URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host tecserv.us.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-06-01 15:21:27 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-06-01 15:21:39184.168.26.1p3nlhg290c1290.shr.prod.phx3.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC- USyes

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-17 16:52:07http://tecserv.us/Amazon/En_us/Information/12_18/Offlinedoc emotet heodo CleanAnonymous
2018-12-14 16:24:27http://tecserv.us/En_us/Transactions/12_18/Offlineemotet epoch1 heodo Clean@Cryptolaemus1
2018-12-14 15:24:02http://tecserv.us/En_us/Transactions/12_18Offlinedoc Clean@zbetcheckin
2018-12-12 15:37:37http://tecserv.us/En_us/Messages/122018/Offlineemotet epoch1 heodo Clean@Cryptolaemus1
2018-09-24 13:48:53http://tecserv.us/ups.com/WebTracking/PI-91665811279004Offlinedoc emotet Clean@unixronin
2018-06-18 14:21:20http://tecserv.us/TedsCars/gUSyoA7/Offlineemotet epoch1 heodo payload Clean@JRoosen
2018-06-13 16:44:04http://tecserv.us/IRS-Transcripts-07/3/Offlinedoc emotet epoch1 heodo Clean@JRoosen
2018-06-06 21:04:03http://tecserv.us/ups.com/WebTracking/PI-91665811279004/Offlinedoc emotet heodo Clean@JRoosen
2018-06-01 15:21:39http://tecserv.us/ups.com/WebTracking/QR-33780810/Offlinedoc emotet heodo Clean@JRoosen