URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: webq.ch
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-27 19:17:08 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-27 19:17:09 80.74.128.8tiberius.sui-inter.netNot listedAS21069 ASN-METANET- CHyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-27 19:17:09http://webq.ch/wp-content/parts_service/PJsaJPBjx/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-28 08:50:2856fb6984a9ed01d86453cc0169de84228a233ed18df4725be0c6bff8af193d2bdocHeodo
2020-08-28 08:13:42f54d6deaf0de0c28779afc333e940e4205cedfafd09a18bb1cc653cf3b2073d4docHeodo
2020-08-28 07:49:168a2ccbf2fd45902471ea5dcc116d258ca0ff53b4e7499fe76f00349f029d0570docHeodo
2020-08-28 07:25:13ba1bac226c7ba525e1b2706a7f0a7a0ddec1272db21044df1e28cfd777804a3fdocHeodo
2020-08-28 07:01:09a4e35918b2db5a325a398c79bb0cd310e6d1c70f405953dd8f0335f3c9cc8f2cdocHeodo
2020-08-28 06:38:111d2b270375ae00907412647180a7dffae422dac066c42966c9cca4bd1dd8dfe2docHeodo
2020-08-28 01:27:287e0d6fc8bc7a69d5e27e2130c83b434512af52a5337145098c2426f62abf97eedocHeodo
2020-08-27 23:56:414ce9df1e1264045ad777d99c61dddefe4fef6126a7fd8af26fddb734798a13c2docHeodo
2020-08-27 23:38:433568c70e775ee5811a5b7e2469404ff40381661edfb5e3c269c431f4e0e77874docHeodo
2020-08-27 23:25:31907ddcc7b2dd5151f379c7897b9de25bfcf3e3f5a8a58043b3339a540ee5ab76docHeodo
2020-08-27 23:07:0497dfe06b3f4e9ebb2beb149355b82886fe468ce91c30adb82a16097ec15cbdfddocHeodo
2020-08-27 22:54:5055729022c3684fd899ee712d0d0d3dbfeb5161fa842b101cd28dfcf85ead1a74docHeodo
2020-08-27 22:50:515eb93964840290b1a5e35577b2e7ed1c0f212ef275113d5ecdb4a85c127ae57adocHeodo
2020-08-27 21:20:175f6d826b32b5b3fa5a3eb0346ccd94042e0ac9b22340f515557882cd1de63c73docHeodo
2020-08-27 21:03:45c87ff4601214eab29d1318e621dac4a0ae69e9f3ec301f4126b4dfff0a947572docHeodo
2020-08-27 20:49:115bf845e70cde6a5112d1aec081e98995bc8494ce31682762bad07ec7c92a2889docHeodo
2020-08-27 20:32:572d49046fc064b91ca9ac6b885536752ac075d5f370afc9d43148a0d79c4cfa51docHeodo
2020-08-27 19:17:0815ecaf1e94d9e2adc5834b1f593036d7b6b9324dddad9f8a020d8dcbbddf757fdocHeodo