URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.geisterhouse.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-22 16:11:09 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 06:12:56 34.174.193.173173.193.174.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2020-10-22 16:11:11 35.209.143.2727.143.209.35.bc.googleusercontent.comNot listedAS19527 GOOGLE-2- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-22 16:11:11http://www.geisterhouse.com/cgi-bin/70pah8alv-0...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-22 23:28:0959235980108e00a0011ebeca9348c5a39ef6d6ec0b052e15ddeb825e9c21e3d5docHeodo
2020-10-22 22:42:157104dd32f9de62701f5d5a01ac763237757d11e8fa2c10ec24749f5791467fcbdoc Heodo
2020-10-22 22:18:12c62002794ed88e1776376cf0144fdaa74155895bd71f5a69b781acf83818f56cdoc Heodo
2020-10-22 21:37:35f95869656ea95b50cdc0dcdc93991a0bff0a1c265541f45bf204766fb5870736doc Heodo
2020-10-22 21:00:29a1ef2e0555f7e14dc268a65a1b25f0961ee37a55170b424ba29ad8ebdd90db69doc Heodo
2020-10-22 20:21:22ee5fa6da862f50e1ac9babeca493ba621ca3bc57ab73fb88480bc716457e36f0doc Heodo
2020-10-22 20:15:3240ad317b6909d6800860af835411d7aedd3ff816bd1e02c7aa0553dadb8735b1doc Heodo
2020-10-22 19:48:158ce84cc08c61ef8da560dab9863109bab6dac208bdb030c9d513aa71dc7b3492doc Heodo
2020-10-22 19:08:370dd7566d93fe470be42c3b43f89d10022539dd21c040c3af9f234f5cdf3f580edoc Heodo
2020-10-22 18:58:34d078837cdc9042641925b36475f87954994b19f05d89c10b4ab4a1ea28a806efdoc Heodo
2020-10-22 18:35:012459b9b17512384884b1ce25972cc817c8e218cb87265480ce229d0470ade006doc Heodo
2020-10-22 17:56:4079736f48bc5bedb3ed839a65879732bd7302955da6defa742dbc590f04c2d043doc Heodo
2020-10-22 17:48:107d9599a9e2c14590ddd67015da53020abdbb1963fc03fac2a061a5aa15e4f0e1doc Heodo
2020-10-22 17:15:48ba76faaf67244b22ede91ccbdb43e3988b58539eeac446392d0c61afbb5ef437doc Heodo
2020-10-22 16:56:17ea4923d6d51058428ce3cac6ced475b5e024b7ae1974b0ce9f37f563847f89f0doc Heodo
2020-10-22 16:11:114184aff59a80548872251572d47d8a0f88865d08d8b944efeadb47c07d6f30d8doc Heodo