URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ukinvestorgate.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-21 22:03:02 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-01-27 17:30:55 94.237.56.224Not listedAS202053 UPCLOUD- GBno
2021-01-25 19:06:46 69.163.228.148apache2-udder.flagg.dreamhost.comNot listedAS26347 DREAMHOST-AS- USno
2021-01-14 00:38:02 104.21.22.190Not listedAS13335 CLOUDFLARENETn/ano
2020-09-21 22:03:03 172.67.206.163Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-24 05:21:08https://ukinvestorgate.com/wp-admin/DOC/2jMCfrr...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-21 22:03:03https://ukinvestorgate.com/wp-admin/parts_service/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-24 14:03:573db5537afa72bac1ad7529d5026dc4962d42b2e6af1cb12235cfc1f8751676b5docHeodo
2020-09-24 13:55:591bd2c4e63cc18ec616e810626207f2b2918063a299e4016df319fe82b8084621docHeodo
2020-09-24 13:24:12a6a2cc6d2d1e9340181c5871b0900a88187a6290363210efa3197d0c024d9821docHeodo
2020-09-24 12:58:32ab018f08c79d8a8f4335f9fa35e22f6d573ddcf82c5a1db98a8ceb6671bae1b6docHeodo
2020-09-24 12:16:29162b68e90f80db94074b88af43ec09ef7e693ebc8626c339e22cc213b9433b0edocHeodo
2020-09-24 11:40:54813746f9ab7f5febeeae88626f82ec4c28390336a202a16ca16112e19c702d90docHeodo
2020-09-24 11:12:17337c448330447e39dbdc41539c6dc162aabc8ea6f9a703187bf2e2e3cd7f49f9docHeodo
2020-09-24 11:04:47972a446499e3831b2bb7e46691fb3e7e927f60e8c86be2d49922cfbbfc1854f7docHeodo
2020-09-24 10:28:29f639c68c402624a47119cf4e726a67b5eb1135e4d263382081fda1b0ab1842f4docHeodo
2020-09-24 10:00:006d9593629624074aa0ff3f5beab0843fe2fd2ff42c041e36225bdb02d33b6793docHeodo
2020-09-24 09:18:39eef0320291fea4b857e373510a8f865102bf7eeabf6556cff02a87558c4cf776docHeodo
2020-09-24 09:05:06439df4997262d2db8e015f7449a8b33c9bf2c8db09f8b184d69c7ad6fe968c92docHeodo
2020-09-24 08:32:03270f0d810118a907f70cfaf2095542eb0cdf2ae81079249b8f9c262cdc858568docHeodo
2020-09-24 08:04:106dbe352bb9203a1b268ab47b35f5d86b3f309a8e2595f8ece915bd547bc9c33fdocHeodo
2020-09-24 07:36:1732723c361acd35dd884c3243982f32d78493255655f04ef6246b0c4fdb18f3f5docHeodo
2020-09-24 07:04:06528d22e4147caf0834320353578b1d3fb47fe97bd180e7d2bf9f764980d14bacdocHeodo
2020-09-24 06:25:3023db49d5886e034ad5ab63515e5c5c6b6374d5bad5c9b68cfb3d84f39451a301docHeodo
2020-09-24 05:54:184d3529cb9c98cae2816c1b943de1d50f2acb43769d288fffa8b7e28324faa8d8docHeodo
2020-09-24 05:21:08e7f6321d905f4db566091d8d4520f4d128bf66917cc86d794f1d435352ed2899docHeodo
2020-09-21 22:28:24ce745f41bc3c216b25b5d553cff68854d633377995317973429dc64180aa89efdocHeodo
2020-09-21 22:03:03453c3ac3a5da64e336f00f48a7e77a64a0d1a69b2bb227fe318abd0e873501abdocHeodo