URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ukasian.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-10 09:28:32 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-04 00:21:15 68.66.248.9nl1-ts101.a2hosting.comNot listedAS55293 A2HOSTING- USyes
2025-04-27 12:30:52 104.21.39.65Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 12:30:53 172.67.143.143Not listedAS13335 CLOUDFLARENETn/ano
2020-11-02 00:07:45 68.66.248.55nl1-ss18.a2hosting.comNot listedAS55293 A2HOSTING- USno
2020-08-10 09:28:33 68.66.248.6nl1-ls1.a2hosting.comNot listedAS55293 A2HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-17 17:17:28http://ukasian.com/wp-admin/Znk3yozl/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1
2020-08-10 09:28:33http://ukasian.com/xjahe/personal-7tdsvngfa-s3p...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-17 17:17:28d4c9adba8fecc5a2d68abae9f8a1f1168569938ee3e3ba329ece416370b5e744exe Heodo
2020-08-10 16:38:5503c3b83396d5866a19b8173b63e93341e1fb76a16e082ec63d43b8db44d2b9bedoc Heodo
2020-08-10 16:19:04cc150d98c77467413cca20e24af2ba69870168fa8a7793d89a2ca28cf926323ddoc Heodo
2020-08-10 16:03:4717e64d4370b3832c6f833e6dda968f88a53e39acd56665e1511d8efeafc4c978doc Heodo
2020-08-10 15:48:5026c0eda17c5ff7c88858beb7a132b30d9075607bdf525019481fd9db5b8cb158doc Heodo
2020-08-10 15:34:538c09d14c273ac1e324e2bc448f1a89692f02ba0b88e31a702308dfee4fed164ddoc Heodo
2020-08-10 15:12:4689e6528d812e9c5ebd232efc41db376df49a2e62f631d7bc6687ce1e4505f900doc Heodo
2020-08-10 14:53:090d7254d03f1bc024880861da0e91b0d9ffa356e6f9ac24a4361b453f4ca5d770doc Heodo
2020-08-10 14:33:37f16272641f3e751ee863e6c99be9995bb082fac98363bfdf39694abc46620906docHeodo
2020-08-10 14:05:3145c4190948b0c2820d9f66648aa3c78b09071303b6dbbba413464384ce5d5f72docHeodo
2020-08-10 13:47:41363bf79f27cfcde60d5414d6a5228e37c9d820cf1363c369e31da5a76020108adocHeodo
2020-08-10 13:19:231ffeeaaba729ae71d1ace58dd6403d93cf036e5faf59f53b19437b2e5bb2a26adoc Heodo
2020-08-10 12:56:56254be797ffbf8675b2ea4ba0e525fe4be49e809bf39ec4d8edebd9be0a548468doc Heodo
2020-08-10 12:37:0874dc458390ca47c9ca78e56ed76ffecac17d4ccb4cfa618b3cf6f7464a90ef32doc Heodo
2020-08-10 12:21:00fea75486f779a09cc13afd43618fc5e3fb34dd21ad064fd50b17f9ba0efb21e4doc Heodo
2020-08-10 11:34:16ce0216ccf311399fb9c2ee7c86a1e7da2277236cc474868128f3bb2d6540171fdoc Heodo
2020-08-10 11:03:586c9d4d2d2c02827829675b1a5916d3aa7b7f8c437af123ec2266032b3e36486cdoc Heodo
2020-08-10 10:53:27799851df1ba5830b6c1441b7a66be4f00b95a7f9cb434eea83672a5bfa8bc475doc Heodo
2020-08-10 10:25:27edf3dbc4cc4ac298544c0e364e60d397116943422fbe48978b385aa9401e5d08doc Heodo
2020-08-10 10:05:38fa4d4fd753c9e149d01fd2d3c9c4feb9c2de06940c9fbd3337d959e768eff74adoc Heodo
2020-08-10 09:48:38575baad449aaa019e080f460bc4ad62e864a12b8b87fffe30e2257cf4f8abac3doc Heodo
2020-08-10 09:28:337803a097ad9b21af28cec626f386c2f6ee79ed531481c5ff7a05dbe419601801doc Heodo