URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: toyota-4wd.com
Domain registrar:NameSilo -
Domain registration date:2021-02-02 13:48:05 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-18 23:31:05 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 06:23:22 47.57.3.200Not listedAS45102 ALIBABA-CN-NET- HKno
2022-03-18 23:31:09 213.136.88.47server.asiahilux-dubai.comNot listedAS51167 CONTABO- FRno
2023-02-02 21:48:27 91.195.240.12Not listedAS47846 SEDO-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-18 23:31:09https://toyota-4wd.com/wp-content/55d3MMJGg6CMS...Offlineemotet ext epoch4 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-19 12:02:02d6c84cec4eca4d6cffc6968d9745961005a6e8fcc996e71cc8e0d645b0997a0cdll Heodo
2022-03-19 08:04:5487c85dcd54b7a7a4f0a0db9762d3f594d5b8b1cf6fd9c2486006fb083cd1b292dll Heodo
2022-03-19 07:12:477ee6a840de034a228288589636059f642636a643b284b6cc0eb76e2dd957a9efdll Heodo
2022-03-19 06:53:4098a100503fd4ef3b12018504e71804b4841d4af84f0ef952ebf80c7f734973aadll Heodo
2022-03-19 06:14:2334c88b9a6c5734b2fa2f2da4cd214fcf32d1774b1b2e3bfd4b5839f0b67dcf4edll Heodo
2022-03-19 05:56:553f102bc25fa2c1fd8701aee4582852a22f31226898b264fd248e6ce090478b13dll Heodo
2022-03-19 05:10:15ae38f1042e90369cc1cf130e4d689dbd87d3816c534c341a2f675b693cc507acdll Heodo
2022-03-19 04:33:5732f5395d1f3d538af111eb99ab5f2123c5f6f000d50587056b5d9fd47d75c643dll Heodo
2022-03-19 04:01:00fd54253b9bc6b2eba2c9205a8bb54e5fadd7fabe2c2e615654f64fb66b94b75bdll Heodo
2022-03-19 03:29:58135753e0a6adb5fc3008309d21c4ed0061893556d894049c06e296d37d6ced86dll Heodo
2022-03-19 02:45:56d9e4176c3179cce0358df48c80944b61fd7fb8497abe93e647088047ab3ffdb8dll Heodo
2022-03-19 02:10:27cf8a5bc7eb5ef26351d35b8c0fcdb7f8a716119bbd0d493c6f4381239f7d601bdll Heodo
2022-03-19 02:05:365e8674819e2940abe0c38da81cbf3d7aefd459dfcb4b7046cf1923165752e198dll Heodo
2022-03-19 01:26:086355822f6b31343dd91c966a7212f091019bd9f927b5478c76f2e1d317845053dllHeodo
2022-03-19 00:42:4540f42e28d4a152132dc3ce9ce1b3ce039886378cd2184eb86981d244fddc2310dll Heodo
2022-03-19 00:04:14d6b342c791b33248fe2f1f9c87093c2eb606df52d6f1500dd083ff594c3f8dcddll Heodo
2022-03-18 23:31:0911d5a7200ca243c3b3efacb6e6a23effd623c6aaae01e980c4bf7f178c586bd9dll Heodo