URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host www.ijweaver.com.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2019-02-10 04:02:15 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-04-12 07:40:40147.135.10.54ns100306.ip-147-135-10.usNot listedAS16276 OVH- USyes
2019-02-10 04:02:2781.19.215.4juliet.cloudns.ioNot listedAS25369 BANDWIDTH-AS- GBno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-03-05 09:50:02http://www.ijweaver.com/wp-content/themes/f2/inc/theme-op...Offlinezip Clean@zbetcheckin
2019-03-05 09:49:02http://www.ijweaver.com/wp-content/themes/f2/inc/theme-op...Offlinezip Clean@zbetcheckin
2019-03-05 08:41:32http://www.ijweaver.com/wp-content/themes/f2/inc/theme-op...Offlineexe Troldesh Clean@zbetcheckin
2019-02-10 07:11:02http://www.ijweaver.com/wp-content/themes/f2/images/color...Offlinecompressed exe javascript payload Ransomware stage1 stage2 Troldesh zip Clean@shotgunner101
2019-02-10 04:02:28http://www.ijweaver.com/wp-content/themes/f2/images/color...Offlineexe payload Ransomware stage2 Troldesh Clean@shotgunner101
2019-02-10 04:02:27http://www.ijweaver.com/wp-content/themes/f2/images/color...Offlineexe payload Ransomware stage2 Troldesh Clean@shotgunner101