URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: theleus.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-27 21:12:41 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-07 03:22:18 3.233.30.191ns2.namepros-dns.comNot listedAS16509 AMAZON-02- USyes
2025-07-24 04:38:58 44.232.173.249ec2-44-232-173-249.us-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-07-24 04:38:58 52.40.42.113ec2-52-40-42-113.us-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2020-07-27 21:12:43 198.38.77.48union.tchmachines.comNot listedAS16556 TOTALCHOICE-HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-27 21:12:43http://theleus.com/private/OWAZu8/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-29 08:58:5405b93bc503bfbc472b173b4294ed7a2742d730b09ee9d1083a4dee510292c434exe Heodo
2020-07-29 08:45:34d16ca4d67905b4da308a1e522f6b4c6fabf7fa645aa7bfa8e1c871ecaa5fcd51exe Heodo
2020-07-29 08:28:2257a4bd46294b277d46dc55e8585f820418be645ad9eadfac9597e5d37fd73df8exe Heodo
2020-07-29 07:36:47f2310b366a5269433bd728ec2a42c2c3d2cd1abefd96b3cbadb7f3b6e87afe05exe Heodo
2020-07-29 07:14:01281d961efc8307d49b2bcd6ea908fb7be65627c121a4b9cc7c255962b80ee120exe Heodo
2020-07-29 07:01:43bbfe4d22d8f7b718ffe7789831d8ec3c5009b6e15d323fd0b06f6891b00b7efcexe Heodo
2020-07-29 06:37:3678a980a9fe720a6927b2460e03b603b8d202143b7be07ac93d7624a3b24b007bexe Heodo
2020-07-29 05:29:558ce484ed1e13fab41fff5dbf905f0f49fcb09f8a49e09799ce24bfa5d0a656eaexe Heodo
2020-07-29 05:14:4878c1dd2d29935f97d49ee073cb9c8032c9ea34f8a0f75553ba72fb15ab2efbd6exe Heodo
2020-07-29 05:00:0896653badea1954e39a441e16b90b38b7c01e695aadb391beba3580b4dcb1f87cexe Heodo
2020-07-29 04:38:475a613b55397a102151931712cdcf1a0107ddcb035d892af86dc8fd1b0342c487exe Heodo
2020-07-29 04:25:0025d7ead4172c19b516d983d8ec1ea70061e907fa5d181d49acc3c40e72d92ee0exe Heodo
2020-07-29 04:10:0891b620ed071b11e0a1c34572768858f77eb4f7a9691dc2cc892feeb544cfd28aexe Heodo
2020-07-29 03:54:266c21c9a3b8b82ac9ae53c3b37b556305d69535c6789300b3bb918ea40fc2ae62exe Heodo
2020-07-29 03:39:00af01b9d41bcd535ee187fd73b5813eb25c9cf453ff9b2284a51c2e52f21c5fc5exe Heodo
2020-07-29 03:13:1936778e9036db79489be0fddf73fc9601518743712db0dd8dacc1c85dc1ea935dexe Heodo
2020-07-29 01:41:27bb6b5cce262008416814bc81552785e7ff36cf10323f03e43468eba7b868c77bexe Heodo
2020-07-29 01:26:1881f09284726f129383f3e840bb03998212b67c8e001813624d2e11788b4ff1a6exe Heodo
2020-07-29 01:00:4559a5b495bd6d38b0230072a5fc0d477a05c7e4d4c65d51aa51cd137ef6a3c2c2exe Heodo
2020-07-29 00:31:349211228f4bcb53cdacc09172fedc36f8c12192a343fddaa1f68722d85855079dexe Heodo
2020-07-29 00:11:46417cdb97e399b4956d9bb5911dae7564ab0081f9aff650ba1ebc5a876c78b927exe Heodo
2020-07-28 23:49:41c2aea7ac99d87d9b6d1acef58f28514443c623e70d04d357e29f57857ea38b0cexe Heodo
2020-07-28 23:36:081d42a910f697ad3b3d5a031fb50eeeb2500a5cf8a8704f312b3e2b10a4ca22b7exe Heodo
2020-07-28 23:27:50a841077c88e048606f72387a1a3dfad587f1dd07b6c39544c78db48b7794af44exe Heodo
2020-07-28 22:59:5359ce131df13f0bbce47ce1c07032c2d0eb12155643fd05d41bc64ff31ccd4247exe Heodo
2020-07-28 22:37:408770278b4439138160316d998a2389b494d6f3fd700acb1290d82c3aebd474d4exe Heodo
2020-07-28 22:36:538770278b4439138160316d998a2389b494d6f3fd700acb1290d82c3aebd474d4exe Heodo
2020-07-28 22:05:445cfa49b7daae083aa18658788bf3cb4be5e79b85aa077fc59b568c6264aad924exe Heodo
2020-07-28 21:45:17cd09996f921c73dddc28d0c4399e9f5aa8a2db5bf3a1f0f42c1e046d3811862eexe Heodo
2020-07-28 21:16:1778ef67769a77e12036739a0fe6c60234c21c9f2c44508df380ece47f86e36cdbexe Heodo
2020-07-28 20:50:354dbe9ccba82c722e09f7093ffb34903445cea565ea2f46e9e54505658145fbf4exe Heodo
2020-07-28 20:28:36bc56c12ea1f485304342358668a08862743747a53c1029ea49811a88c7d91be1exe Heodo
2020-07-28 20:08:402b570dffa4596ceb76c1c071bc0698c1c323854e34b808c5ef6f0cf95a923862exe Heodo
2020-07-28 19:36:342e8eca0be7f4790f05f4fc8773165a0bd8ecc6c4134448782efbf5ee03271f24exe Heodo
2020-07-28 19:16:30aea8bc4dec91c04348d5842e4faea9358490d9097642a6965dc6a93e6811566bexe Heodo
2020-07-28 18:45:36c794f85b39d26cc0f011dee5ccd8d99673a17493a18c1444054a9277574f1a58exe Heodo
2020-07-28 18:20:4765cc4c8bb15ef25b83dc61ef7402fe4b91f2065e5072b411115ebb3441a6998bexe Heodo
2020-07-28 18:03:246ccc11bfcff5dec296f73a61976b9dfcc1fa4b7f63656da7775afc88a5334e8bexe Heodo
2020-07-28 17:42:5042fd7d9803d092a08e3dc270bc6c5d887dbf5c4bfbf4212316bab2bfee6a1e5aexe Heodo
2020-07-28 17:21:277947be99c424d5dad7a700c161f132ae9cf65141a60f6fcae36f513b3d194b7dexe Heodo
2020-07-28 17:03:179661581c9c8846b68af329af43955d395f94a3917ab14b35c7e51a2b47bc7058exe Heodo
2020-07-28 16:30:167405e11c62c55df98cffce479e471bc6ddb6f888b97e37c21b6d799a9bd4197aexe Heodo
2020-07-28 15:55:32d24545365feaee24426261783f4f96d7dcf44554903f83ee5e4991479ac9ac22exe Heodo
2020-07-28 15:33:277ddaf1a21900db9b0c17ac7183183b174e374b4be83ae1c896aac0e2433ca6adexe Heodo
2020-07-28 15:28:53a910caac5c97c47642bc3b6bdc59aed6f7e7f0fb0248fae2453f7bdd5e168ed3exe Heodo
2020-07-28 15:05:507b7988337de7ef8923198dd83c2d91e089d338284ce46c8aed7ca502efdb0fbcexe Heodo
2020-07-28 14:36:48cb06a09534fa778eb24c04e030020d87655cf8d8cdc0bca5a5ccc200d8c2a6e8exe Heodo
2020-07-28 13:27:569cc0aadbd9af3881033ed4df3961ef89355ba3992cf9711cdf9cd9e1bcd3967cexe Heodo
2020-07-28 13:09:23a8231b23f8194666d11ade8268d5ab65eeb9023cfa2d9fda23410c7e63f4b872exe Heodo
2020-07-28 12:43:11a4593012d0233f53680dfc0006d95d09d23181eea5dcb0dfd06511787177d6ccexe Heodo
2020-07-28 12:30:033a72f3f16f11061808d2ee452d7dac15145fc38c62c27466d90e9658efdea1cbexe Heodo
2020-07-28 12:00:08603948b56d4c59d23ffb576c076f8b658c076a62351b063433a9091d5af689a1exe Heodo
2020-07-28 11:38:26e25a80efda265b891baa05afa989a7050013f885aca94308add5cd234869e226exe Heodo
2020-07-28 11:37:250cd22b617e0616e29cbfc376650d2f6e8a64754041c4884b7f13aca20608e404exeHeodo
2020-07-28 11:16:06cb87f4577277f138fee4a88d337a78874a9ba85a87b9fdc1127cc744280ff2feexe Heodo
2020-07-28 10:53:03ec8f2953f718547a7e5d772c8ef21ed115f0303c1d946bd7b08ac8d6b99f10daexe Heodo
2020-07-28 10:33:173944fe8b9ad466d9057529b27d634beb47c996e7a7f2328480926b979162629fexeHeodo
2020-07-28 10:17:5387de56612a013538ce116f34ca0f429d29506c41f93ae23d57ef4b8ff0271c49exe Heodo
2020-07-28 10:02:30c030781a0ed8c444d4990bf66179ebe54217a7ea5f928e6366ec47118eb19973exeHeodo
2020-07-28 09:37:2368aa81a9893a0cf445c87b4655e2eb3452ffbbc8194f23626cf370bab6b98d55exe Heodo
2020-07-28 08:07:080cebf4c51fe79f45d17ee3a4f91f59a2b478ba38f0afe5acedb7f8af4464f91aexe Heodo
2020-07-28 07:52:073f17e829d0ac19c6d2118e91957ba17db232f27e94e41b134c57a504628cefbbexe Heodo
2020-07-28 07:36:054c8184c343cfef857320d6fcaca906f56ed0eda87550c353fc0c34e5e444b6f8exeHeodo
2020-07-28 07:18:352d6c03166bf6600f7edff99ab44777b96e4dfb907fe2e8f467a9ce8742c7bc08exeHeodo
2020-07-28 04:16:079665498004621784d493c2fb7d69981af85117b50b9b7ea37dd7c54b8d49454bexe Heodo
2020-07-28 04:00:37632c771d6d25e95571d3eb69f4494d99cd2407850d46c84855f108c3dca30962exe Heodo
2020-07-28 03:47:20a5b5d8a1ded70c22be3f27208982e0f1009b8f1b6cf08a5fa6d6b8e75b541bd2exe Heodo
2020-07-28 03:37:27145bc70823670328f1e1dd4fa403b0cf949ea0f7bceac8e292b69817f816359fexe Heodo
2020-07-28 03:31:405e24fd0edeac75a6adf923df7d78cf0049bff3b4d38e0b9de1688465d3da23faexe Heodo
2020-07-28 03:12:596e3a5484559d3c75a8902ca50ad058c42406a9c6217f042560518534263eb484exe Heodo
2020-07-28 03:00:37fa722b7c10c7c14366285d45b828519dc894981d2772829ca4e88d0f14ac74e5exe Heodo
2020-07-28 02:45:27c468a96a2f2638a15ab62d3a26a7d272a6287232d419019a3754aa3aafd8e5e6exe Heodo
2020-07-28 02:32:470d7ccc1b4c3ac6166cb028f6f0a0f89c5f2e25098a54c0ebefed30365075266eexe Heodo
2020-07-28 02:27:20066cbe2e817d3ae961969d4a0fe0ad287a8447638b26e6e3da65a2f3fa874321exe Heodo
2020-07-28 02:27:183e4c22a3be8ba83712bd5088798ef2a6142707ac9b8213e4086bb6faad03665dexe Heodo
2020-07-28 01:29:10967c35b788e2fa3ec4ef69a1dac460c9ce4a7751c74fab66aa6d2fb167dba434exe Heodo
2020-07-28 00:49:00db874004bd4866de052402b9ed6d6707e0a4268c3b9e637776d34cead2b7847eexe Heodo
2020-07-28 00:44:42dbd48eea0ca42885f7e37f6204355d997e4db0eee82af1a08575b7eff1113cffexe Heodo
2020-07-28 00:36:30555589ed0aa13e2a94aa2bb7f28e7dc92d41d0782dd792321c1ed6326e13aa7aexe Heodo
2020-07-28 00:24:53170e935e3d183fe3a000489276615f61315a644f7c4f26fe6ba96f771ad2bf7fexe Heodo
2020-07-27 22:53:277ea3e5eecc012bb63e53a9ea1b6d8bd20a1aaa0efdf98fc3381796850445698eexe Heodo
2020-07-27 22:42:58da988136f531e5aabf5ffc509cdc3516d2cad319dc9160d848b2f0d26d074fb5exe Heodo
2020-07-27 22:28:38365de40ad2b86161e2d7e5d315d48ecc6ef59095f8c7519e38ee96d3c62364bcexe Heodo
2020-07-27 22:15:24ad8d3c6c1af30c9cfbc042436625d94b4419ba622c6584479fb44f2aa5c33399exe Heodo
2020-07-27 22:01:308bbeecec53ec6bfc812a0b9072c3c1a3fac20f46e2d708829c67f2fdf283f63fexe Heodo
2020-07-27 21:44:41823593dda9cd7ef4c01a33e85cdc85bb62cd8b4e55998efd7676687761ef13efexe Heodo
2020-07-27 21:26:05fad04865548270fa2cf953138e3da82fab8bfcc5758b3849da2625f83359b3aeexe Heodo
2020-07-27 21:12:4310f83b148873811b5075ecb4c01f4f5b80ee7704a294335d61735de1ff033c8dexe Heodo