URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.afpols-seminaires.fr
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2018-06-26 21:09:11 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :41

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 09:44:15 104.161.31.184we.love.servers.at.ioflood.netNot listedAS53755 IOFLOOD- USyes
2019-10-25 05:26:31 52.30.123.184ec2-52-30-123-184.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-05-03 08:57:43 52.17.149.144ec2-52-17-149-144.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-05-03 08:57:43 52.210.32.99ec2-52-210-32-99.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2018-12-31 19:19:47 52.212.39.58ec2-52-212-39-58.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-01-18 10:17:58 34.252.24.3ec2-34-252-24-3.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-03-18 18:43:25 54.246.201.152ec2-54-246-201-152.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-03-18 19:38:44 54.171.44.240ec2-54-171-44-240.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2019-01-10 13:16:15 54.76.175.77ec2-54-76-175-77.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2018-12-31 19:19:46 54.76.106.177ec2-54-76-106-177.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2018-07-11 17:50:10http://www.afpols-seminaires.fr/ckeditor/Zahlun...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2018-06-30 06:15:56http://www.afpols-seminaires.fr/wp-content/Stat...Offlineemotet ext heodo ext p5yb34m
2018-06-26 21:09:12http://www.afpols-seminaires.fr/wp-content/Stat...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2018-07-12 11:44:381a5eaa3b8261f0a77136d36fc1f93e9df5a4cb982b68ed8419ec23c06b961270doc Heodo
2018-07-12 09:52:579030d82f02596c134c286fd696b932d5eeab717b76187323e5eaa855d3883ee3doc Heodo
2018-07-02 06:32:20e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855unknown  
2018-07-02 06:17:59e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855unknown  
2018-06-27 13:12:20ea73652fbecb0539e46da02cb1ef6a9570f37548ad166d4c59af77bd3982bc08doc Heodo