URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: simonenogueira.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-03 11:59:09 UTC
Total malware sites :1
A record(s) observed :14

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-17 23:05:38 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ayes
2025-09-17 23:05:38 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-10-13 16:04:44 104.21.44.197Not listedAS13335 CLOUDFLARENETn/ano
2025-10-13 16:04:44 172.67.203.103Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-05-01 11:31:22 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-05-03 11:59:15http://simonenogueira.com.br/oqazl/esp/a0q7d48z...Offlineemotet ext heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-05-04 06:52:239547c3f40f790fab370c5620245c7736282c4931b82100c519746d8f3b072bd8doc Heodo
2019-05-04 06:05:21cf3d4fc7080d12f23a1a7718b0fdbcb958eef9121a01f094080652c4c5af354cdoc Heodo
2019-05-04 05:19:21e46ab44563f129dfaae10e440d99832bcc0058052c2f8452d4e22f76a86619f9doc Heodo
2019-05-04 04:33:22d58c1fce018c99965fb2c06ef7c4c3e92be7290f9338741e652b99394eaf8d19doc Heodo
2019-05-04 04:00:253d27988d2bf5995fb39453cf9a94fd9ab6319ba0ffa17f3cb3b8e8583cf2327ddoc Heodo
2019-05-04 03:13:275354f08d420e5f3b9e57955862ebe8414beccf3871d49e4283ad1a37a5757f8ddoc Heodo
2019-05-04 02:27:20321e1dfdb20d4f1a378472a4b3055a9c98804173e5e0c362039c3a118ab8e24bdoc Heodo
2019-05-04 01:50:254892a2e03debcdba92a46545c49d13db8419286aeeb49776bf91e59ed04b7293doc  
2019-05-04 01:04:25e0de872319d3b08cb7322884af7dac8f10632fec564862c9c6364ff2c01a07bddoc Heodo
2019-05-04 00:18:23accfa4d42e2e8e492befa7c7e3ca9f268199e896ea641ddd8f0cd11b7f4710e4doc  
2019-05-03 23:39:19d94ff5aadd33871bf10b2316e3d14e19520506724771f95749210248b7931effdoc  
2019-05-03 23:06:199134f010ba61c78c8dd064852b3d3245294c936e8a7c6c26577f24bbeb985971doc Heodo
2019-05-03 22:20:180282a70dabec4f4b6cc1f477cab7a97e23558677a0b6d8bb55f329b9719deb5edoc Heodo
2019-05-03 21:42:17eeec0046cd334722d51b9db31e8c18d1d6ace4246c790bbbc311d553c2f3ddd4docHeodo
2019-05-03 20:56:289f00e70566d4c513207f676149a70437674345f52f057b83af8553fb8b7ece4adoc Heodo
2019-05-03 20:15:160731dac1d684fd9c6150d9d0c20e52073cdf8b9a8a2afbe06578f553c315bc86doc Heodo
2019-05-03 19:41:1889f70f1ea8bb56015eb8427c1900918320be4468fdd858cd59c410ff5f6fc1f2doc Heodo
2019-05-03 18:54:1796973059c987c115d57614d9f730f3acf54956b3c502610929bca5221e635134doc  
2019-05-03 16:01:1484b3e186a522a0d0ccd28e31620ca28199fb3debba995f0bea929b5e9a4de8acdoc Heodo
2019-05-03 13:07:12c210dbd9324b5c7aac98391d73e4dba9b552ed32a7463c91f5ee2b2a0132ec4bdoc Heodo
2019-05-03 11:59:158dce88bc0f2ddaf9f466729edd7733d8927e8c69a9d9e302a55bbc24a54a1e04doc