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-13 19:11:378a7b47eb9ad2628f4e98e91447ff0f0ec895e284d72b0102a28a04535f7a6788msiConnectWise
2025-09-13 19:11:37abfea09930b396cd33838f1d533ec7d14734176a10e55ef77c918ccc297491edmsiConnectWise
2025-09-13 19:11:379892d2e477a2f1db29cc51468d15b0faaca3b0a39ee1391cb0b2fcd42f997ec4msiConnectWise
2025-09-13 19:11:371458a415692ccfa9135936692d6d43ef0e82cec575fa3b952c6b5976e19865c0msiConnectWise
2025-09-13 19:11:37c99c37da2bb0faa665a0952ac99b4ff0fff162fa73f6367b18698579aee4470fmsiConnectWise
2025-09-13 19:11:37be15b42a47a652a968f2e8dd81d18cc502949d6fcde337e207aabc94c9c3b5a9msiConnectWise
2025-09-13 19:11:3074dfabbaebf601869dc5ded1d21760af86814f8b4303967177791e867ef8d533msiConnectWise
2025-09-13 19:11:26b0d493e6ebb25c1010938376bf55cad5742ffdd4fac6f0f674759d804bb85e9fmsiConnectWise
2025-09-13 19:11:245c7ee0d7f0521667ac8b8613d72d2d37cff7997bd1008add3d0dc363db7bc086msiConnectWise
2025-09-13 19:11:2444dc3247cbc1f10c94b00f0dea14346a673a00af64516c916a07193ad7617f81msiConnectWise
2025-09-13 19:11:23170a401727866505bbfd1a3e93c105c4463d698abf115ca3137edf6f39cc5e2fmsiConnectWise
2025-09-13 19:11:23d0e0699c7cc3648efe7fe0e74fcf12f5b7e490db68782d3195754c139828c855msiConnectWise
2025-09-13 19:11:230c70690fa6c10bdb914cd4d13cf4c19b7cc6167b8f70b11b5d03a7f23181c0b7msiConnectWise
2025-09-13 19:11:192c1eafcde223b33f1e473e63f7364ac20ef8462d708e38e8ac4e7f37aa932fa0msiConnectWise
2025-09-13 19:11:16955374f928a5a4fefea5429609c1864be910bc2fda6acb917380b0fc11d2133bmsiConnectWise
2025-09-13 19:11:163a3c9806b994cac747aa2eeddc6e481d3f8cd66149ce8a74dc3056ae9ac191f2msiConnectWise
2025-09-13 19:11:15702f2a97aee229e4e4ced5efc075e07f8700d0ad16d108a1a260b685cddcffd9msiConnectWise