URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: test.hotwp.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-10-10 18:50:14 UTC
Total malware sites :1
A record(s) observed :15

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-08 09:52:27 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ayes
2025-08-08 09:52:27 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-04 19:24:49 104.21.19.90Not listedAS13335 CLOUDFLARENETn/ano
2025-09-04 19:24:49 172.67.185.180Not listedAS13335 CLOUDFLARENETn/ano
2025-07-11 13:24:02 172.65.190.172Not listedAS13335 CLOUDFLARENETn/ano
2025-06-27 15:03:12 222.167.254.41Not listedAS54600 PEG-SV- USno
2025-05-31 11:06:50 222.167.252.41Not listedAS54600 PEG-SV- USno
2025-05-22 13:21:25 38.63.7.41Not listedAS174 COGENT-174- USno
2025-04-27 17:05:45 154.55.71.167Not listedAS40065 CNSERVERS- TWno
2020-03-03 03:06:14 139.99.90.22vps-b7c03602.vps.ovh.caNot listedAS16276 OVH- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-10-10 18:50:20http://test.hotwp.net/wp-admin/qa0/Offlineemotet ext epoch1 exe heodo ext p5yb34m