URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: technoswift.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 11:36:42 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-16 10:36:32 166.62.28.121121.28.62.166.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- SGno
2020-08-14 11:36:42 85.187.128.19sg1-sr4.supercp.comNot listedAS55293 A2HOSTING- SGno
2020-08-14 11:36:43 192.64.119.208Not listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 11:36:43http://technoswift.net/wp-admin/kkhk7-uj-690454/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 09:59:57b9d2bc9624f1e81b007fd1d89170294eb6eb29c779f83f4e75576a0fa3fa421adocHeodo
2020-08-15 09:30:358166f9d5647da264c416fb5151e8f329302965d5717c6d4210d146fc41acd16adocHeodo
2020-08-15 09:13:358f88dd80520ccf01a78eb649cc1a7918ff8a0c36019a7b5ecf59ae9c79afae7ddocHeodo
2020-08-15 07:44:07dae18dd9a3dbbfc06b5e5c10fc7dc93c670a0c191d7cb7065e9d478503274567docHeodo
2020-08-15 05:55:13eab20959bc5079c5ec1b36810cc4511087f90d989ca29d297bb6b000c7bcdcc0docHeodo
2020-08-15 05:37:341fa982bca8d93cd9a5ed44c8adf3099360cb86476a38bcaa476ad2e23b32d854docHeodo
2020-08-15 05:06:01b50b82d54433037c2321938527d4485ff439d6f6d5871ca14b88b0c887a51116docHeodo
2020-08-15 04:47:264ac2ea7a4562ab7ea7c23ad733c0e4d0767936120e16b62e0248ce2af1beec1fdocHeodo
2020-08-15 04:37:51a586ca4e85501c0a9314f75805246a91c9de018ebd8b6441982d39e8d13f8a64docHeodo
2020-08-15 04:06:120626485a74e0892c83b55a0cf767cdf3603df9603dfe205ff02ab869d24ec13ddocHeodo
2020-08-15 03:02:38b2d036dd47e8eed612cd5fe5dae22412f857756ad9f6a4a293cf7990bc73c8b3docHeodo
2020-08-15 02:35:057685045c26c2b57ea45d561d8f6b9d4746939825e90633a6e3d72480686c1858docHeodo
2020-08-15 00:42:58bae86b6997572490c22ffc81ad1e24ecce68f3d2124066b202be498fbd9b7d72docHeodo
2020-08-14 19:57:1095cc5ce9259454f349e823d4c1e4c546a303dacfd17dd01c60af5f9dfb171cb6docHeodo
2020-08-14 18:30:209b4854075266029833675d652902a1baea75b0755d7ebcd141125072d0967b65docHeodo
2020-08-14 15:07:5930a1ebc7ccadab73a1c6463cf44298031c3f083c146a97526e66aeb4f851e881docHeodo
2020-08-14 12:46:538668a5aae3e7db513fdb925e16313049037536bc67a86ed756b682c98b7f6f09docHeodo
2020-08-14 12:30:434935ab1182453885ea821cc714b1679ae7eeb54bb744fe13f52ad6e954a7f785docHeodo
2020-08-14 12:08:1021c03f89445c00697538e5c37bbb08c294916530de14212a348e7fabbe09a554docHeodo