URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: shoes-store.freedomain.thehost.com.ua
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-24 09:06:33 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-05 08:48:53 91.234.32.2thehost.uaNot listedAS56485 THEHOST-AS- UAyes
2020-02-16 14:30:59 91.234.33.3thehost.uaNot listedAS56485 THEHOST-AS- UAno
2020-01-24 09:06:34 91.234.32.170s5.thehost.com.uaNot listedAS56485 THEHOST-AS- UAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-24 09:06:34http://shoes-store.freedomain.thehost.com.ua/tm...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-25 09:12:0634aa6087e68b3ce662e6557691a32813facf9d5a8b055940a76193565f6473d4docHeodo
2020-01-25 07:52:3682502d97389b52420a89c59792e89c9012bad643c6efafc2ab355c42348061fddoc Heodo
2020-01-25 03:20:11d75a9301bebf9c4db02e0f811bdd40eae416351409e63c8b68a5e11190125a19doc Heodo
2020-01-25 02:27:52c79fe22f5ce8e4bf2048ebeec0b3343dec9d1103cf25b2a4652ad99a71ff5601doc Heodo
2020-01-25 01:26:53a3d7b01446bfb5f062098c68a00c1bd211e610bc191f04a20e751c5140a8478bdoc Heodo
2020-01-25 00:25:5510ccb0e6114b2932239292f029d8acd20c85228b81942340acfa1379b887ba02doc Heodo
2020-01-24 23:53:03beb418fac94ba2a2b91d0bac25451bf7db44d12526967fcf2ae4b68e4e111b4edoc Heodo
2020-01-24 23:25:3962482183764aab402fff8640b00d576cf8e7fb4c7d12a23084d88729dcebb598doc Heodo
2020-01-24 21:53:48e0eb5c2414cedd2eb2e4ab88353a5ec141b0fe03459be273d0bfe2239c066b07doc Heodo
2020-01-24 21:04:542dc11367ad7abc8c34283e781e45c513c1a2114d13c1c5d70526124ee3ef8d8adoc Heodo
2020-01-24 20:50:57724a5541c2dcfa538c7d02e7780bc282cd11b6a24d622368357e21d2889bf4bbdoc Heodo
2020-01-24 19:36:426c7e00870a13fa54a02ddacd69c4c9e85e9658d161b547faebe94f9c6d17da70doc Heodo
2020-01-24 18:05:32e837e7ff90ea4f6069c540366bef669099d5dc56c8ec0bf410f18ac21295ed02doc Heodo
2020-01-24 16:55:29ef35779e78057ee046358ad2cb091e78e75c0fa76d19134c11f35fff9f906ab1doc Heodo
2020-01-24 15:36:196f5b6ce04708712cdb5319ec58f2ebc8ea192e9b229cb5a574ccca831f89f679docHeodo
2020-01-24 15:22:53be0a76b775c492de0e64927a76fb8aae5bd0f8b6dfa606c3d83ebe1af54ab8d0doc Heodo
2020-01-24 14:05:27ee94d32e75d430f2a82a4d7cd4866dea39546f67d230fed8f3140c5aece4f6fcdoc  
2020-01-24 12:39:40f116a0ae35beece0029de73070fe1f5c5a387cedb4e7668aaa08c8f4a7f1cd70doc Heodo
2020-01-24 11:07:36f0f981739b129260f4ce49dd2f8d7c2f60b9d821aa3e423f6dde6da50580df0bdoc  
2020-01-24 09:36:39a73762a4fcac6839eb5266cc79c7363b551e6bd22d63e2ca84f916607b32f0f9doc Heodo
2020-01-24 09:06:3472d90821b9c20296395cc4a57a6d2d7c45851726d1c52d4154cc037816c439e6doc