URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.arrecifesciudad.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-27 22:01:04 UTC
Total malware sites :1
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-09 00:39:21 44.208.83.180ec2-44-208-83-180.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-11-09 00:39:21 54.84.240.235ec2-54-84-240-235.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-08-27 09:08:50 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-08-27 09:08:50 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-04-27 18:04:46 35.213.155.104104.155.213.35.bc.googleusercontent.comNot listedAS15169 GOOGLE- SGno
2020-08-27 22:01:06 149.56.200.81bh02.wiroos.hostNot listedAS16276 OVH- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-27 22:01:06http://www.arrecifesciudad.com/live/public/0239...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-28 11:56:0456385c138dcd6e1f59be2fadd0cb3e78305d5a8b74de904c00ca85d68aa84809docHeodo
2020-08-28 11:35:23f518586d760ddbf3ef58ae4e7f8bc570d1154c9756e793135770a886901385cddocHeodo
2020-08-28 11:01:25c5a9757906c65f2a2961bd352aa8d42181b2b26e9cf2b82e01d6e824d94bc00adocHeodo
2020-08-28 10:50:5367fe9aa6843a58f85b959469d70926c6b028d3cd880f1ff36bd050e9d50be649docHeodo
2020-08-28 09:15:26635e1141dfd9268f184274a609f325fe1aa27d7af0a4153fabd3ea891164543edocHeodo
2020-08-28 08:50:215fcecf8fdfc590ef687d6590209ea3c2ea0ad746b5f4746e537cd64813fce05edocHeodo
2020-08-28 08:14:148369cd1f9e4a1892c61f02631be1abae0346cb1972cda90b4cb4a36ede626e7cdocHeodo
2020-08-28 07:49:17a03a331036791b2d25681114c722041029d9e995c684190654e5f664efe761a0docHeodo
2020-08-28 07:21:58ba1bac226c7ba525e1b2706a7f0a7a0ddec1272db21044df1e28cfd777804a3fdocHeodo
2020-08-28 07:01:252012064cfc4ba5e01f3677d2f52053612232c932876a8266ac2bd8bd8a35af6bdocHeodo
2020-08-28 06:37:581d2b270375ae00907412647180a7dffae422dac066c42966c9cca4bd1dd8dfe2docHeodo
2020-08-28 01:25:067e0d6fc8bc7a69d5e27e2130c83b434512af52a5337145098c2426f62abf97eedocHeodo
2020-08-27 23:54:00b1f8d82d19d6020ac3606afc8e0699ddde66a03ce07d5d7f6b6bc45a238084f2docHeodo
2020-08-27 23:39:09474fe5a4009da897047f91b9d9b8f40aaa5d674955f0815934507029c7038976docHeodo
2020-08-27 23:22:597314c132ed2bd783a95997d7bb4306ebfb97de0cd23e31c78dbf77ebb4dd61efdoc Heodo
2020-08-27 22:50:55c0585477220770048a8326b7b7dd1ac706601ba7e09459f20bc5d6cd08991a74docHeodo
2020-08-27 22:01:05058a814da324c518a1848ab62bcaa8cecf5322d81fc07d96288a0b5f319ea276docHeodo