URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wajirmaternityandnursinghome.co.ke
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-03-19 18:31:04 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-12-01 18:40:10 104.21.21.81Not listedAS13335 CLOUDFLARENETn/ano
2021-12-01 18:40:10 172.67.197.13Not listedAS13335 CLOUDFLARENETn/ano
2021-03-19 18:31:08 198.54.121.133premium67-1.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-19 19:24:03https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext Cryptolaemus1
2021-03-19 18:41:14https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll p5yb34m
2021-03-19 18:41:12https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:11https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:11https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:10https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:09https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:09https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Gozi ext p5yb34m
2021-03-19 18:41:09https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:09https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:08https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:06https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:06https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Trickbot ext p5yb34m
2021-03-19 18:41:05https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Gozi ext p5yb34m
2021-03-19 18:41:04https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Gozi ext p5yb34m
2021-03-19 18:41:04https://wajirmaternityandnursinghome.co.ke/vend...Offlinedll Gozi ext p5yb34m
2021-03-19 18:31:08https://wajirmaternityandnursinghome.co.ke/vend...Offlineopendir openfield Trickbot ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-03-19 18:41:14057f4d75fd224f7f149dca7b203d4357631e6594a7a74ad86b95ad80bb3a4c52dll  
2021-03-19 18:41:12cf9e8f0273d8a0272e20d362171bade0737e2c98b59d5c60af5070a9bcaa74b8dllTrickBot
2021-03-19 18:41:11cdc6495b59cc7f842cbb2425f3021ca1ce21bfb433d4c77982d8005679b3cdb0dll TrickBot
2021-03-19 18:41:11edb5656c0d629d11678ee35d6f0b38b3497cd80d00ecd21b2059305dea8052e5dllTrickBot
2021-03-19 18:41:109ec541b1d1a6f3ed344bc9fb87448608c338036edf2a50dcdfd16905bcae9110dllTrickBot
2021-03-19 18:41:09606c0609795d39cb100592a57b8f0ccbb23809f6f77c5abc0baeb43cf177adb5dllTrickBot
2021-03-19 18:41:092eaa196b5f4f0d20b23dd82f001f369e05de803834a11cfe93dd7b795d9e6cd2dllTrickBot
2021-03-19 18:41:09b99e41eff12466eec7d69ed94156b9a29fdfadb108ee01019c258a631fadac70dllTrickBot
2021-03-19 18:41:090bb4054c64468dcefeb9502ce4e5ac05536d64bd77ce5f325eedd74cbb840c6fdll Gozi
2021-03-19 18:41:0744634b52d976a75fc982fd17910e7bc985bb98427ff8ddf5b89cec51553be157dllTrickBot
2021-03-19 18:41:06e2ba0567ac236a24bfd4df321ae7860e8fe2810dbd088e0e90d67167c1ccd4c5dll TrickBot
2021-03-19 18:41:05eb5d21b247b7552956d9ed05df2de0f366835db3977c18291b65fdb876897126dllGozi
2021-03-19 18:41:0541b4e93a1dd1b49e123b1c4a81dc6be266c5fee5f33263bdb7e3ca9e1a7c4011dllTrickBot
2021-03-19 18:41:04263be47f602b2156c9282afdd6a0f1fe9bb9022cef2eb0a821e8d8153d3a8d06dllGozi
2021-03-19 18:41:044713834ea4f17e583ce824f4c2ee391cafac251d6f0d64a5234b417ac593094bdllGozi
2021-03-19 18:31:084bb31bc2b42a2678d228ef7650d03ced7ce695fdd83a20af2fbda152b53a0b24dllTrickBot