URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: upecmicrosoft.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-23 23:50:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-24 20:53:30 40.71.11.141Not listedAS8075 MICROSOFT-CORP-MSN-AS-BLOCK- USno
2020-01-23 23:50:04 52.170.7.25Not listedAS8075 MICROSOFT-CORP-MSN-AS-BLOCK- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-23 23:50:04http://upecmicrosoft.com/calendar/DOC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-24 15:22:0963e55893c18790c4c43b2261932de3c375faeccee864300e5a4f72dbf45aec84doc  
2020-01-24 14:06:07e848ede38876ef2dedf485fe2818f53dcfc4a4cdd21062ce8ff7a53d2f8e32b1doc Heodo
2020-01-24 12:40:23789f39cce8f34ef92a1114d703e66a8894c7d3025572c148161fa467d1b6fe81doc Heodo
2020-01-24 11:08:1269f0004d1e725cb9e4324e2fa5f7cd7a2f63aac01f1a564592a5fd8ad21c4d32doc Heodo
2020-01-24 09:37:06a73762a4fcac6839eb5266cc79c7363b551e6bd22d63e2ca84f916607b32f0f9doc Heodo
2020-01-24 09:19:11f4a53a42cbd4bf3cc4315612164dbc190c95ae5748fc6188b1267b5729952617doc Heodo
2020-01-24 08:05:56c0a18fef0ae13f0382cc567ef09d500b74ac60a29ba17ae3461f72bff8bdf688doc Heodo
2020-01-24 06:33:26907a6b87768814cbf5b5e0f3f1309013bc451d847c150fe7cd2cc6e99ef0c662docHeodo
2020-01-24 05:23:27bedffe567bdec300da442d0c24e30f94beca6e30401410ac906a60946b63fe9bdoc Heodo
2020-01-24 04:14:194a4adebca656caf3c9f4f0d9dcfd3b4dd73ab412fc73e3c40e3fa94b5d21e270doc Heodo
2020-01-24 02:51:0273da5cdf0f98ea4dbedb8219ddd051b4d7a04c9750fc4b1d6f9c8e4f9e218c53doc Heodo
2020-01-24 02:41:152caa93025cda12c41ce7d3ac89a2e81c7db0a40a6571fb3cb406c98e2ec71097doc  
2020-01-24 01:08:21ec1da54265100311f4df396c8990940f8a6ff623eb2544ebb860e0283a23b36ddoc Heodo
2020-01-23 23:51:23b4b863bb79c7f22ebbc9bd5183fd67c6b9e020e15eb75d24fbb6179a57e16125doc Heodo
2020-01-23 23:50:040722f8049954458b37f5abac8260f73b904d3cc22b749cd8f17136ce6640de34doc Heodo