URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: watertechservices.com
Domain registrar:Tucows -
Domain registration date:2004-03-28 17:44:00 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-08 06:52:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-08 06:52:16 66.175.58.9hostedc38.carrierzone.comNot listedAS30447 INFB2-AS- CAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-08 06:52:16http://watertechservices.com/cgi/XlLR7Lj2laOu4X/Offlineemotet ext epoch4 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-09 10:56:3118e3b0d902f95fb74affd0f0e203b5a7d6d8a9aa17967611b17377008b5f0c52dllHeodo
2022-02-09 06:37:054427264b03d86f921000d64ae1798301480cbe50a01bf54ce63bd846df27b6e6dll Heodo
2022-02-09 05:08:45356c789c1491159b5e7eb2e3ea35ef99c34bac1665c89bbca433482c827dc295dll Heodo
2022-02-09 04:42:030eb72a476714916d09916661c6fbbb7beabbd1cbf6d41f7bdb761dc2c71a4ed9dll Heodo
2022-02-09 03:02:53eeb192704f32b2f938e2ea14c9c4196ed17742bcb2f2619d346d29d9c15d10c9dll Heodo
2022-02-09 01:56:0138780761a1ed393c9724835bfd6f6531fd74e06521d53b564b22f9237109c78ddll Heodo
2022-02-09 00:57:090494f79e858f125da2678b7ed222a332c84b02b0cefcaa8ca356fc6eb6227889dll Heodo
2022-02-09 00:33:26317623d9f0a416d4b36c823ab809ca9fd097755ca4938cbffa1e8517baee7b7bdll Heodo
2022-02-09 00:12:27174eb858ec4e01bb163a1d5a2c7aeec491fbf92d8f54b2bdaeeded67b6c0389fdll Heodo
2022-02-08 23:43:5755e044c3d30884b09e3f79042f65168ea07c360f4d4b536f875690531b0e70d0dll Heodo
2022-02-08 22:40:583dc2049920c213731cd33fb1dc2dc5fa98762e5abf30b9f5a4b72954ce15ea1adll Heodo
2022-02-08 21:28:5646dd74680b87937bf2fb189a3b71e9c172bf2fdd51ab9311159c82795f2ee4afdll Heodo
2022-02-08 21:08:5177989084fd5fdfc38da6f3d4a5d74b8283061fa44b7614933c5263be0379e399dll Heodo
2022-02-08 20:21:14567d022abef532269afc84bc0aac85d9dd963d6d3faa318fbf62f5b2a77a1096dll Heodo
2022-02-08 19:15:597714c27ce67b77544e2b09d45af4866193ff529f351a93577686a59c3b253d78dll Heodo
2022-02-08 18:10:0988973bdb48dce2f2b303a2a10e6f81ec2544aac77ea23459759fa9294f532a8adll Heodo
2022-02-08 17:39:27cb8b714a2ed388acb8c5160aad58e0ee746c107537e3a7577f110994bd2d66e0dll Heodo
2022-02-08 17:22:587d0859c7f4f8b8f9865e5360a0789f14b9d3e35bfe2378359bee6658c77bfd93dll Heodo
2022-02-08 15:29:133ee4b19b5aa6a537ba6cf16438ca9b7696d1429073ab0c67fd231c917540cb9edll Heodo
2022-02-08 15:03:05716d6128d29ca20677ecb4bb840b0a99e853e8211a3f9b9597646e2a1bd01c65dll Heodo
2022-02-08 13:19:37659c72352e78a8973dd37b9d75aded29405c1877054bf7ef24ec4b887ebb9484dll Heodo
2022-02-08 12:54:34e2db96093a01703fbce113c614bef184f6e2119f9a3126cd3609e820bd957a91dll Heodo
2022-02-08 12:05:29c6d0aa063931ee3459b92d7a98e00db311b63febd4e18926bfcefa58894208dadll Heodo
2022-02-08 11:00:4585c0f299931f577836498366709ac43358032e02faa2ace16aa3ef8d4a80f550dll Heodo
2022-02-08 09:47:31eaa8c7200832626be094893063f031780e736f0cc72566083a870bfb0956a3ecdll Heodo
2022-02-08 09:05:02d74f29e18233dd3ad0f31d06982a72ffbb53bebf5e32bb4093afacb1664d8e69dll Heodo
2022-02-08 07:56:5889e425ac34a8632c0310955f0643b8a48165c8795bde0c32ce189b47e00d3582dll Heodo
2022-02-08 06:52:15c1ca483ce79db86247c9968a07edcbd1af2a281e2e7bf77ee6a47b6dd964f376dll Heodo