URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wemax-ks.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-30 13:15:13 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-30 13:15:14 160.153.133.176176.133.153.160.host.secureserver.netNot listedAS21499 GODADDY-SXB- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-30 13:15:14http://wemax-ks.com/wp-content/ibDhQPG/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-31 13:03:50997c702f9ffa86ead265bfc4e55ec760218498b171b7876d55787abbab693cc3exe Heodo
2020-01-31 11:54:49f34d95c098f031069d6fc48484be088a9375426e6832ecaa34bc5da81df11098exe Heodo
2020-01-31 11:46:03395c0613518c8decf1d178fdfc048e64c0278f11f786b23858eebd4617cea828exe Heodo
2020-01-31 10:24:0227b81d6e85c56eb86c83639bfebae1dbe958de003500a011a2242c9bbb741dacexe Heodo
2020-01-31 08:57:469b50b2ea7a48984053759eb8c006fd30fabb6e620a142c4b989e79e477263446exe Heodo
2020-01-31 07:26:49830471aa79174dc45b88dba2fe1f209c8927ff0251da09bd8ccdcff8d8978c16exe Heodo
2020-01-31 05:55:421dc6a20c2aa10fa80d525546326aa1026bbbe6cc3e53a5a59cbae909c2a52a85exeHeodo
2020-01-31 04:08:09bf0a2de760ddc0327803c63e97d6c5cc628a3871aa9ff29bcfc81c43d2eed691exe Heodo
2020-01-31 03:14:49f4295c1e1158978ff27a49809f8676d7f1f215010efecf8ec3f040c81f56d6d2exe Heodo
2020-01-31 01:44:474bfe37cf3373329ee2927964b9155b500bc12ba31176455d10ac34a94b37aca3exe Heodo
2020-01-31 00:44:51e02ffae79c8de596870f2d0e218905e1907110b5d513ccbd7053bf4a897b2515exe Heodo
2020-01-30 23:30:398d2e10026b099082a1d7d2899e31d7c32904aacece91596310fdbe5f1c6facc2exe Heodo
2020-01-30 22:02:254c1342964f8b45059900110e9458f93535d75842859dc241c0fd02b7ec08d68eexe Heodo
2020-01-30 21:20:32aafeda0aef6b3fc3f2257f6bc0a68446b5dc1e71203f3c13c699be87641d5394exe Heodo
2020-01-30 20:34:506ef7901c8434ee338365914b432239b1a28f50ef8832cb963ef87648cb52d892exe Heodo
2020-01-30 18:30:414d9eee19710ad1fee3345df72543c8e8dcea2b7543ec9c7e7ea8a506a62c5c6eexe  
2020-01-30 17:44:51924c482322754b89a37a184a08f4e7effd42bc0672071aa4d8f78f2fe6901317exe  
2020-01-30 16:33:12d3ee20acd14eabfcc5f5c9a948eb2796151bed016de3356b878565f5f35236d3exe  
2020-01-30 15:01:45b4e7e97430b31b675df1e98405c0e80fa70f11af4dbd55af7dd0eb6063d3501dexe  
2020-01-30 13:49:4539747120cec47967260653c6f5fb31ece21ab85eae17979e941cc44f66b3ae90exe Heodo
2020-01-30 13:15:14a934ad7b12920ffc814cb842d07a24c68b0c1e5074ab825fa045440187ea70a5exe