URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tigela.org.np
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-07 15:19:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 11:52:41 109.74.196.164euuk1.armadaservers.comNot listedAS63949 AKAMAI-LINODE-AP- GByes
2022-02-22 16:51:34 139.162.207.60139-162-207-60.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- GBno
2022-02-07 15:19:06 63.143.33.122host106.idc-internet.comNot listedAS46475 LIMESTONENETWORKS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-07 15:19:06https://tigela.org.np/wp-content/Irp27O71/Offlinedll emotet ext epoch4 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-08 12:13:293e1eee856994fc89824b78a3bf1b5ef183fec45e91c29c880b34558d3a729191dll Heodo
2022-02-08 11:15:52b866e942ca13784791ca0defd1740fdcfea9c9e9ec66d3db6850439724e88974dll Heodo
2022-02-08 11:02:020822e0ab42d0e8ae5401b762a35202ba1347b2202f34add75d04fcd8daa7f762dll Heodo
2022-02-08 09:09:23d5cc8c89497af93c3c69f537badab46540e02a0488384de3dacfbc17cc60bdf6dll Heodo
2022-02-08 08:11:12b01590e7455ef9865b1b12df7ba69e2fd7211141bf84ef147d13e0bc3c72178cdll Heodo
2022-02-08 07:58:104dddac41c4d6d21164aa6da59a186b45d7ce1be74830dc28aa3615dc1e4cc481dll Heodo
2022-02-08 06:50:51115edfe04728d1e65299cac63e6642c82f0a3ed773524bd0c1756a72bac330eddll Heodo
2022-02-08 06:43:03a4460b6160e72280fe0939a6ab49e758787936db27ec78be4d7429cf5cefcb88dll Heodo
2022-02-08 06:20:15e3f295379b5f97dd1364ebd9fb2151b38753b5b3b9879386918d1246f04a22efdll Heodo
2022-02-08 05:22:350d6b13fe32bbeb1a9378a4e48aac1c686f648d0a1c80b64612d9f824477ae1cfdll Heodo
2022-02-08 04:08:12e0fcd24c444011cd286e0cdd0f372a96a4d88de6eee108b90cd92b182b09042ddll Heodo
2022-02-08 03:25:43447f07a793101cf79b92a1bf0b72cb27023986a3151ab1507c19734f5101d13adll Heodo
2022-02-08 02:55:33cb0dbdebb52ce31ce551552d448dade6725784b85ff5ccdd732130d551eac6c8dll Heodo
2022-02-08 01:03:434627c97a2aef209a83330c5775d1aecf4d396b43992a9eac38e3abefbc2b89c2dll Heodo
2022-02-08 00:04:30e0fc845b61aa854edd5a132c33bec9f8973156ffe575543f75e50cf39ab18aecdllHeodo
2022-02-07 23:21:42e6ab690d0b76e948f1134354c20c58b0cdfe36a137c1db37b61951924e189f3edll Heodo
2022-02-07 23:02:403772bc010d00ef6d688ff3b73a2c30ebc509d9afe7cbd255db229bbb7823951edll Heodo
2022-02-07 21:10:204372effedc1da84cbc49d9694f3f5a80844a4d34e9d0e188a9de261e93370cf5dll Heodo
2022-02-07 20:21:43d1a7ba707dabe20334779e0a99144eaf6bf5c3799919489734e579a73d7082d7dll Heodo
2022-02-07 19:18:09da1be961fa9591bf5ce4df2d645775afc233127bd766e0a6863a8698cc42e620dll Heodo
2022-02-07 19:11:1920309369d7196c397813b4985075c17555f5c02225416dff20e83c3710cd987edll Heodo
2022-02-07 18:16:5584320cc10bed95bd16e72e3352052f432bd16ccb316317741feb96ca25f8fc59dll Heodo
2022-02-07 17:02:03d0ff6bd977055d039487bc64a3c2aaa82a804136fde55ae77cafdcf6f00d29d9dllHeodo
2022-02-07 16:49:05a7e71f53e592753d8550ecdd302a449f3645d5637fb3033ab7680663447ced4bdll Heodo
2022-02-07 15:19:067fb5bc6201d870fdf2bc0142366440b66f1317aadffa3a6eec328ef0aea078dfdll Heodo