URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: spybasegaming.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-11 18:16:25 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-04 20:56:57 178.132.2.226178-132-2-226.hosted-by-worldstream.netNot listedAS49981 WorldStream- NLno
2020-08-11 18:16:26 185.180.222.128185-180-222-128.hosted-by-worldstream.netNot listedAS49981 WorldStream- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-11 18:16:26http://spybasegaming.net/wp-content/personal-ar...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-12 07:55:20f5ec89a6e0a9e6f12727251ded2279035d817716542203ea13f4de99606a8974docHeodo
2020-08-12 07:30:371ab4853922334f81c7d8c208de1c6dc1f137a45a665fb1acf5f33666158c2ff1docHeodo
2020-08-12 06:45:027c7837406f4a125ee3a129d23771f32eace788283c06a517f0bdfe7dc4f7036cdocHeodo
2020-08-12 06:01:06e44866ddc3408fab14c87c206e408852253a05de531691d4cb8e1dcd7f37cf72docHeodo
2020-08-12 05:46:131f2721d86674c089b606753be49e601afa652cd0daa1af0a19239ca33981af29docHeodo
2020-08-12 05:25:56fb3cc3350e60d43b553472c75d1c7ec6d97b7a837094ac667dae539d90e627a5docHeodo
2020-08-12 05:10:08d6ceff199daed77e31636bbce10dd06d27353c4064b10c076028aea4313071c1docHeodo
2020-08-12 04:49:459e95cffa8cb342aefdb7f8c1a029adcd48d1304b400d07318215436dd2894341docHeodo
2020-08-12 04:32:08e5c2116828d317efeac4ff3a7fe2092bae369fbb5265db371d919a3ffa037cefdocHeodo
2020-08-12 04:16:31fadf9dff9ac739df4bfe67bb110d2570b3a8b56ff10d4d0a619ec013819ee896docHeodo
2020-08-12 02:45:48106b70745b6bbcd2a3b1590f596682076f039f584ccde6df0ca12dab353fb701docHeodo
2020-08-12 02:29:466fa74bb52572c68bce1d712b488aea9184f884d85ef22b26492011dc0fbec3a8docHeodo
2020-08-12 00:58:577d7ecd381d765e01cbb41e6b0a254b7bc60ebb1d59c3c212286dbb9054e5093ddocHeodo
2020-08-12 00:43:29239b0c4f5e150bac96fff321ed672e0772718018ae715db9d4feb0b59879fbb7docHeodo
2020-08-12 00:27:53e49959014262227a3e6ca5bc2937e6afab83a251fc694000d1a3d38e7814d9dcdocHeodo
2020-08-11 23:43:10a72efdef48aba290b85eeaf21f2f3bf866bc3ce5d364867ad68e7d6e93052e96docHeodo
2020-08-11 22:56:42db647367365410a0e5641b0f84a8b1ca4da7a3266d34b01971653e29821aba39docHeodo
2020-08-11 22:50:270241b1ed7a1656dab5d9fe64b7e59fec547126495769ca53d78220090b494889docHeodo
2020-08-11 22:32:048f5d6af71053c703ef6ac42971b9c19766bb0682e793b8f295af1453eccb5023docHeodo
2020-08-11 22:17:39593a1eee983e1c66c480fc52ce564f0ebb60c48d5cadef3f5ed4367d32f1112bdocHeodo
2020-08-11 22:02:176c45ff153d6de80d056c6f69da227ecd5bbe257a22d4942cdc493a5d623d7cf8docHeodo
2020-08-11 21:48:21fd98e040494ec96249be1460752ad33da1d1a230de136873e2c99e72fdbc336fdocHeodo
2020-08-11 20:15:256bbbfea0979ddea7c5b31d79ead31b118ac7455812560b7e9bea64b8d1cc3366docHeodo
2020-08-11 19:57:46dc67e4720accd77c39d460b3209c199a542e2c1e9e673e3645d2924c6a7827d9docHeodo
2020-08-11 19:44:40505bf00a3f0c6b5d8ececc410f78de1bdb0fffc8fe7a3324166448fbb3a213f0docHeodo
2020-08-11 18:16:25d0d50281d033a874baeffd888c5a43f8f193d0b413607549618d1f06a698c00ddocHeodo