URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.magdalukas.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-24 03:11:42 UTC
Total malware sites :1
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 03:41:00 34.120.190.4848.190.120.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-28 03:41:00 34.160.17.7171.17.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-28 02:38:22 34.160.81.203203.81.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-05-03 17:42:58 35.190.31.5454.31.190.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-04-28 02:38:22 34.149.120.33.120.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-28 02:38:22 34.149.36.179179.36.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-05-03 17:42:58 35.227.194.5151.194.227.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-28 02:38:22 35.244.153.4444.153.244.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-09-28 16:26:07 45.60.23.188Not listedAS19551 INCAPSULA- USno
2020-10-15 15:00:31 50.87.228.230box2409.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-24 03:11:44https://www.magdalukas.com/build/docs/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-25 01:07:058a73bdca97395b9f659104c200734008fe685faff6734fc31ce0cd575090f1b2docHeodo
2020-09-25 00:40:58870bc543d566751893f393fcf0c7abd3bceadb183ce2f7384e8922bb56a5bbb9doc Heodo
2020-09-25 00:26:53af8ff28fb4ea041b8cbe3e93a2c9984e483b0fbda6945bc0172d0946d5c1cb7ddoc Heodo
2020-09-25 00:16:23ddca7bd9923ea1a93f054a8ea4c749b80793daf20550c9ee2f4e63446572c400docHeodo
2020-09-25 00:04:54eefd694ad7a3c1d10441452c651459410143b5ce0d56e19d39c16c1114105d09doc Heodo
2020-09-24 23:49:3847e84b40c894119dda8c1abf4033b74ccdea7712d9ee871dde8360c87e7951badocHeodo
2020-09-24 23:38:33777b616a49cad6687f1706ed066ad7879d80844e9e4529a7a2416d6e0804f4e7docHeodo
2020-09-24 23:09:51356e4701cc94b7ffbf517afeef9f5c0bbe45782f861d51859f0bf099df96581bdocHeodo
2020-09-24 22:49:01029de7c595a68b46233e28bbff65f065f8baf48178b6998928ebadafb8d3368cdocHeodo
2020-09-24 22:35:5846996b6a7e3fb5f718730ed86bbfa6e57792d961db1bd60352e17703af38134edocHeodo
2020-09-24 22:18:287e1935fab86166df5d6770468bf12c57a50720c0b7ba90e21accf2ca8493ce15docHeodo
2020-09-24 21:55:37c4fc9ec7954c1bc71dc415464f2813e6151dd7c106526dfe3aa8d97ec3b8f9dedocHeodo
2020-09-24 21:44:21b9211d9fdc8cf882f69237754fd387b887bd80a07f2abe12c2f687dd04ec3ad4docHeodo
2020-09-24 21:22:322a3395e9459dc5f0fc72621c2299e98b4226e6b99cf6069d89004e3d430a219ddocHeodo
2020-09-24 20:55:17715f9dc1efa5fca591ca9ec3b12ea2cbfb023fdeb8f0964988c191a7be6166c8docHeodo
2020-09-24 20:39:145bbcb03cbdf0fa9eb5854ee7d5c7d3669e469fbde2dd1cfe0b6c4767dd19d138docHeodo
2020-09-24 20:32:13a72430246d4ff63a287ccdb3d3eb1eea24af39ec67b6452658454f115f5a146cdocHeodo
2020-09-24 19:58:1885c3fbc17a0daacdb938f7ea4b8dfa14ae9a099d59de1e9fef807b569c999acbdocHeodo
2020-09-24 19:43:0185264b8b2a7f29ff8c64c3de97d3e17a58c4aa09c6a67460d5be96117461224bdocHeodo
2020-09-24 19:13:19267834c0d23e344ce20d8814e0e5499c7f5bc32fbda08c9ebf721a3dcb2efe26docHeodo
2020-09-24 19:06:49f6f1cf12aa5337999c20c4cfd641254575e981ad7c463944cfe676ec92a23165docHeodo
2020-09-24 18:43:3729f8908fad78f532f3e53d23cd10d6289376b52c559e2398ab3a2ceb671ba1cbdocHeodo
2020-09-24 18:18:48fe9b0b3adac87d1fe5b13863ff7ab54660757a7bc0b4996cfe241ff357c57b3ddocHeodo
2020-09-24 17:59:5960b9c51a988490875a152231c3217de228b7406a1378ab07263aea7f02ecd3ccdocHeodo
2020-09-24 17:39:23a448553c9afd57c49a33c314f51f722d61923249e07fca42997522d63e4bfa9ddocHeodo
2020-09-24 13:59:22460d4f1fa3c90d50ae0a56c6c4c26bfcd3d3d22829baef98b7ea3e9b451974fedocHeodo
2020-09-24 13:49:14f1d7646cf6abe9a746a6dab251be541e66a294060a1f32665b7e1c5d54de17dcdocHeodo
2020-09-24 13:11:30d038ad9d31d6764ec9e5ad2246c2f2a99e0c06ca8798bd54e73deecb05dab14ddocHeodo
2020-09-24 13:00:19418535f82699ce0df10d39ac2798fcce30da6070fb7b9b0f28562d1146f49e69docHeodo
2020-09-24 10:16:32ab91db60823e2094091fd21a60eda971c965e334da7b12f08b02334d781397e4docHeodo
2020-09-24 09:50:48f57bae29b433bbff72dfe50e3dda325580fedc58d7c032948cf5360ce803b390docHeodo
2020-09-24 09:10:220c0a47166f8b2bd4ca8b24c44ebdc1729d7dd6a49d3ba2fb400812d5409b7648docHeodo
2020-09-24 08:31:39f2566951b2f270b88cd2a864576ae53db3bd5f3fcea221a1b088b8ec0d6f6eeddocHeodo
2020-09-24 08:03:04b1ba77be7809b33fe1f34d2a388f0d8397bac88ac18ebf4fab88748d6fe2edf2docHeodo
2020-09-24 07:18:5069ff6eb0a71090b17e21b2829b6108b2eebf8bd12b92fe587ce103a4c5cc0f3ddocHeodo
2020-09-24 07:01:363aa1d5ce7ed49ce9dba790282a20ea4768c173c06418f513522ee6d401aa527adocHeodo
2020-09-24 06:17:29bc8c5bed53bd39445e8df6c75cbd7aefc5aeb6fc2e735692ff898d28c43e61d1docHeodo
2020-09-24 03:11:4455d2d07c2dcaff03658304df8b3b1b80946d30f441ff14743dd2ea7130333746docHeodo