URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wp.salad-stand.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-30 16:18:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 21:46:37 3.114.94.104ec2-3-114-94-104.ap-northeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- JPyes
2020-12-07 14:10:31 52.193.168.244ec2-52-193-168-244.ap-northeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- JPno
2020-10-30 16:18:05 54.250.121.150ec2-54-250-121-150.ap-northeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- JPno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-30 16:18:05http://wp.salad-stand.com/powershell-goto/fYkkK...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-31 02:01:29b104e5360f8f17268449e97ba36749b921cf7cdd797fdb8a28ffe20d8d9c59e4docHeodo
2020-10-31 01:34:3539991605b314bb39a573ea29a1b1cd2904615afe76292c0f3b6afac181a0d6d0docHeodo
2020-10-31 01:27:23d0173484a8073ed5336acc965770f3875b704785bf08f59a929f20c65512e1fbdocHeodo
2020-10-31 01:12:25e054d39b0aac7c2b6c6b76bc40435c1d0ffca154764349deefbc46f9d6ba453bdocHeodo
2020-10-31 00:58:1360e4646ea5fbe72e1daf6f3d015b37205898569b303dcfc791e0d02a754c9bf1docHeodo
2020-10-31 00:24:544eabd4dcb81c28e86bbfd9ac62090d51aea5a733c96a8f3a7ad130a9841bce71docHeodo
2020-10-30 23:59:2626b30e58ed2342d042367ba0487873439d5c9c28920ddd000bb94b3eac79d94ddocHeodo
2020-10-30 23:55:3166f30f7d40ef0e230f042cd6abe51971e49af52617515c3d0d99f3f365a59e90docHeodo
2020-10-30 23:20:5214a8572928770f8d61fa05890c3e0a5cd4396bfde2ce2763d533e89d05120d34docHeodo
2020-10-30 22:59:5522a4eae8735782a3f12e3f7ee5b6d0839cd7c4a8b91dce6ce27e2414b2e5f817docHeodo
2020-10-30 22:34:14b79376701bfc97b082e9d8d61f6886b399692a2b154c6095559ab1da86e4c518docHeodo
2020-10-30 22:17:5720a348277c58a86bab1a218fd2dc97ea61811eeca81bbab000bf5f0afa562b36docHeodo
2020-10-30 22:02:47f2413a07e3362999d85fbab3f6c2fe8f228e4567eac899cd565ad65a2d0eede9docHeodo
2020-10-30 22:02:47f2413a07e3362999d85fbab3f6c2fe8f228e4567eac899cd565ad65a2d0eede9docHeodo
2020-10-30 21:44:55d577446435b94d0af2a829f1160b594e95c8051f6b069400ff61fa38d151ba54docHeodo
2020-10-30 21:23:588ead4e972ba536f428fbee5bb8f687ff6a1efdae4456aafb1bbb176b37672180docHeodo
2020-10-30 21:11:274f6d5190871bdf4ebad7eb4520c7a651e3a2f4d8def1ca783c0efb807bdc7ec3docHeodo
2020-10-30 20:39:0675ca20340c21dbd94ba3ec4c8eeb14f3a78e68a955701cbdc754c29163674a3adocHeodo
2020-10-30 20:11:016061326ca1f6965d9ff04a37eb1defb55b410556500c197c6d8c9207a4432fabdocHeodo
2020-10-30 19:55:061e363452c2a67d40f01390488a99f68ce6fab805b45eab93ee2db2469bf1b05fdocHeodo
2020-10-30 19:28:395fc665986d6e0e5763554e4d9f9db9ccc61b2c20fc408e955d286a458f622f48docHeodo
2020-10-30 19:15:011b230d33228fd383eaf4cc6faa376c0173fb8ff8d70c42dc9ab1ee5eacb411dedocHeodo
2020-10-30 18:55:34023fdae311195c64889d2c87831a470d7c4826a755cd385729dc6bb02281c4e5docHeodo
2020-10-30 18:28:22f49b970c0f5c5e742a76964f8ac3473e2b6a8558589d75cb54c5f7978178af16docHeodo
2020-10-30 18:04:464e1fa1070d35befd506b61e5fcd7757c603c2289e9c09d657c6378bdfa6b8583docHeodo
2020-10-30 17:46:48578a7143a40755b7d7601a1b0e3f660137971473556e817d2a0e2ca57bc91053docHeodo
2020-10-30 17:09:42de0a1c44011e636f13b7db8734adcc239d484bae417f118f5d1173ff7d708481docHeodo
2020-10-30 16:47:560b8a8e7a53d7fe5cfe16dbec4b9d21361ce7f6eb2f21c9ece0c5fdea89d09b74docHeodo
2020-10-30 16:18:057d32a1b128f53a034d8ea7c493b9adf2cb851615918c77bdfc246c13758e7d31docHeodo