URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: urieprocor.com
Domain registrar:Tucows -
Domain registration date:2010-09-15 21:34:07 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-08 08:32:03 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-22 17:06:56 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-09-22 17:06:56 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2022-02-22 23:54:54 192.124.249.26cloudproxy10026.sucuri.netNot listedAS30148 SUCURI-SEC- USno
2022-02-18 07:30:18 35.206.101.187187.101.206.35.bc.googleusercontent.comNot listedAS15169 GOOGLE- USno
2022-02-08 08:32:13 66.175.58.9hostedc38.carrierzone.comNot listedAS30447 INFB2-AS- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-08 08:32:13http://urieprocor.com/cgi/m2m7z88gOsNceL/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-09 12:34:003486b2c85f7a0f66d2939738ba6b0e041c8856ba6ad314f2e8822699d4427b84dllHeodo
2022-02-09 07:05:43dcbb0bd583cfc1592903ed932781da72972b2328392e89ba928ed84eacc78955dll Heodo
2022-02-09 06:00:3039acf94681d3795e35364afd0350440c0352da8d9acf56906c661cab46679580dll Heodo
2022-02-09 05:08:40cdb2a1836f387880084ccd8c17efc04bcf80d60d3b5bed89632f4d3e4977fbf4dll Heodo
2022-02-09 04:30:49e2e5d4c97c6f6afae9b755cff7e66301e6d80a3a56c7e44806113a0b173ba0c8dll Heodo
2022-02-08 22:35:467a4b6291ac4e88a2be85f978d702946f48fc7ddb34eb5db1e7216f1e56fa1984dll Heodo
2022-02-08 17:40:284deb03ceafe90d943fa4f40fe4dee7b4a98d4bcd07c2ee3e0bceb41674c673aadll Heodo
2022-02-08 17:12:2092d6ba492ff97de0e943162427c79d4983f1147636ca50e389e8816eca120ccddll Heodo
2022-02-08 15:44:281d5b73bfa46fb32611f1513615fc01ef0a6f6f97ad54556303ae9ed04d6a0d50dll Heodo
2022-02-08 15:17:10ae54b6ebc5eb2e88da030c827a6034feb71c2c70122a94be38a60aec02f4b156dll Heodo
2022-02-08 14:15:550989c314076b066a9e25073aaf3b1ef1805704f9fdf46130ba61e85fbc395801dll Heodo
2022-02-08 13:19:294d54f37e5cd526a33c6c5d61245b1ba282a3cd6af94fe020d1f4dfef73c7ead4dll Heodo
2022-02-08 12:08:2520610de74e1f1d6bc5bc8c2c27d704e820ee6829a96d2bee502fce6fec2ac787dll Heodo
2022-02-08 10:58:222e158471b373f08bab1e16b3a4097530659bf6708cd62961d9baee3fbdedb174dll Heodo
2022-02-08 09:49:31a49b42dce5bab23f745dc0477fd07a86c4a418d14d59e9e024b98e5303429d7fdll Heodo
2022-02-08 08:32:138dbce8b9de64f52574a759b0234c0bf34bbeaed7e0a8c126c366eaf58582f39edll Heodo