URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sthlmtjejer.buzz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-28 09:35:09 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-28 09:35:11 94.242.61.186Not listedAS43317 VEESP-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-28 09:35:11http://sthlmtjejer.buzz/wp-includes/XMixb/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-28 16:51:32b2df21abd3019bad332f1f34211b5a7f809af8d92737bb020afff3e6f0147a37docHeodo
2020-10-28 15:44:13302684a1df1b3b6bcf6995798581972d23b71888983b326ff3eed9bbcaf1c56bdocHeodo
2020-10-28 15:07:3195dbd21a4a3f7bfb45ed46713d99b7881129368a675677e970e647b22cde6d05docHeodo
2020-10-28 14:37:445c1a82068482e028454463db245bd38ae56212f951d1949f9d4dff5bf660f026docHeodo
2020-10-28 14:20:00dcbe02f1aa0077b9eb58a4e8a30c9c220fc240162ffcb1bb73376e967d6e7b62docHeodo
2020-10-28 14:01:568d7bfba7aa5d45dfacce4f1d01bd73c49ac08a57ca60560244f8e4d9220ca53edocHeodo
2020-10-28 13:51:15a2a1fb0e34755eda063fd82d7fe452eb979f87b8cf484cd8fa59a45df5adb29ddocHeodo
2020-10-28 13:21:490843e95e73e1d9c719d84439a7243f080d431179cc900f1d3744cadcb2d19d38docHeodo
2020-10-28 13:09:59d424fcc461427fd257e6bd50b98d81df0efc3254426388661e5ec4d9a4815fe4docHeodo
2020-10-28 12:37:31778c2b97449426c3f3827a8041a05fcbb0e648267612cde21370c9f152bcf255docHeodo
2020-10-28 12:16:079c5f88a456da5cebbe774e127b1ab02cdb4769374bf745dca29d2e207f156ee8docHeodo
2020-10-28 11:48:570e2c0a0f94967cefdd4f1faa8e5d51a24a7d8c786970382aba5143ab4e0c98c4docHeodo
2020-10-28 11:16:156a3681628d5e90051c68dd3bf6855abcdff9d8b6e25447bad58745cc5406d4e2docHeodo
2020-10-28 11:12:06b2a8f6bc160f4536d6be6a9e5ef41244a96a2bf0de49f9d088c5d68853f2d69ddocHeodo
2020-10-28 10:35:55237787a670daf0b6ee3f6e85c75ca3501a3d0ed0c6761afb36b467a32d31c2fcdocHeodo
2020-10-28 10:15:31b2fd50c9b74180bf57162267feec075ce16b9d37ead25cca5f97840e44e61a1edocHeodo
2020-10-28 09:58:033b2703a8136146bb26f76cf8aeb05e347c77170c548c652fdc716a1df532a920docHeodo
2020-10-28 09:52:593c7adc03d47d4071a05f6829238a5d5e5e21389ae17cf278b8f88824cae02d83docHeodo
2020-10-28 09:35:11a8d759c3b4c570d5c7d196edd616d1816f0bf51f7d858bbbdcf8bb41f85242e9docHeodo