URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wordpress12.aftershipdemo.com
Domain registrar:Cloudflare -
Domain registration date:2019-01-10 00:22:12 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-20 05:18:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-20 05:18:05 34.70.177.225225.177.70.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 05:18:07https://wordpress12.aftershipdemo.com/wordpress...Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1
2022-01-20 05:18:05https://wordpress12.aftershipdemo.com/wordpress...Offlineemotet ext epoch5 redir-doc xls Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-26 03:48:378b6c3d1c1c4f0194ac14f20217620719ae9888660cfc5b07fdc42970e6fd377exlsm Heodo
2022-01-20 23:36:26782f99cf1c019d48f827fb6d29e75c842fceea0423bbddd81620697d366bfeeexlsm Heodo
2022-01-20 22:33:44aec2322328224504e216bae76697e68ec37167ececb7693615d72235044bf28fxlsmHeodo
2022-01-20 21:57:4346dadb348869cda14d38466d791ebf6c906f5ec26cc305fdca50921785f48b20xlsm Heodo
2022-01-20 21:26:456b010b591c50b68c8101ed6ffe62e903c6501ae17d1b430a904288c1391d4482xlsm Heodo
2022-01-20 18:58:51f48ce531d75c5080dd92c721b92678a75a2be77b9c53d1a33d5539c695d1e614xlsm Heodo
2022-01-20 17:04:217805fd902552d2c362cec5d35c3ab11be2ecd01d5932757e4f175b5f9d21ba1fxlsm Heodo
2022-01-20 16:37:462ef3416e562bce54a825d048a989566f6f14e3f396d453e6efab5664d6066b3bxlsm Heodo
2022-01-20 16:23:05c3f53e74cbc71cf1956d17dae939c2d9f31a1c2e81328a3ca88ceb1e3bf652c0xlsm Heodo
2022-01-20 16:14:50d3f4d5fc34a444c8ae251c04b1e12ad1371e72f9f7f5682c02e0339eb3fb6ba8xlsm Heodo
2022-01-20 15:44:35c8b489b858ea1f5536525a2b538ee8d955f10b8f43b86e4eb06894d5c48e885fxlsm Heodo
2022-01-20 15:26:113879470574f426659493e8ba460017b0c7e6d26446a49c161486027559030032xlsm Heodo
2022-01-20 13:36:40692e6a1d963c3d86284eb6c906ded29e71fe7b5fdaa6b0170a964f23fb1c4ac8xlsm Heodo
2022-01-20 13:15:575abfcc35b24e7bfff1c0f6d09e2df83b993f9dcb0afc6226b7b9b9adb79c8a95xlsm Heodo
2022-01-20 13:02:30201992f1c56e9d2b5739e06dadff7d492feb7c3b7d35a68045369875a0b92257xlsm Heodo
2022-01-20 12:47:573e1d8a58301390ec349624e2de43757253fc9bdcf31814236dcaa980a8875699xlsm Heodo
2022-01-20 12:30:4646473d491bc661da90163ce5ed77341a80de9595296e65cacc351343a6b278d9xlsm Heodo
2022-01-20 12:20:283429d6a8cfb23e471c568a683d16e627e3797bb2d27a1780d4f6ebfd739bf221xlsm Heodo
2022-01-20 11:56:50cc6c720dbe0651cb2b617927ad0a5601915eeb6e7b07800617f78a9f0e8250f8xlsm Heodo
2022-01-20 11:47:366da24dd576c553009fc21904ae8117a7d11c2867b85f41b271af0bba1f3257c0xlsm Heodo
2022-01-20 11:32:158780c110ac6a022d4680f7b4edd073f5f9ad7b44b42449db5932379896010f8axlsm Heodo
2022-01-20 11:18:0723b2b77659388fa5b454b87d59731166c71aab81f4073dcfd7cb25e0004f4ab6xlsm Heodo
2022-01-20 11:03:36bfadf53e88ea78a1e97b9dc7e2176373e6ca626057e8ce059096bebb04f86f18xlsm Heodo
2022-01-20 10:40:2954e103034b729155182a2b22eff84ddaa16f5d3fa992d88b32d5202c1d1d2577xlsm Heodo
2022-01-20 10:27:186bf0a6ea26787e80034772f3e46ac98d7ce874d99213dbea144e9f2cf4892ef8xlsm Heodo
2022-01-20 09:27:1524466c9b7124aec9a583ebd09b6df592c6a2eba41701a9f78a6ed1142e708614xlsm Heodo
2022-01-20 09:14:45dd2013ad0148de7b9a7877b7b27f3372c04615fb214c98f8a96d3d5dc80b03f5xlsm Heodo
2022-01-20 09:03:209761bc5de47973837988a9be7b5128db72f1817d53c224709b5b2c63848e47ddxlsm Heodo
2022-01-20 08:37:2146bdf6ee62843383d15200ed9be277d08a6181063bb788c617472cc5e6142fe9xlsm Heodo
2022-01-20 08:25:04bc7476f9d9148b939127a2024a1b341cec82fb398bf06667bdd3da4b1acc8bd2xlsm Heodo
2022-01-20 08:07:34d13c581258a7b7cea4c550025cf6e9a52d509d4759d34753a8386e339153ef11xlsm Heodo
2022-01-20 07:51:277ae489b418b123b5ca0566783c49e02bfda66276979c79bbd46e3c71a144f850xlsm Heodo
2022-01-20 07:21:56a75d803a646fa5cfa41b0489c6de355e62319450b46d41792b4b5b3cd21a0dc3xlsm Heodo
2022-01-20 07:02:144bd8c91634e67571e3d3ef12e97ec113895c366559309e1ed0cf9a18b196b787xlsm Heodo
2022-01-20 06:54:01fb18f3109867f5c66552ed2cb8f624bd0d7b882b0c68ede96f53782bde872794xlsm Heodo
2022-01-20 06:40:215c4f33e22f9def7f7fea863e08c38f6a8b4ea9fcc78911c23bb54c4fdf4590e1xlsm Heodo
2022-01-20 06:20:46de0b33c3c71a43da9e30795f36c6e98ca85e1685853d66977dc5dd8cf228a667xlsm Heodo
2022-01-20 05:58:121b8a7503b95b685e1c29207ac2a9a9d75b188abfc9c492e670eb365377c1ad90xlsm Heodo
2022-01-20 05:39:547958e1bfaf69559731cb60fe11f9c580061f8a474f7b4223ebaa3bc795b433d2xlsm Heodo
2022-01-20 05:23:25dfa1de096862a3281db07782e1a8365a37fb07c94cd5b390ea1ba9a0e202d507xlsm Heodo
2022-01-20 05:18:077798bb812270c2c7736281585caab8c2f272c52405a7d2f9cf5da363192e9904xlsmHeodo
2022-01-20 05:18:0590eda45c988073dc6389704ad10590a28961291b308048f97392a85c6a078e8bhtml