URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.noor.me.ke
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-06 04:43:12 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-06 04:43:13 217.174.152.52bear.vivawebhost.comNot listedAS57344 TELEHOUSE-AS- BGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-21 16:45:34http://www.noor.me.ke/wp-content/sites/rntaq430...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-13 15:29:08http://www.noor.me.ke/wp-content/lODcgYB/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1
2020-08-11 07:41:13http://www.noor.me.ke/wp-content/personal-zone/...Offlinedoc emotet ext epoch1 heodo ext spamhaus
2020-08-06 04:43:13http://www.noor.me.ke/wp-content/eTrac/d3161137...Offlinedoc emotet ext epoch2 heodo ext Quakbot ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-22 22:51:58493fbab43b8eaf0772394866842fa9474e8e54a84894498828af06590dff1cbddocHeodo
2020-08-21 16:45:34fbd63265ff2f62db6c66adcef3562a678b0243b77f9be2a726d4bcf87f68a9c8docHeodo
2020-08-15 10:01:10b9d2bc9624f1e81b007fd1d89170294eb6eb29c779f83f4e75576a0fa3fa421adocHeodo
2020-08-15 09:14:418f88dd80520ccf01a78eb649cc1a7918ff8a0c36019a7b5ecf59ae9c79afae7ddocHeodo
2020-08-15 00:04:41f7ce411b7421d1de9b103f8f163473e958f59f43df8aada43e0a13c56cdd7547docHeodo
2020-08-14 20:59:04a3ad36ba5e2f29b182462c4bd4ac3e327b037ed3726031ebc106081eb157016edocHeodo
2020-08-14 20:20:12ecad5745af706bbb7ea9c6ec69d389e2e6c4899ca17cb7fdf29ac1230375503cdocHeodo
2020-08-14 19:30:3795cc5ce9259454f349e823d4c1e4c546a303dacfd17dd01c60af5f9dfb171cb6docHeodo
2020-08-14 19:07:00f6975e399a20403d7fa740561dd50360525589b049dea235f163105219d0cb99docHeodo
2020-08-14 18:31:11f05c3c3c5f5f34aa116627c7125bf1a8c6601d0fad0762c759d77d20ffa45726docHeodo
2020-08-14 15:09:4533a8aa9764e02d87f0cec4eefb1f0a698ad48b39a10a8a9f2d62856a30cce1bfdocHeodo
2020-08-14 14:45:217547919d586a1ab27cf87b4e8b7031345a0ac4b24ac352d54627ede945055aa2docHeodo
2020-08-13 15:29:08286f7949f545a67074545aa0830816a560a993143774c4468d041d5e656d2897docHeodo
2020-08-11 07:53:1112587249744f2253a36fa401256c0bfe0d806185522023bd4862720f14b9cb15docHeodo
2020-08-11 07:41:124f066cb84bdeb0cf749a10fa8cd0c978fc9c50906fb5f659e8fab02375ea765ddocHeodo
2020-08-07 23:27:4441ef6b4c13a98f92f61c7a14e9619f68f166ea699a7ea6eee9a1bf0165512f81doc Heodo
2020-08-07 21:47:0441051e1b0ef6db0f014593da4cb56df1bd320b0b7f7917b80b0e44f529504443doc Heodo
2020-08-07 20:16:0751f4b68143c9a8757314246d5abbca3969c650720085f62ae8dd4b7a41c5b300doc QuakBot
2020-08-07 19:59:463f4c381531d4604385f763850e0e32cd72c1b21b78330327c64b2da16e62e9f8doc Heodo
2020-08-07 19:27:411442e37da0890d3530824edbe967a345271fcf066a08f02a9705a42cb732750ddoc QuakBot
2020-08-07 17:57:17647e4bdd2ba51f7dfc1c7749092db78d95b64ca550d266e025602d2437cb503ddoc Heodo
2020-08-07 17:26:09a2f497787bbdbcc120f5809ae917c1dbc90bfd436fe53328d3eced922944d175doc Heodo
2020-08-07 16:35:1984180bac4fd537cf561faef664e01bc8fb757b261a84048d002437b908b0d85adoc QuakBot
2020-08-07 16:25:2612c13b352ba28fe4d4f492f9938a727d01596e908b438e160f970b716ef350b0doc QuakBot
2020-08-07 15:35:348d55b8a46ec6f0fbe33e6081e392bfdec82b3f59ad1754c6fbf88013dd55691ddoc Heodo
2020-08-07 14:52:312ffea249c37a4b0ed592b49e9d014d00163748f02a120ddf1db5b6446e1cd2dfdoc Heodo
2020-08-07 14:23:3391e4cb40b7a009a697aa6c3a76febbaa0962c9ccd8256d0e3ed7d724c58ced08doc Heodo
2020-08-07 14:03:3983acfc01aed8937375c8bc98733684caaa595766301ca229d41af7b2c3966921doc Heodo
2020-08-07 13:27:18355800b39c9720c49475816188b7a2e6d4cd8ce9777c1dcd9b6a7223a9ea00a6doc Heodo
2020-08-07 11:56:04b672f5abfd74991cf8744157fc0642f98c9e09c872d637548b932582b74cc4b5doc Heodo
2020-08-07 10:24:02b5c9b45ccc9086ad11f0cd352ec98defa5b69a014eb4c371db8799808871a91cdocHeodo
2020-08-07 09:59:189f226b33ed3ac52584fc08957b69d7894a68afb9332dc79d42bcde06df63fabedoc Heodo
2020-08-07 09:42:189003022268d0174373813a27761795b85bdc4972564810056d592cb380ac81f5doc Heodo
2020-08-07 09:21:59848159e2d023ddbb3136a1a30ae91e9dad7900c86b3efd66d8670436e9bbea95doc Heodo
2020-08-07 08:35:1857370f33ff18a79a83e7ab0a2058c0182aaf87d4f996595ed5aecbbd404b351ddoc Heodo
2020-08-07 07:49:0492b580f1a19c92e5f54c6a8e881f8b8694aab87b99e79990afba016e9a14dfe6doc Heodo
2020-08-07 07:22:52eecea8fd330329b9b832be329a5ec67804ada3d27b6e7ae845f1d7493f99a013doc Heodo
2020-08-07 07:03:594b4574331de7a4583c2a0d5eed8d114453c864e40643f51ed2a5f0547bb936a9doc Heodo
2020-08-06 23:44:5311ebc1e7d98db529305ab1836ba6f66e1f764bc33d34b9f7f89593137565073ddoc Heodo
2020-08-06 23:31:18dbfa4f3e94fad4c2304f231dad35da96b92435bdceace1abbe587ee2beb6c1a4doc Heodo
2020-08-06 23:14:14b50f11d3c9824d9d8e24907a06429c04aa7f976c1941d149665c477cf46b12cfdoc Heodo
2020-08-06 23:01:152ee0a294d681306e15289470a69d09210966baba4b985463131eaec15ea3cbcadoc Heodo
2020-08-06 21:30:342632f54ff03da6748cd94b4dfa7c750dcf28976dc3c60983e594c50cfd49496fdoc Heodo
2020-08-06 20:00:38558c6fd97c7bd0ae972d2c1d6612d37ed41c6403692d8f39deae96f13c245f1cdoc Heodo
2020-08-06 19:40:3893c870008317b819f86d45c0c3e0075eae202d632a8c5a15afafda0e60ba9551doc Heodo
2020-08-06 19:25:49327c6bfb13ad517728ad6518c92fb0bf638b79474445be494e4e8e6da2f772a6doc Heodo
2020-08-06 19:10:01c587f3652820270bba59542522120672e8e95522ddcf9ef94ada4b00271b3bd7doc Heodo
2020-08-06 18:52:333d7b0b0b8db48edd63f38207860a39c39f05ca912545fae115149ce35b949740doc Heodo
2020-08-06 18:40:495475cfc64e19f8a7195be93c65b59fb767c78681a8776edaf2914d43242326cedoc Heodo
2020-08-06 04:43:13ec3a0da775199b1b57aa28bce92638aada7d8f853cb7825f926acef1939e2d74doc Heodo