URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.itecwh.com.ng
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-04-16 08:03:28 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-04-16 08:03:32 107.151.3.68mail.ewriters.com.ngNot listedAS55081 24SHELLS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-18 22:22:05https://www.itecwh.com.ng/wp-admin/QCxi-kpeLg7L...Offlinedoc emotet ext epoch1 Cryptolaemus1
2019-04-16 08:03:32https://www.itecwh.com.ng/wp-admin/2_B/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-19 11:44:15474b7f305055ff40e7d644828c8bb5b3b19bdc17a8a6054c88ce7489a80314f3js 
2019-04-18 22:22:05da6a4f6736fdc27c2450111f86b6c1d87ef69cd8544465381870accb54f1d852js  
2019-04-17 20:20:5045818e2b2b9c8889eef89db943a2c95ef6e891eb2366e9bb3b1e08a7b98cd8daexe Heodo
2019-04-17 19:38:4530a100ad63787a4ea3cb2fba89a9dcc10ebfcd8e54dfa6c223d448463c6352a0exe Heodo
2019-04-17 18:52:45c1a8a140a015b0e0d3d5b9e58c000ac5c65636f4b9fb3e449ce2e36fc6b78a15exe Heodo
2019-04-17 17:01:1108496cc999257f967a0174a1e24876753ca8ef069eba9a0480755389b6acce89exe Heodo
2019-04-17 16:23:59efb711906ca582f5a6622e16c3abdee0e487121360087535ac67148fa3a739dcexe Heodo
2019-04-17 15:45:2682d96afae2177930c36a336e8cf59bc17ade40e4dc5631be1d375db89e1faa5cexe Heodo
2019-04-17 15:13:222430252f3c13ab866847db4905ff53380375d818085358a6f2d158f5ca6f9847exe Heodo
2019-04-17 14:26:2751543676f1f5352b38fcffe1bc8dc9b3d76aea67ff67c300a473812f629d8978exe Heodo
2019-04-17 13:39:223674e39a283b7fe17333b9c8804e1522add554d53f1ccd7bf63d173b27022bd6exe Heodo
2019-04-17 12:17:07ff213086debe5927569d31b60d23fa8760cd4c1e9bd9ae16dd90baf8814ac52bexe Heodo
2019-04-17 11:29:5014e5b08440e75c48bd1ff1486c8b36f32fb0cd4d21dbc138861a0b9af90aba7fexe Heodo
2019-04-17 10:58:500fe4721f05bcae958a1e294f92832144acd17791a850507bd98572347968eb6eexe  
2019-04-17 10:26:44c68b45418c8ae8311aec1842d2f71fb492f75dbb36d22c93fb4c50fda52b2ae1exe Heodo
2019-04-16 17:05:25c1fb0eceaab0ce12e69f4ad1d507fdeb4938c035c34569cf6853f3a5a01d72e5exe Heodo
2019-04-16 16:18:543049ff6746948499a199ddc7b62bbeaabe7480e6399c06701b8b973c73aa1082exe Heodo
2019-04-16 15:31:5236c85aa96e1c5faccec2c07418a81137ce1b95abce60842b1219a9ede6a0463fexe Heodo
2019-04-16 14:45:55d311c24d74572a791025133751fe4128acece91f5a9853bcc5b02e97e8380efcexe Heodo
2019-04-16 13:59:532d8637e6f982f124983d1e8f79406dd57be80104fb528681f0271cf85bc9e452exe Heodo
2019-04-16 12:39:285a88abd439bfe2e1154e687a23e948c522a8001eb03625a13e5d49323cc37e6cexe Heodo
2019-04-16 11:53:20109e48b2870b4aad574a186bf09a5de5f669abf8fa45b928a7dcc8e2a33bdf56exe Heodo
2019-04-16 09:19:13c4c49c07fbe17034954cf16db089b3757c0b05517e15737bfbcb18d1c73a4582exe Heodo
2019-04-16 08:32:191756dca29036040e15e172b8f0acd0b43034b0c2b36ebd9359643e2b1fc0fd81exe Heodo
2019-04-16 08:03:310a294eebb49d31ab6605e491d75b76a4fdcfb7f49d87b7032580c57cc08ef886exe Heodo