URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: thedigitalsquad.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-14 18:10:04 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 03:02:23 65.108.78.242server.cpanell.topNot listedAS24940 HETZNER-AS- FIyes
2025-07-16 05:01:42 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-07-16 05:01:42 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-01-15 05:03:22 104.21.68.50Not listedAS13335 CLOUDFLARENETn/ano
2020-10-14 18:10:05 172.67.186.220Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-19 13:35:10http://thedigitalsquad.net/sitemap/Wy6wU0/Offlineemotet ext epoch3 exe heodo ext Cryptolaemus1
2020-10-17 01:41:03http://thedigitalsquad.net/sitemap/eTrac/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-10-14 18:10:05http://thedigitalsquad.net/sitemap/attachments/...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-19 13:35:10445c44e77d25ed5e5a7c174a3641cc52b5dae72abc7915578fcf6683c9b05247exe Heodo
2020-10-17 08:38:224ff23dc1f01527658819824659e03edb6ee7d16cdf8704e61548acf040415238docHeodo
2020-10-17 08:12:20ff9996026d66c80170010bab3d84d0ba1ecac3a6b87f8e694008feb0bc0b3d4fdocHeodo
2020-10-17 07:36:33a9c15187e473446421b0e900dcd094ee8be1c5ac010d6d2a19bcc988f60d7ddbdocHeodo
2020-10-17 06:36:5582886986ef5507c85b6e17a8904a70bb3b67212863f5f835fa7bc3392d070f80docHeodo
2020-10-17 06:09:103ad213e4b7d2660593144245f06a9ba71b10e326cbf5996b2f632ed5457e77d7docHeodo
2020-10-17 05:59:20127e5f88e44a1886181820087f5a2d1bb09ecec7ca49c027c33c9cdead79c1acdocHeodo
2020-10-17 05:46:156d5ed047cba0f40a2bd108fdb285520a5590c29ac64b7a9d32a20719905f1e7cdocHeodo
2020-10-17 05:25:38d718b0058aaa9406fd6bfdf6d7f13e8963789c2c0b331e70fd6e8edd6b1f22ebdocHeodo
2020-10-17 04:49:4269e669abaf2af59fb872755c1dbaac25b25cc27d4dd460db7162fe8b3ebdb158docHeodo
2020-10-17 04:08:007563b098e425087d70e59bc0ad1d712d39ec6286fc63eaa9a9eea68f9a7ede26docHeodo
2020-10-17 03:35:408358ae3aef04560a786b84a17aa88a981d700993291a3b11aa001fab16829ad9docHeodo
2020-10-17 03:10:23c85fe8825461de0503c8b9b612f01c88a1124e0c33ace58d20c22cf40c4bd03fdocHeodo
2020-10-17 03:01:37cc0b6720262ce77c846acb19ec1f31511f0f465f1bfd03bd5e8bfb3c6b3e9828docHeodo
2020-10-17 02:33:4361cf4ff84de3e35dd24e8df00464aa832912b8c378cbffc5da91abc576c809fddocHeodo
2020-10-17 02:06:5219b133b4ad7b5c3072ca746a89f06864d39ca4c8985ddfb2eeadd125ff5cd7a7docHeodo
2020-10-17 01:41:03055030f2d18fed27b4bc4f3e461f0eceb8308cbc3182ec2eca899c70d9aee715docHeodo
2020-10-14 18:27:46b89bb990fae404896ef0862b76296dd30ec5a0c65b2fd307e60abdc5821a9ea0docHeodo
2020-10-14 18:10:047f12ac5050b001bf7409ea74f6b6dad0f8bd7d4fc74773887b8ed8e571d12ceadocHeodo