URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wowter.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-11-30 15:28:58 UTC
Total malware sites :8
Online malware sites :0 (0%)
Offline Malware sites :8 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:15:00 45.82.191.25shared67.cloud86-host.nlNot listedAS31477 DUOCAST-AS- NLyes
2018-11-30 15:29:00 109.237.217.141ns1.mihosnet-10.comNot listedAS48635 CLDIN-NL- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-06 07:31:03http://wowter.com/wp-admin/Document/tig18526289...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2019-04-11 07:36:09http://wowter.com/plesk-stat/guk6-n1yb9lq-svmp/Offline spamhaus
2019-04-01 17:20:31http://wowter.com/plesk-stat/secure.myacc.docs....Offline spamhaus
2019-03-08 05:30:24http://wowter.com/plesk-stat/r70x-u8b6l-heprq.v...Offline spamhaus
2018-12-21 21:38:02http://wowter.com/TOxXV-Nu_QWErG-DJ/ACH/Payment...Offlineemotet ext epoch2 Cryptolaemus1
2018-12-19 13:31:11http://wowter.com/UDiim-h5BVNLFD4_d-GnH/Payment...Offlineemotet ext epoch2 heodo ext Cryptolaemus1
2018-12-04 14:27:31http://wowter.com/Dec2018/EN_en/Open-invoicesOfflinedoc emotet ext heodo ext Anonymous
2018-11-30 15:29:00http://wowter.com/files/US/Invoice-for-i/w-11/2...Offlineemotet ext heodo ext word doc malware_traffic

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-06 21:30:312632f54ff03da6748cd94b4dfa7c750dcf28976dc3c60983e594c50cfd49496fdoc Heodo
2020-08-06 19:58:096404a5a49751db7e1c82b5bdffadd5171eea2b5a4b43f9b77afb50b2095df09ddoc Heodo
2020-08-06 19:40:3193c870008317b819f86d45c0c3e0075eae202d632a8c5a15afafda0e60ba9551doc Heodo
2020-08-06 19:25:38327c6bfb13ad517728ad6518c92fb0bf638b79474445be494e4e8e6da2f772a6doc Heodo
2020-08-06 19:09:43c587f3652820270bba59542522120672e8e95522ddcf9ef94ada4b00271b3bd7doc Heodo
2020-08-06 18:51:58cb401ff12d318c983879756489ced66cb74d595962df9f6ab32b2046326617cfdoc Heodo
2020-08-06 18:40:555475cfc64e19f8a7195be93c65b59fb767c78681a8776edaf2914d43242326cedoc Heodo
2020-08-06 18:33:5549293332112aac8e7324c776e9ea01df8d9c3029f9d89b1883863fa4ac4335ccdoc Heodo
2020-08-06 18:15:56eadc186cfe8e3c19ea300adfa281efef73f5792352852efab0420e0389b49bb5doc Heodo
2020-08-06 17:58:46b27f4ef8f5469f85fe50a642dcc5fee52880b25c23819000768cbd8055093726doc Heodo
2020-08-06 17:42:094612774897b31ed1c26114eca175bc4fc9bbc04daef26230a4b14df42f99c0cedoc Heodo
2020-08-06 17:25:16896711811c4082a44e4af378dd0871e2db8cc9688844acc7d85af7aae9b6970ddoc Heodo
2020-08-06 17:05:428dfc9301200294d18edadcff9e243522a1a82a3378e5a874e18dd11a47204a34docHeodo
2020-08-06 16:44:5998826e022ea7e43c4ca336a98b7dfb45866836324f79e8e7af3eb4af39686c22doc Heodo
2020-08-06 16:22:2986ce98ee6a09dd1c7c6624e70decfc961385aa91b973c4f19f3f9dbb6091ec24doc Heodo
2020-08-06 15:58:1705c72e97f5d458c6490496c4ac646b9555bc470d63b6bbea42875e5adb1a1549doc Heodo
2020-08-06 15:40:33dcf13e777cc81ba6dbf2ebaf5747e5de599a4de2aefffe544b7f52c9e0188827doc Heodo
2020-08-06 15:02:27bc1675ba21639bfc86033e4d5813c42360a2ffd3d8f4ed7424291711e74defabdoc Heodo
2020-08-06 14:44:133aea71cb3bbb127254bc652cdf318ad814683e16c4c9f8fb7c6e84d42d32553cdoc Heodo
2020-08-06 13:11:35fa7a2f035cfa8ad6cee98c7429474f64f136f99a81f8f1047463efbedd4e7094doc Heodo
2020-08-06 11:37:42fc55cdec1587494b3683916ba5c6b6679011e4cdb28f218c292abe9e23efc1b7docHeodo
2020-08-06 11:08:57751d0f8d16eae467cda2596b400afebcba628d7a0dd6cb876b1a2963acd5c8a6doc Heodo
2020-08-06 10:48:554f225fe467ead97d93712caf45378bd55d657949b260ff02f9fb976e168d8e0cdoc Heodo
2020-08-06 10:27:25341cf3a96d115acf061be9c88fb6dd93c04a154827ee00f8538a6c2db1c94cc5doc Heodo
2020-08-06 10:04:4474b5a5e2f1ca9e2ce5b60eb11efe7430653d3bc4330800836b015f96c21916cfdoc Heodo
2020-08-06 09:42:42e3f7f2d3351b06fa9be4a1c28eef0a769392232b5a9bd43975080da87615713edoc Heodo
2020-08-06 09:26:4312742e9d5238168c6e759edd6bb1e6c668136ee5a294fd93997c80db1be3f88cdoc Heodo
2020-08-06 09:07:591712d0af3743c79a872923cfbda1967758567d962f0517e5fdbcb5c0d7d7f484doc Heodo
2020-08-06 08:46:345a6d09dc7079cf1a8e518b384755b96a23582925ce11c09d6f3e5c62693ea56bdoc Heodo
2020-08-06 08:30:321584c20f6d8766fdb6ae88998f6424d6b86446a6edcc1a9ac480043cb15a6fd8docHeodo
2020-08-06 08:05:30c1cef0fb2b5bf3232c5bde5d9cb7b06007e0a635ea6f092d109519b95e1d4071doc Heodo
2020-08-06 07:45:37995be23dc0d3ee7c4f282548b4755e02e5ec5a8a8b303aa746005cc1e787261cdoc Heodo
2020-08-06 07:33:19760332e0cc50301ec3479486479a525dab98e541c7400d07d8158dbf76135b4cdoc Heodo
2020-08-06 07:31:039236e7c1cc4ad0030f8d8ab19de740711f8124491ee64274dd447ead6b13b241doc Heodo
2018-12-19 16:59:045925f8449bed16752d446d03c4a5c9fb4a3b5c8213c36911023b57b79bb05382doc Heodo