URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wonokerso-tembarak.temanggungkab.go.id
Domain registrar: n/a
Domain registration date:2009-01-20 13:09:01 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 17:24:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-07-11 04:33:18 103.79.90.103temanggungkab.go.idNot listedAS64306 IDNIC-TEMANGGUNGKAB-AS-ID- IDyes
2022-01-11 17:24:07 103.79.90.91smswae.temanggungkab.go.idNot listedAS64306 IDNIC-TEMANGGUNGKAB-AS-ID- IDno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 17:24:08http://wonokerso-tembarak.temanggungkab.go.id/a...Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-11 17:24:07http://wonokerso-tembarak.temanggungkab.go.id/a...Offlineemotet ext epoch5 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 00:28:4379f8dcc976b6b81642c3f1572e6e8fa219d00828b6b9015e969a50bb38cefba8xlsmHeodo
2022-01-12 00:02:40697ea1260245ebb08b7387e6d6f4eddd9f9d37d4849abb996244b79526827a11xlsmHeodo
2022-01-11 23:49:532bcd5baa2d280f6afd51a5beb204c382fce0fa58f20ff76076d27cb2323e8ac6xlsm Heodo
2022-01-11 23:19:306ec9e504112744f9f07ce60fb9315cdcd427d27a16c248fbe9746477bfc851afxlsm Heodo
2022-01-11 23:09:22d232986e906c448669c346c5edefc1d51b9224b6d53afd360e4768f9861eafadxlsm Heodo
2022-01-11 22:38:45aa920a2c74b8982c5dd77f97f0dd2d6c7fd69f047983447d6ae43cdf1573b07dxlsm Heodo
2022-01-11 22:21:262a43f2180ac8723fc79222c637ad6743128611c7c89843cec720bd884dd1b72fxlsm Heodo
2022-01-11 21:42:078ad61be673c186c9cdfb6c6c8d750fbcf80f920d4905742c0ed9d67833026ed7xlsm Heodo
2022-01-11 21:25:1871da6e57fe5adfa0b06f8ba9525e6db95e7c25246179fa8563561d24e79e6c65xlsm Heodo
2022-01-11 21:04:40c4bc03a927a72a21be0b15c8c55124264c456a940a325d8071f5cbcb7032f1c8xlsm Heodo
2022-01-11 20:55:12c2cb81db208398e070c47e7d03e76709142dec85ddaa985883536283a0acbb14xlsmHeodo
2022-01-11 20:22:58be28d13f222be634d640dd982c04039f80c9ada5efc2eb126adca4c9a3595d6dxlsm Heodo
2022-01-11 19:57:35867a5e845a227cfb9fa1988fa078679d6b6fa0bae43ffebfe412f97bba373ddfxlsm Heodo
2022-01-11 19:27:3395761ae4efbb60ee498b7d56d6c84e48753a21ab59a655f5439b47167baf6ea2xlsmHeodo
2022-01-11 19:10:2700c8843cc08ecd83f55f5b22eeeef2c14ff4207192bac3795cb0409569b2defbxlsm  
2022-01-11 18:46:239130d8068b2ef10c7127ddbc23715591e0bd026c0ce94a36c26d92b99ee8e524xlsmHeodo
2022-01-11 18:24:58697527009070e730447f346637ff5ff6ad458be500e870bfed11d033c4015631xlsm Heodo
2022-01-11 18:06:00f84d3863143cbe9c97859d10c99e61155092470c08e9aee090365490450a4f00xlsm Heodo
2022-01-11 17:48:15b0118f2c4a1ae4681d95b8b513b2268ea613ff23d476e806ee7d906f90c8c2fcxlsm  
2022-01-11 17:24:076913af2de9271a92bd9c7c9afe4923a08f237459d7e1e03d171e96fa291e39eexlsm Heodo
2022-01-11 17:24:053f17f75b37f9c667523f434a6182fdc2df417671d2a6f5bdc541a8242d660322html