URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-06-08 14:07:30 | 177.53.142.247 | jupiter.server-aw.com.br | Not listed | AS53243 Brasil_Site_Informatica_LTDA | BR | yes |
| 2020-08-04 17:24:18 | 104.248.127.105 | Not listed | AS14061 DIGITALOCEAN-ASN | US | no | |
| 2020-07-21 22:45:12 | 167.99.159.245 | Not listed | AS14061 DIGITALOCEAN-ASN | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-07-21 22:45:12 | https://www.facilmedcartoes.com.br/wp-admin/js/... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-07-23 06:31:03 | 9a3ea141f8d72bc76545f030fe43d91476ce753bd525ed872269184599692c81 | doc | Heodo | |
| 2020-07-21 23:52:37 | 435f4fc1e9a6888f671e834bbdce6aafc5928c7dcffbbbe728f18573b73da965 | doc | ||
| 2020-07-21 23:38:53 | 3ef294ca4013371b69d6af647114806b71bb3dc07fd56f12c078703411d61b3d | doc | ||
| 2020-07-21 23:25:27 | 3e24c4373b1e2ba1e3d16925cd0d4a1752452402ae4aaa8ad8ce498bbff5335c | doc | Heodo | |
| 2020-07-21 23:10:18 | cbccd20b9bc23454ec01bec4a0094e77dcc43d577666259f8d97aa30a118ac35 | doc | ||
| 2020-07-21 22:57:12 | 2027e8348e8d2f364d55b2bf47f9a4b37fd2ff7aabdda5ed056e3f6cd42cf777 | doc | ||
| 2020-07-21 22:45:12 | 139f5bcf4c7fcbe0a8a5d940c5d38dd847e2c979df74dcf680208e73b8ac668d | doc |
BR
US