URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: weloadhh03.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-01 16:28:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-01-03 18:34:09 89.235.184.19789-235-184-197.adsl.sta.mcn.ruNot listedAS34352 MCN-AS- RUno
2021-01-03 06:06:36 95.213.179.228Not listedAS49505 SELECTEL- RUno
2021-01-02 21:38:33 45.156.24.84Not listedAS56971 AS56971- USno
2021-01-01 16:28:12 185.238.0.151free.ns1.sitesblog.comNot listedAS200313 internet-it- VGno
2021-01-01 16:28:12 78.155.205.105funkluxlenzloyat.infoNot listedAS49505 SELECTEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-01 17:01:03http://weloadhh03.top/download.php?file=lv.exeOfflineexe zbetcheckin
2021-01-01 16:28:12http://weloadhh03.top/downfiles/lv.exeOfflineexe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-02 18:27:061851d550f956548f0bc53d10c75aabf24d9a36cd51293b561bbaa64ea3e52289exe  
2021-01-02 06:16:545c7291c8c0c9aae91453faabe543abd6da50a2600ba74cd9fd1faa18a939cd4bexe 
2021-01-01 17:58:3483ce6b854a0aba9c96894f0efa435c45f4e1d7a4d49e334bcccfdf3b0d409aa7exe  
2021-01-01 16:28:12fe517f741cb9536a2fb01d70553210448998be0b0e8b74109daf511cc8360abcexe