URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.afroozsazan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-27 12:21:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 16:29:02 185.211.59.7ilh40.airodns.comNot listedAS39368 Serverir- IRyes
2020-11-15 20:57:50 95.217.121.113cp21.abtinweb.comNot listedAS24940 HETZNER-AS- FIno
2020-10-27 12:21:10 144.76.195.174static.174.195.76.144.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-27 21:37:03http://www.afroozsazan.com/wp-includes/eTrac/SL...Offlinedoc emotet ext epoch1 Cryptolaemus1
2020-10-27 12:21:10https://www.afroozsazan.com/wp-includes/eTrac/S...Offlinedoc emotet ext epoch1 heodo ext WeNDoR

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-27 20:16:20138f306945c20e8dd813e43d036300dded2bdf97a71b4fc586989871a11a4fbddocHeodo
2020-10-27 19:51:4865ca688afc9a4a3542b3f24aec0d15a23d4ff309adc0aec528c289ed1630fee2docHeodo
2020-10-27 19:28:1552edea717fc9984acb356860d50f67fadbf8a2eba4d7bec924ce02213a042ed9docHeodo
2020-10-27 19:11:38cdc1427cf3a9f3846751e5ce98bbbf6ccf50da723831c6c5b6a976423d45a8a7docHeodo
2020-10-27 18:56:1222dbd6df08e41fde302a14a96c115f4b65e89f399d1edc1a14a6504df407bdaedocHeodo
2020-10-27 18:41:3213340c1f1c1a5c1c7b79416446aac284a50a0295df1097ba9aa5046ea25b4e0cdocHeodo
2020-10-27 18:19:5095d6502baed7604d8057c1835f59629605748e13e17f51a8bb9a35dd55655feedocHeodo
2020-10-27 18:05:3086c0ac9f02673ffa7c091cc2fefd49bbd835c10feb6e9c3afe23bd6ef682d36adocHeodo
2020-10-27 17:52:048a1b55c98e4946eec03ce1b525e3051f05f02a515b87b9c2b53888e52f8bb13adoc Heodo
2020-10-27 17:26:56cc2ba3f8ba300a39f4f61d38594c2166662401961dc8db1b57fa92ba4defee0edocHeodo
2020-10-27 17:12:1306d0d9aa64d7b5c8ddda1388dbe3ffb081bf875ea2f961142dfe1dd3027e6e59docHeodo
2020-10-27 16:35:404a6894fbfe3e963d774dabbe89a8bfddcfb7e2feea50050195178d73f3562336docHeodo
2020-10-27 16:18:27d72d739e8e5011b13120f38f398f775116032ad0712d602780ff9370cfb0ddc8docHeodo
2020-10-27 15:55:558f9cc080f09d5612b9e1303538c5ed99565ab26d2512c3867e15ff353356d27adocHeodo
2020-10-27 15:38:00cf46c634fc74ec5b9581b70faee4643e57cedc452341f1eb04e073af1fa42c47docHeodo
2020-10-27 15:22:2976db981e79b1d69eb157f002b5c41736b4ccf58dec91a684e658f2e26dfe3677docHeodo
2020-10-27 15:07:038ec2421fcede86da656d51271e5e5987a485c0ae19bbd7e385bf7029947da4dadoc Heodo
2020-10-27 14:46:253a2b11cdee109e4d4be0909c51b07fa709838e0f4da50429b79bea4af3f30b6edocHeodo
2020-10-27 14:24:52b82f7014c652b33958bc0399733289c82672fea84e83ce250fea7328aa28377bdocHeodo
2020-10-27 14:13:11771748c06f8fb85d2ff96fe6b210eafd43e3c84aa1cb971e7aa1db6e5b272439doc Heodo
2020-10-27 13:44:508c72d9b7308f430cf08a9a7355d3a006b9ac6e9c2b62c444fad04e2f9c4d95b8docHeodo
2020-10-27 13:39:49d2ac9f3c4611c3c30c8a2bad8bee52f08ecf51e25b4a79774c50188c9b3f1defdocHeodo
2020-10-27 13:05:4752cedbd473146069dfb53c24de3f7f8c373ba699a3031c1b85afa1416abef22fdocHeodo
2020-10-27 12:47:44e6c8a1d2eba8e4d282d75e299163844b8e5fa665800b8b09f1c500f108447fd8docHeodo
2020-10-27 12:21:1033ea1c974e800552ee4937e289c1c363b2c6156838dddf872f58a6aa22bc0e82docHeodo