URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tataok.tatamotors.com
Domain registrar:GoDaddy -
Domain registration date:2002-05-09 08:15:54 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-07 16:31:03 UTC
Total malware sites :1
A record(s) observed :670

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-30 21:54:03 104.18.30.138Not listedAS13335 CLOUDFLARENETn/ayes
2025-04-30 21:54:03 104.18.31.138Not listedAS13335 CLOUDFLARENETn/ayes
2022-02-07 16:32:07 13.32.99.33server-13-32-99-33.fra60.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-02-07 16:32:06 13.32.99.60server-13-32-99-60.fra60.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-02-07 16:32:07 13.32.99.90server-13-32-99-90.fra60.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-02-07 16:32:06 13.32.99.97server-13-32-99-97.fra60.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-08-22 08:45:12 13.226.2.113server-13-226-2-113.tlv50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-08-22 08:45:11 13.226.2.116server-13-226-2-116.tlv50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-08-22 08:45:13 13.226.2.128server-13-226-2-128.tlv50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2022-08-22 08:45:13 13.226.2.50server-13-226-2-50.tlv50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-07 16:32:07https://tataok.tatamotors.com/wp-includes/asset...Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-09 08:12:593486b2c85f7a0f66d2939738ba6b0e041c8856ba6ad314f2e8822699d4427b84dllHeodo
2022-02-09 07:23:08cbabd4705bbea1e95cdd57ac8793f0ca0c438713a7e900f450717ac55f441ebbdll Heodo
2022-02-09 06:49:42d4b4748a0ba60e8b5070ce146ee73fa69cb1061bca9a066fc27eb8aad192027fdll Heodo
2022-02-09 06:36:337bb2d5ebb7340d6ea9b93d3d4a1447a74b0b8e4a1f64d748b65cac54f5d8bfc7dll Heodo
2022-02-08 22:45:004d89b3bfeb305ee4745b84f41ec9140351a576c242cce088dae36f7be0011519dll Heodo
2022-02-08 21:28:2033b3482dc3cd35da448484a48e247c83d89bdade954586bc4668c0b1ee0b0e9bdll Heodo
2022-02-08 21:06:178d9d41a465f61f2cb45f92d3b1e57b66d8bab7fb7d19b681c9367eafd681962bdll Heodo
2022-02-08 19:30:47dce02307c849bd2e8b186ce935db5957f1341edb4de7b17efef9569b9bb284e1dll Heodo
2022-02-08 19:02:13ff566cdbaa1b0ff19c89559668e93d160c98aa058f7c3bd8cadeee5c50c4f527dll Heodo
2022-02-08 18:50:566da36a5c74c3ca79b4dce72e9d57b2144f4685bfdcf34276ec7711035c0cfac2dll Heodo
2022-02-08 18:34:5107574f84fc3f5f11536ffccb5fd0f6ff85f516793504853e78c1076c5d4a5c43dll Heodo
2022-02-08 17:30:24088df1038eec926e6096fdfd929e1e4a7e70559fdc370d05122246b0b297ad36dll Heodo
2022-02-08 17:02:43ef19cab75ebdbe714e1b2f6edbf295781d704bbafd64fdd11eede26a9bb1be92dll Heodo
2022-02-08 15:28:39456c1799bfd8553307617ee800f1bfcbcd94a912acc99e175e57b2f1fd4916c1dll Heodo
2022-02-08 15:17:1307fa5fc80db369239a8749adb7bfbf495e2a2cd3010b0cb91b1a92f3434326dcdll Heodo
2022-02-08 15:01:09ef05fa5f6cbd65a1109d23c80fef9eb08d21a7b6558102b118bb79332310076cdll Heodo
2022-02-08 13:17:5052dcfad0624b2be104eed493ee9066835c26ea5c84d8177a14d0f38f952e9a24dll Heodo
2022-02-08 12:11:32751078f808f0c8a1275d4ad0411a4eda6d90a08f0ad9387ded39a27091a5889bdll Heodo
2022-02-08 11:09:01bbedc1f024d4b270eef9dbb350b6cebab5825525215a66eee5d3d741a825f009dll Heodo
2022-02-08 11:00:20178b26ca1f5d07536a7aac8636ddf86cf3f394b7e503606e73fb27fc87e5b9e7dll Heodo
2022-02-08 09:48:34972e29e679afc48952a8847d15773f5571409e73745083c67d498bc6b93ce17adll Heodo
2022-02-08 08:26:46df140e5b1a73310de7dd623a849b610f1b5a6c07eee20990448c8fa24946ea54dll Heodo
2022-02-08 07:57:191ce5d47a10eef52825c24066a043ec7a9f6ab919b52c8a90b6c3d44ec1a2222cdll Heodo
2022-02-08 07:46:408ca9858fc2c26009bbd4e2615b5b7efaa1431616065112fa204d3d1f221b394edll Heodo
2022-02-08 06:26:1044a8389edd204f22e7740446d799f0fc29cfebaef0b607d373d5a1c1e12b7f69dll Heodo
2022-02-08 05:27:38642a1453461c2a28e62cd2ce748badd4289bddd0a38ab56fac2ce69b4d4204e5dll Heodo
2022-02-08 05:22:377f3ad9e9ecc36f564f3b57fae8caaf03fd83ac0c46dab69ad12b62277fab1235dll Heodo
2022-02-08 04:22:2545c383bd9641646b2cffec334c0d8f88c5dbd776aa6f694604516b883c2970dcdll Heodo
2022-02-08 03:27:150e3a24af56dff6c59011a1a24f2397f7e3d4830d270a7e10ddca9f741e34342bdll Heodo
2022-02-08 02:53:36837b5be57c5de2613720c9df8bbe3cb6ca5e1e790e896959751209867ba416c7dll Heodo
2022-02-08 01:48:01a1a232ba0a59bccee99438e1bd26fc8ea119de9ee4eec623c8cffe0b5c1616b9dll Heodo
2022-02-08 00:05:1766d04681c612f5d2bfd7f9d5b3139b67792288cf8521948cc3c92c3400e72677dllHeodo
2022-02-07 23:06:40fe19559b46e84e0cd321a94eb6f8626a1f5591b701409182ea44668cea99314bdll Heodo
2022-02-07 22:09:1399f4ad017e48696692aa4383683cf2fcf01c61806c64cfe3bc8f781a52effd9cdll Heodo
2022-02-07 21:12:0207d6c25297d1c275a9f2d8bceede948b02da9dda8c3a307c4767be100be4ffbadll Heodo
2022-02-07 21:02:54bc5813bd37c5f9893898d3eec53f6774cd852a436fc9d92c67d558393259b52edll Heodo
2022-02-07 19:18:5085082052bcdc9ee33911bb77b63aa4da6baa7fbfa1793238ed3b33ead07d7a5edll Heodo
2022-02-07 18:19:56309e35d125b73194af56f726665133e90da9787bf5d23c87c6b6f544afd38fbbdll Heodo
2022-02-07 18:13:35c1c4f682f16bd1148ab5d46cdbfe3e8181ad1c47d6f188199c46ab7403b96b96dll Heodo
2022-02-07 17:45:071d9c2099d7c1f49b975ed48a1a979c0a70ea6f2273a19d13c0bf627e7064f37fdll Heodo
2022-02-07 16:32:0530440c50ca1a15ad66fdffa1fcb95a68eff4169cf6792afe145a7110f352da0adll Heodo