URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: varietykreations.com
Domain registrar:1&1 IONOS -
Domain registration date:2020-12-12 05:39:47 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-13 10:05:04 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-13 10:05:07 74.208.236.2074-208-236-20.elastic-ssl.ui-r.comNot listedAS8560 IONOS-AS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 12:16:04http://varietykreations.com/wp-content/plugins/...Offlinebazaloader ext BazarLoader IcedID ext wp-roilbask im_geeg
2022-01-14 19:41:14http://varietykreations.com/wp-content/plugins/...OfflineIcedID ext Cryptolaemus1
2022-01-13 10:05:07https://varietykreations.com/wp-content/plugins...OfflineIcedID ext wp-roilbask xll ffforward

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-14 12:01:1597f67fca98471d15b171917f1b24e9bc85d4ca6e94b57985235f611c15637bbddll IcedID
2022-01-14 10:53:21b6e82ee1beaffc29641bedf570c5a2704f76c1da1f0ac9f97337075e6c8ed75adll IcedID
2022-01-14 07:53:223092b1e6b513a751a482e7f83c3e653cd2e44d91d031201c5baad111712a8e1adll IcedID
2022-01-14 07:11:41f44c7240b424e204e34300a9e93f745fee9095f436ff86b2de9772d1084c0182dll IcedID
2022-01-14 05:47:45a7d8021fc936f12b656c03b768cb00c53888073cd548b179a81529b9e36892f0dll IcedID
2022-01-14 04:29:245cd2e18c9954e2224ffb17693487b082a41500d285e703e947a21e8d1b70f106dll IcedID
2022-01-14 03:27:0061aecc39f888146216a2e12253178d8a10c68e72de71a1ecf1131be56ba4f8d9dll IcedID
2022-01-14 02:30:286062599bb13ef036a42185ad9d1e2f58665f29d665626ce95571c49e0107f5dbdll IcedID
2022-01-14 00:58:38cbcb0c99f879bbedf38347b63fa62c480f12580e5cb95a4a357bbef602d96e61dllIcedID
2022-01-14 00:03:42f65fc4fa3431e6e93d85cd91fb1fed68f46db285032c40e0b87df9614e4349ebdll IcedID
2022-01-13 23:48:27cf69a7a2b9beb8ae178df59e31393bc33ba69f9ec15b5cced248ba459f2caefcdll IcedID
2022-01-13 23:11:016038cc151cd08a021c57bee8a527e4d816f4020f94f3e43e30990999475cd415dllIcedID
2022-01-13 22:23:253160725ecb2e49e109db6db96cb5dd7c537fe5ef8198bdcae2e55a9aa5de3384dll IcedID
2022-01-13 21:54:1469e2bc37da2c8a6f25fce37a024aca628f8216cb0ddcf70e1e55766eae011bf2dll IcedID
2022-01-13 21:05:19d61b19edd293a0691527f40fb136511022d2c106bac5b770f9aedcea445c70addll IcedID
2022-01-13 20:17:176f7dfdabd97519cfe18e64f8e7d8663c7ad6d7422ba5ed09b473ebe290848e5ddll IcedID
2022-01-13 20:00:431ba223ba6300c05c1e29105e519d884c2cebdbd1485838a46378c10dc77a8623dll IcedID
2022-01-13 19:09:25d1e61f9b080e3b6892df3660c346870ec62ce7627437bc666d7e369e215f5f43dll IcedID
2022-01-13 18:42:2625cccdb32c59c9f617d5a40b1c0f8fc39760ae3fc2a68bc3c3708c02a0a7389ddllIcedID
2022-01-13 18:24:05e4fdc8b6743a24bcb75957fc1c2591dd552637e33184affe233f2ec7aa694225dllIcedID
2022-01-13 17:56:55105047a088c424564285c660467e7d848743d0d932918d060b937e85e9f7ddd0dll IcedID
2022-01-13 17:50:19282807737e0679dc3fa77ee725ee4d6ab74f4ceaef2f33fc317cf70e82878b60dll IcedID
2022-01-13 16:55:1363775b5137b9d9e831bafd186f5cfafe4f7a7417a7bae5b5e15ebc99e0edb406dll IcedID
2022-01-13 16:15:11358bc65f18ec9fd2337171e4058855d4ef5aca1f91c02894d34b099dc1ef45addll IcedID
2022-01-13 15:59:4793680a56efaa95e69cf26ec2a98c2de094425654db8a6c3b91f2fabc95d5cc21dll IcedID
2022-01-13 15:34:04386a6b2542e3d43404d66edb56283b4bbb8b54f0c67812ac8ae272601774e676dll IcedID
2022-01-13 15:18:3699011744097f00273285be391363bf68107fcb70e26734aab9158d6ce41b5553dll IcedID
2022-01-13 14:44:04718c54d1146a1d4a10fa7791295332e1bc18b906cbf5ee56e1f8a34b238b4cf0dll IcedID
2022-01-13 14:09:36149e1550810651ae047350af9dd52f2875b483fa7cc2b5a641d68678317d5e97dll IcedID
2022-01-13 13:43:2631ea2c96fb914d5d932a3176db0400ffbaac1af2d5b89d4f5bb58380d5cb7fa9dll IcedID
2022-01-13 13:18:581a47ab49a5341a3cfc40bd7a64dea46cb8cad224314a51410e7ad56bb6bb93b0dll IcedID
2022-01-13 12:50:15415abfb2785209977e7293d58e6ec29345a1be9dc343ae69f17e96c5346f9fe7dllIcedID
2022-01-13 12:20:0036eea2780c6330a824f03fde03e1c465c19d1706909af8ab1da60acb3b7f02b4dll IcedID
2022-01-13 12:03:5488e452f7857567a9172ad966b76be4c9153224a32f22fa025daed33cef0b5d51dll IcedID
2022-01-13 11:42:30bd865e20e2f5900398bc876d184e0abab7d62715d91130961a6a61d3cb64315adll IcedID
2022-01-13 11:21:110252b28502d3816c562652cf9734146ed889233c20dabf81204fd54c3631ad54dllIcedID
2022-01-13 10:53:015a5bcd7586232234b26c06e0a0bce8ab5e4fcf32379c4f1529fa4f3797e4ea95dll IcedID
2022-01-13 10:32:510668e57db363de949b9490d0e2498d4b2820e4009f1eae1682bee2d147858eb0dll IcedID
2022-01-13 10:05:074db9f2e3a6a38aa75ae3cd65ce4f9e01a51f17ef831a4b95a1b8c7f4a0c4d5f8dll IcedID