URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: teknotown.com
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-11-30 08:58:07 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)
A record(s) observed :10

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-15 14:54:51 156.226.71.87Not listedAS135097 MYCLOUD-AS-AP- HKyes
2025-05-17 10:56:59 154.205.101.70Not listedAS9294 GNETINC-AS-AP- SCno
2025-05-08 12:25:05 172.65.190.172Not listedAS13335 CLOUDFLARENETn/ano
2025-05-03 13:32:23 154.205.100.230Not listedAS9294 GNETINC-AS-AP- SCno
2019-04-04 00:28:52 104.28.18.244Not listedAS13335 CLOUDFLARENET- NZno
2019-04-04 00:28:52 104.28.19.244Not listedAS13335 CLOUDFLARENET- NZno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-03-29 19:18:05http://teknotown.com/wp-admin/sFVEO-29ZP_ojanL-...Offlineemotet ext heodo ext spamhaus
2019-03-18 23:26:31http://teknotown.com/wp-admin/pomev-r93mc-uaietnc/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2019-03-13 16:13:20http://teknotown.com/wp-admin/secure.accs.resou...Offlineemotet ext epoch1 heodo ext unixronin
2019-03-11 13:48:15http://teknotown.com/wp-admin/d96m-5kduyd-gmzsf...Offlineemotet ext heodo ext spamhaus
2019-03-07 17:50:32http://teknotown.com/wp-admin/ynq7-lp2ryu-week....Offlineemotet ext heodo ext spamhaus
2018-11-30 11:44:17http://teknotown.com/kboOF6KH/Offlineemotet ext exe heodo ext abuse_ch
2018-11-30 08:58:09http://teknotown.com/kboOF6KHOfflineemotet ext exe heodo ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-13 16:52:507ddafde7d2ca0cec36d2787089f272e853ac31b79c4279a9ab85dd3d222d1f88unknown  
2025-08-13 05:35:086b6aa3f3ceb57f3ccc2ca730b94469f166e9b9207c95f62381574f47b0c115fcunknown  
2025-08-13 04:33:58454f6d565a72d94580b927249be03270807043bfe60863fa564d6db103653c84unknown  
2025-08-13 03:39:316b6aa3f3ceb57f3ccc2ca730b94469f166e9b9207c95f62381574f47b0c115fcunknown  
2019-03-18 23:46:12c7effcaaa891bdf9abd87ded7e9148a8d5c883c95472120d4be76d8d391468e8docx  
2019-03-11 22:14:41e69742e157bd0b2dc16aec06611d17972f1b733e8caff3f4234057580ac5eddedocHeodo
2019-03-08 22:45:30da1b47eb285b4a7c79c91c9f33b6a4088b8b03c175bc900669211b9949fd8b35docx