URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: uagritech.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-22 08:42:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-08-01 21:03:09 99.83.154.118a51062ecadbb5a26e.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-02-08 00:24:49 74.220.199.6parking.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2021-01-22 08:42:05 162.241.253.129box5793.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-22 08:42:05http://uagritech.com/cgi-bin/a5G/Offlineemotet ext epoch1 exe heodo ext waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-22 22:38:4558732dac726ef318569cb9cbe21371de46bee4c87090a61cf1bdaa591b9e0db7dll Heodo
2021-01-22 22:04:040b4715beac854bbb23f2bcaa358df2e75546fdb965f7bf43dee03676dfffe930dll Heodo
2021-01-22 21:43:5444fd5351894837ee85cf8250b9339a413d867bc2df3ac8662a4df6f7c1ad8f74dll Heodo
2021-01-22 21:28:150bcdc7db8504ad79bbc4e79ae00e5af6a859048875c6eb283e282d9d49e40c12dll Heodo
2021-01-22 21:01:493a5c550ee81be161b93f7a52c46cd0bc1363f285d5aacb4f73c394814aa32c68dll Heodo
2021-01-22 20:41:477e8c0752e1f39c51f18171fbebdbfdb47404aa47cc7cd3f806ceac856d6ab33cdll Heodo
2021-01-22 20:27:115e4fdfc42c70de81eae02b59887eeac2c6049852ed37081521f97b6d6d31d667dll Heodo
2021-01-22 20:20:583c537931abb34616a500f34311a280540e505d2031d42378456adb7aafd79b41dll Heodo
2021-01-22 20:07:0313fe2cbc4d844dccf0d1268879d7d157464ed8d8a4917adbb882451f7626779cdll Heodo
2021-01-22 19:39:283048a9b2947439ef76185217b531277e2b24e5c9f5895abb1a67fc752b206906dll Heodo
2021-01-22 19:12:24cf8db4c7857eaa6df75fe3ea3a41a08180fe9474a8d8d21e75ceb23ec6850e24dll Heodo
2021-01-22 18:20:089151ca3bb95144cd2add57158c45b6c089f7019ba18701ad09aaaf0a90ee1b42dll Heodo
2021-01-22 17:59:1387986258d7fbd32ddf23ddd9e15319b6171deb12ce4e32a821a81b535715a89adll Heodo
2021-01-22 17:32:46c6a64fb40908e1b60189f0ce2fb861a4251a1b39265787b195a55e597a33158cdll Heodo
2021-01-22 17:23:12eda1a91065b700ab348e700e107b1c12aa453e0f5f117541d8a5df575812133bdll Heodo
2021-01-22 17:07:51b5cfff17583096c814ffecf96d837387db12e73d1b7b7ff8fb191514116fa47adll Heodo
2021-01-22 16:20:58dc97a110fa270a336720d0c06ef0d66674117f4ec02655a7827ec91976377e04dll Heodo
2021-01-22 16:06:3128ce10850f5a13943cd6905748b2653156f90c1b02aecd1d1a4981f66a51ffabdll Heodo
2021-01-22 15:55:498ed6d766d2460acdf4e864cb7d7b3b143be98b839493dec136214eaa6c39b734dll Heodo
2021-01-22 14:56:3759f04909e11a71c2762d54311a74242cf0256d81970a44cf99709fb032b34a92dll Heodo
2021-01-22 14:45:33a10a8fd41816982d99a367d3a4fedfe4cdd29bbb1d8dde18733f5295c27d3a53dll Heodo
2021-01-22 14:31:49107d1c4a449c90d70176ce55bf90539164bd9458fa74b5876df73d97426fd75bdll Heodo
2021-01-22 14:16:456efdf8b75115e8c43c65a8f4dda951c9a76f1b7501101aa2b39aac1b811809c0dll Heodo
2021-01-22 13:59:224aee3f0b3ba7afc3f21da9dc0e0e848358954bbee41cbea2e53017a4c23e6997dll Heodo
2021-01-22 13:50:267af14ef91a6c9dd048273daec9c95822a765dba1a92f327d2004565352152d96dll Heodo
2021-01-22 10:45:54f5a2ec7716664ae860577125e6e304b393e655a69cdd48c93387c0ec08cc98d5dllHeodo
2021-01-22 08:42:054f0aebbe2bd0308a5f20f96491a8c87875b2373da050bb36f8b9fc3200dc8215dllHeodo