URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: webapi.estatik.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-15 09:55:33 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-15 09:55:35 162.214.94.195server.estatik.netNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-15 09:55:35https://webapi.estatik.net/wp-includes/DOC/budv...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-15 14:38:125d4bee6f5bb0d02b980f21c2ae731bd12d5de2e2810058e6098fc888a7cc6f7bdocHeodo
2020-09-15 14:06:3586e5592a5a53eba6b534b450d5b736eff616b1453a741d713aceb18d55557483docHeodo
2020-09-15 13:51:14ac25deaff3c5f73148b9ab0a424b5f1c7200c74671d6d101da13ce64ef248510docHeodo
2020-09-15 13:30:55d590291ac7dd3e6a44554bafcd4bf1bafffa63e97ae93a536a420a3378ecec21docHeodo
2020-09-15 13:17:084e80a09ed0a4a98e6f2891d07eb2f4f8de63314c22c8d00cf0ed87c5d55a1e7ddocHeodo
2020-09-15 12:52:18356d47d62853cdffcc77d94782e286aea2cb43b33cfc90bd957d65bf9edf8c05docHeodo
2020-09-15 12:32:041c71f8ea6feb7151e43dd7a022fed82103545c6e079231fd59df26e00bcdb66bdocHeodo
2020-09-15 12:08:084d0a099b3e1f21ef437d4a8b4670815c3a81575f6a31ada1eed08be37dc3d4dadocHeodo
2020-09-15 12:00:409f39d3f8edf0e13fb2226e79b569714a44fe33fcb890f0ed2117bd5522757de2docHeodo
2020-09-15 11:55:061d2bf8d22eeecff963437ca091244a4de2cb9c9f01b0219fb61c858e4bb9f41cdocHeodo
2020-09-15 11:29:401503b4d750c4038216dbf35ca8eb7ba7cf9627a646c782ed8caffdcad501e744docHeodo
2020-09-15 11:23:067053a78a2269988798f9dcd4a161f7bd9dbd17a48874fb4452ebdb3a33b209efdocHeodo
2020-09-15 10:50:169558bbbb8facaeebb9539a63e639acd60d8fffdaa69c92c05ceb23e26e61c41bdocHeodo
2020-09-15 10:40:35cb6e641825c4b9b3dedb8bca6f5e8759d21a3f5a72cecd7b8fee14075a09e27ddocHeodo
2020-09-15 10:09:04f5760a0faea9103ebeca6a19ba621b538b00dd0f4c863aff0f4de466b17a40f6docHeodo
2020-09-15 09:55:34fd84cc018f4e2b42100c201baf95e05f7b05917104992563c25d0bee49869c89docHeodo