URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.comercailizadoracali.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-04 15:25:04 UTC
Total malware sites :1
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-06-28 20:25:55 199.59.243.228Not listedAS16509 AMAZON-02- USno
2021-09-30 11:28:40 172.105.157.192172-105-157-192.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2021-02-05 05:08:12 18.235.92.123ec2-18-235-92-123.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2021-01-25 16:30:50 157.52.211.137Not listedAS16509 AMAZON-02- USno
2021-01-05 06:27:58 104.148.41.8Not listedAS16509 AMAZON-02- USno
2021-01-04 15:25:07 185.243.215.105no-reverse-yet.localNot listedAS202448 mvps- SEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-04 15:25:07https://www.comercailizadoracali.com/JGJFhvddcd...Offlineexe Loki ext oppimaniac

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-05 18:34:304a634d4fa5c7b6efef3970d877fd07e64697af488f137318f01dd9b71c608014exeLoki
2021-01-04 15:25:0673875abb9bb12e00127a2524fb8cdf040f205752ecf370068435d5fc0231e4d0exeLoki