URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: woodmet.eu
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-29 21:42:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 04:52:56 2.57.137.13s13.zenbox.plNot listedAS31229 PL-BEYOND-AS- PLyes
2020-10-05 23:10:51 77.55.137.45woodmet.nazwa.plNot listedAS15967 NETARTGROUP- PLno
2020-09-29 21:42:05 85.128.184.169shared-ama169.rev.nazwa.plNot listedAS15967 NETARTGROUP- PLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-01 01:46:08http://woodmet.eu/ayeu/y4grqbd/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-09-29 21:42:05https://woodmet.eu/ayeu/y4grqbd/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-01 04:31:56a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47docHeodo
2020-10-01 04:29:43a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47docHeodo
2020-10-01 01:46:0827b242f5eb32bacc3010e0a947f1dbbab9d920948241c349a3aec7063d216ed2docHeodo
2020-09-30 10:33:3027b242f5eb32bacc3010e0a947f1dbbab9d920948241c349a3aec7063d216ed2docHeodo
2020-09-30 05:53:258ab2e6cb8892b88bad960fc01887038298cebc93804c11f3bf92624541fd00dedocHeodo
2020-09-30 05:20:01bf10b7e9f1ff0345f426df6b7da95cdb75284d378f7ea29d192e24623e35f3a5docHeodo
2020-09-30 01:05:1048e23cb77f6629ddf1c1b70ff1af00789fe9ed39014db2e97b4be24c2e13a168docHeodo
2020-09-30 00:42:015fce7635748a17b0553d34bb396757644f6ab211ed7865fcd3ecf8b5f1014b29docHeodo
2020-09-30 00:23:0096658effd966024181bb6c0128804f37e523120f12108dcc80230e636aa0e291docHeodo
2020-09-30 00:04:40587adcb5768ec9aa8b3be79e9ea740bc5052b9d0f09d4b2854fac3ff667edd4cdocHeodo
2020-09-29 23:51:515bc9314961b874f09854775cf9f6bce09cc9c8106200074edb961cd544efb675docHeodo
2020-09-29 23:35:385a9f82efe64ed654c3bc8be5822ab7e6cc987624f9b90222d1ecac779b7d2347docHeodo
2020-09-29 23:12:24f3156f2dd9bbd4c0f1164e92165433c3f689d7777297b5149c47299dfbb1d840docHeodo
2020-09-29 22:53:2791d4d101c3e8a665106bb48847dbee3791e2a9a04c0adb2f363ae7767e463337doc Heodo
2020-09-29 22:24:36a7bac9b6662da2eb4c3fa6f12c10d790ab6b8ef1735241fcd2a4d35a152a8965docHeodo
2020-09-29 22:12:42939dd723244f1b6067de3ad59153f624f6460bcfed7a7ae0ee34050177e566c5docHeodo
2020-09-29 21:42:051034ffb4a76ffe915977c54f8e473a307da7c7bd3ae9d2a0e36628e23ebd3986doc Heodo