URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: simpsonz.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-28 00:15:10 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-28 00:15:12 193.142.146.58SBL648581AS213438 colocatel-inc- DEno
2020-10-07 14:17:23 91.195.241.136Not listedAS47846 SEDO-AS- DEno
2020-10-04 12:50:09 193.142.146.59SBL648581AS213438 colocatel-inc- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-28 00:15:12https://simpsonz.com/wp-content/payment/5raa597...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-29 16:47:14238b6400e34d00a9c7c67b646fe7cdf3facc453f47632bfa9c8dac3aa1a40779docHeodo
2020-08-29 16:27:26242de608bdf2c6fbfa037537be866bf7558858fc240142c606115e86bd28a941docHeodo
2020-08-29 16:08:53b39ab4983136519b6249443c1c9f1a89b7c1e83cd17ec40748745b41268741dcdocHeodo
2020-08-29 14:08:04ab465edf58b50037bd4c7da09e85cf87e5a83e9301a3b75a761b682142dfdfd0docHeodo
2020-08-29 10:17:1713df7d0cf9c4f67e22eb093ff92b70f61fe8e5c61d1afb6c933fee76f2525abedocHeodo
2020-08-29 00:02:11933af4898a9ce638e04dbcf02e075e9f7eecf02ab22cebc4488517cd415e1c71docHeodo
2020-08-28 23:48:59a9b6317d17337bd970e7e72e373ff364eb613b443f84bb159a9daab32918e979docHeodo
2020-08-28 23:33:54f5d308b615528818047b9010074fd219d6248ce43aff167bcc0bbb56a6d45504docHeodo
2020-08-28 23:20:46aef46f7e71936aca8da4fff081f587fe6293f09dac7b27fc70f372088eff86f5docHeodo
2020-08-28 23:04:56167504fd75c887fa1e091030f6f8899e57917c86c6e455c8f7fe99b378bb5f71docHeodo
2020-08-28 20:05:323a81d48dd27d252c1d0dbbbe11a02671bc68c7b1970611a1bde4bcf3beaea556docHeodo
2020-08-28 19:58:10fb2ffb3aa6e2a0f7a272c7bae05e700460c73f88daef8b34d0ae4332116d3ee2docHeodo
2020-08-28 19:44:495332fb0050d2e914d7bad1f7ee68a30aec6cf4afb47db5fbad43cdc3cb500209docHeodo
2020-08-28 19:24:43e189a7569815651cf514dcabf42ee4991cc49f7653402684fbf55db8353f7908docHeodo
2020-08-28 16:01:576fbd2c25ee2b04cb72eb490fce1e341a1f979db4bf955017dbe72a235026c8d5doc Heodo
2020-08-28 15:16:20ebbbf1104be5c5f4f000285e72aa802cdac327750e71a35a101e4ecac224d1d2docHeodo
2020-08-28 13:22:098797e3b7bd75e1a64682db33af0c11c05bceaa46303559eb2e042d368542b199docHeodo
2020-08-28 12:58:053ddf3600b1feb4c4e8a3ae126b798a2e61ff41794ff84e9f28d87080811c4899docHeodo
2020-08-28 12:57:533ddf3600b1feb4c4e8a3ae126b798a2e61ff41794ff84e9f28d87080811c4899docHeodo
2020-08-28 11:35:320103af1495d7b8b6b61d54d38b51fe7befbc70f0de62a08c00752c9ecfabc370docHeodo
2020-08-28 07:50:46f35f09ee31dc9ba4c3d871882fadeeb10ed716f5a87be56e6129b111b6e5e34adocHeodo
2020-08-28 07:21:558658e7ea7f3c4c680d6ddeecf93b59b9bfd3298d79d6f0e7a5c3d9aa1623d961docHeodo
2020-08-28 01:27:33d9af175ba25dcae35440967cff2b9dbe0257596855b311d10e6fae3369558883docHeodo
2020-08-28 00:15:115a39b64f351708e72ad56acbd1067970f2a17194dabd5eecdf3dfa44b7e2decedocHeodo