URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 16:20:44 | 109.234.165.64 | 109-234-165-64.reverse.odns.fr | Not listed | AS50474 O2SWITCH | FR | yes |
| 2020-01-17 08:57:05 | 104.18.40.114 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2020-01-17 08:57:05 | 104.18.41.114 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-02-04 16:25:08 | https://www.amedspor.com.tr/oeiwosk36j3ss/report/ | Offline | doc emotet | |
| 2020-01-29 22:47:05 | https://www.amedspor.com.tr/usaa/PHuSRv-5izsAM9... | Offline | doc emotet | |
| 2020-01-27 23:41:06 | https://www.amedspor.com.tr/trsss/2aCO1Gkwg/ | Offline | emotet | |
| 2020-01-17 08:57:05 | https://www.amedspor.com.tr/trsss/8gac11l/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-02-04 20:30:29 | 6cf7056ab0ef95c3e0e7db2e9667532ca55ef9cd4b846c0bf1012328ee62dd7b | doc | Heodo | |
| 2020-02-04 19:28:24 | 10a4a79ef018d8594156fc6ad3dc14646fad3b07d661af9c687034c39dccf0a4 | doc | Heodo | |
| 2020-02-04 18:27:24 | 51de2ffabdc12f8de2065b26504dfc5b08f4450a5df357d6bb931f50029b5205 | docx | ||
| 2020-02-04 17:21:29 | 23b5a2d4a45010250ab641363a1188ba35bd619cb0135e3dd3ce645c9504774d | docx | ||
| 2020-02-04 16:25:08 | 34eb00d0edba9df4f1378b90b58814e07436bcf37b74dcc9b33f577e0d3a4037 | docx | ||
| 2020-01-29 22:47:05 | 0c899fbd963450fdf0d3d487fd91c0ef00e8c4191115d99d58a6b75476b06254 | doc | Heodo | |
| 2020-01-27 23:41:06 | 5bb62d58e54bb307e3ac44fc96dc50fefb72a39b885ab0e280271068c562b974 | exe | Heodo |
FR