URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.ngcdfkibra.go.ke
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-29 14:53:14 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-07-29 14:53:15 217.174.152.52bear.vivawebhost.comNot listedAS57344 TELEHOUSE-AS- BGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-17 21:59:04http://www.ngcdfkibra.go.ke/personal_section/cl...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-07-29 14:53:15http://www.ngcdfkibra.go.ke/mail/sRxXqv/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-17 21:59:03fd0b6b08d2deea0b22980fecdf347c4601d1174c7eff6a008f99ff605c706a0ddocHeodo
2020-07-30 01:54:2628ad746a87c186873fd8d644a8ca704b9768959c1d8cc780bbd1e4fcec07256cdocHeodo
2020-07-30 01:28:58e039f53c75e931e700cbcafe41ac39dfd4673929f7f2cf333a2f722272fd240fdoc Heodo
2020-07-30 01:20:14cf7363d569abe51412e602a505dbb2d3604aaf97ee7c71db42e66b09224dce54docHeodo
2020-07-30 01:03:05db24098d6bd41dec460588297f00255c409f745bbe32faaf2cb6476fd44ee504doc Heodo
2020-07-30 00:47:0272244c8748d1f0b37e10ef8b0f5be0624ea7ac975aa1214281b4f326e6b2f4b2doc Heodo
2020-07-29 23:59:059682cb3fed20b168899452201908168de9b2c2d82530d7227a4474b8b2587eb8docHeodo
2020-07-29 23:45:2940a19219a853bbc60201d4cd4fc226bcdda0966f87f05dda562d113d65c8ce67doc Heodo
2020-07-29 23:31:161a509a842e1a24c4ffe665706fc677197002dad72cf5ba4a2711e9aace8dcd70doc Heodo
2020-07-29 23:17:00b6eb1c7760e06c0bf914bc6f8d26d4aa98a1d859d71fed9d6712db95af81f5f0doc Heodo
2020-07-29 21:35:03bab24985fa20dca7f015976c0212909f59429d181ee874074692fa835b0f604cdoc Heodo
2020-07-29 21:21:35dca65af614b79dad6628ee637674667f9dee8b395388283c22e3fca41e8afe31doc Heodo
2020-07-29 21:07:3542d013d9cce79a7e86da79f6dd3d25b04f8460636e45c85ec23d1a962173f389doc Heodo
2020-07-29 20:55:234ece79e02379040355a4ff12f9b622c675a9910c6f10d98c393b790dc0c9536bdoc Heodo
2020-07-29 20:40:34dcce5b7a5bcb690a1e944e5dfe8577fe2bf2d913de0e0828825c8a3daf0d76acdoc Heodo
2020-07-29 20:23:03c9908873e05408d13895e8545fd5b9e3eb95032f5e363086b19e6a14a8ed7075doc Heodo
2020-07-29 20:09:57eedf761aed061fa63744aa541d5ddef3b7d53978fd00882cbf9fb0f88bd82550doc Heodo
2020-07-29 19:53:42cbf7197df6cd966772e966e4e8a67f74d1b090ade41e58f80f706a071ac64286doc Heodo
2020-07-29 19:39:47a19deec65bef4fe1030b463be94b414c4b4b1bad207acfc2fd8df6bb5bbbefdbdocHeodo
2020-07-29 19:28:04c65c81e1a76fdf4122271da9b47b9b45e0a45519719f468e7539eba8ab8f9d5fdoc Heodo
2020-07-29 18:43:52ed92633dcb1b2dad6206cee946593ef3d93a891dab991b164595043fe12d82f1doc Heodo
2020-07-29 18:27:58934f5d399e3b3914f2c3410ad251ab6817ddf37637d4cd01aa0faabb3f39ab2edoc Heodo
2020-07-29 18:15:142f455cc6268ecdade0ca6fffc1663cc0afd5ba64feef4dcad85b6d26f5a6de40doc Heodo
2020-07-29 18:02:52d38a56d36ace7f2adafd305ed44cdd1667c68209148e46187c616be8a00c379adoc Heodo
2020-07-29 17:38:216ecb72b433b635a49ee2f82737cec4103d08d18e988b42d36bd1b35d175ef612docHeodo
2020-07-29 17:22:176c3d8011d58d421f0db32a2fbd7ff2dfc39c7fe557dedcd503aca7d97d7a1e80docHeodo
2020-07-29 17:08:394dbfbd8a057e49274bd92c01fa9680f9b478eaf207fa1c55aeb36d7879a35b27doc Heodo
2020-07-29 16:52:454800ef4ce359d4cfcba1becb6f8f276e0e968f7184af96279a1c448b897cccbedoc Heodo
2020-07-29 16:36:2350445a74463d73e829f22308488c8ff5b166f83d4d17025cccf6f9c634146f8edoc Heodo
2020-07-29 15:05:084fcf5c5d7a3296eae7876be45da5f2043bb300507716ac8927c882b5faeb1c2bdoc Heodo
2020-07-29 14:53:141ddd4cbe0cce870cff910c166130add090f1e48f6f6c146f30cc368b32df026edoc Heodo