URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | worldofcreatures.io |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Not blocked |
| DNS4EU : | Not blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2023-03-20 15:26:09 UTC |
| Total malware sites : | 3 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 3 (100%) |
| A record(s) observed : | 3 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2023-03-27 09:16:18 | 179.43.140.231 | hostedby.privatelayer.com | Not listed | AS51852 PLI-AS | CH | no |
| 2023-03-20 15:26:25 | 104.21.83.205 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2023-03-20 15:26:19 | 172.67.181.76 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2023-03-20 15:27:13 | https://worldofcreatures.io/download/LauncherMa... | Offline | dmg FakeCryptureWorld mac-cracked23-site macOS stealer WorldOfCreatures | |
| 2023-03-20 15:26:25 | https://worldofcreatures.io/update/Creatures.zip | Offline | 77-91-68-146 exe FakeCryptureWorld Rhadamanthys WorldOfCreatures zip |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2023-03-24 01:01:54 | 2770c53135fdde46ac2916a1ec97c288c64024d320e64f67d99882ffb01c96c8 | zip | ||
| 2023-03-24 00:19:40 | c7d471a9a67a369efe3b86c9d46a3ac6e9849e9e886dbe32ed4996a212b9ed2c | unknown | ||
| 2023-03-21 11:30:52 | 63522c69d1823697ff904c7a4ee18c879c63902cfce54402a11f0d9d76fed5b7 | unknown | ||
| 2023-03-21 11:26:47 | f83d3c056daa51abab6a36e59092e6ffa1e4ae3e41020e27d347987d02982529 | zip | ||
| 2023-03-20 21:32:13 | 7cca7eb988b72fba12387f55c33280062d0f4ffffc1a777d4de91556c0339f32 | zip | ||
| 2023-03-20 15:27:33 | 0bc9384f5c5395312a68af04a7f0e4da7bd28bcc35935d09c252f79e4a90df58 | exe | ||
| 2023-03-20 15:26:17 | 8ea33c34647578b79dd8bb7dcf01a8ad1c79e7ada3fd61aca397ed0a2ac57276 | unknown | ||
| 2023-03-20 15:26:13 | 3a3ebe79d6ea3e12e7c9e0e044565f700d92600fdfda60c4a9cacc0e5c752987 | zip | Rhadamanthys |
CH