URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.pavementgroup.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-02-12 19:21:03 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-12-22 20:32:45 3.125.5.178ec2-3-125-5-178.eu-central-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- DEyes
2025-04-27 08:28:22 104.21.26.7Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 08:28:21 172.67.135.27Not listedAS13335 CLOUDFLARENETn/ano
2021-09-15 22:56:15 172.66.40.85Not listedAS13335 CLOUDFLARENETn/ano
2021-09-15 22:56:14 172.66.43.171Not listedAS13335 CLOUDFLARENETn/ano
2021-02-12 19:21:04 104.21.45.117Not listedAS13335 CLOUDFLARENETn/ano
2021-02-12 19:21:04 172.67.213.150Not listedAS13335 CLOUDFLARENETn/ano
2021-11-24 16:13:50 188.114.96.11Not listedAS13335 CLOUDFLARENETn/ano
2021-11-24 17:02:18 188.114.96.44Not listedAS13335 CLOUDFLARENETn/ano
2021-11-24 16:13:50 188.114.97.11Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-19 07:08:04https://www.pavementgroup.com/pdf/Host_wtdvjYby...Offline abuse_ch
2021-02-13 16:31:03http://www.pavementgroup.com/pdf/Host_LbWoML60.binOfflineencrypted GuLoader ext abuse_ch
2021-02-12 19:55:09https://www.pavementgroup.com/pdf/Foredrags.exeOfflineexe GuLoader ext p5yb34m
2021-02-12 19:55:08https://www.pavementgroup.com/pdf/naOfflineexe GuLoader ext p5yb34m
2021-02-12 19:54:06https://www.pavementgroup.com/pdf/Host_OjFGklRj...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:06https://www.pavementgroup.com/pdf/Host_fZbzoGWE...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_yysbnhCk...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_NcxeCm21...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_tKEDhGwv...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_kbcZWKSr...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_wSwlQTc2...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:05https://www.pavementgroup.com/pdf/Host_MTYhAnhY...OfflineGuLoader ext p5yb34m
2021-02-12 19:54:04https://www.pavementgroup.com/pdf/sssa.zipOffline p5yb34m
2021-02-12 19:54:04https://www.pavementgroup.com/pdf/obj2scoopingl...Offlineexe GuLoader ext p5yb34m
2021-02-12 19:53:07https://www.pavementgroup.com/pdf/Host_EmeXqT94...OfflineGuLoader ext p5yb34m
2021-02-12 19:53:07https://www.pavementgroup.com/pdf/Host_LbWoML60...OfflineGuLoader ext p5yb34m
2021-02-12 19:53:07https://www.pavementgroup.com/pdf/Host_ErkvIb17...OfflineGuLoader ext p5yb34m
2021-02-12 19:53:06https://www.pavementgroup.com/pdf/Host_Aivnpe11...OfflineGuLoader ext p5yb34m
2021-02-12 19:21:04https://www.pavementgroup.com/pdf/Host_HpCGCnTj...Offlineencrypted GuLoader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-02-12 19:55:0811e791b95a172c13756310e44f038e4f688742ff461f84a0e49315b23b7e5f58exeGuLoader
2021-02-12 19:55:0822b13820a6139c7682d5e1108aefde2200dc593e14fe7fca28eb27d5e616bef7exeGuLoader
2021-02-12 19:54:064aa6dd8773adf08d46a77211453de0f45100b4bed1064c67064399b5f29e37efunknown  
2021-02-12 19:54:062a0a8c4f584b8c974c73f8034b282efd53351c0f0204c07d663299d88635c73funknown  
2021-02-12 19:54:05e56f00c4786bc2625120a8a40f26137ba17ac41f414592be1f7646272082ec2funknown  
2021-02-12 19:54:05370110c275804522e4dea0c0ec484f71202e2e5040aa7d38b6042dcb91e9f6ddunknown  
2021-02-12 19:54:0512319ab8d4e654470508a36f8911c1c223645d820211e6d8d29796ab5aa162bfunknown  
2021-02-12 19:54:054b6e69009c28514c99490c6d28b08b4ccb9e3cab559b8b19e582660ef9771da1unknown  
2021-02-12 19:54:0543ccb3c8212d4b94f73938b266fed7719d80f12564da8b2da75f56fcadfc6446unknown  
2021-02-12 19:54:0551d591065d25fbd2d1634c8bd792204e9626ccfd4fdb99d842a8345dcde3d1a9unknown  
2021-02-12 19:54:047765b39aa0345fd2af3838a548807c90094ea98d227d625ed742260833643b52exeGuLoader
2021-02-12 19:53:07ca9d8058562a843a2ce915c79f5ededc5f0f7703cb3c3c46464e03013d7d909funknown  
2021-02-12 19:53:074e2c7afeed1c4b94951d3b45493363ef14d37aeeefb50814a3a0ae90c4c6e1d1unknown  
2021-02-12 19:53:07609d2cb18b1c956a15f6d9679b2cb530c8eaa3ed153ffeb294d19c81b3bd23adunknown  
2021-02-12 19:53:066fcf4931471d80e227d9857f26ff2c957e252df8dad51b3d480770f5e30242e4unknown  
2021-02-12 19:21:04f5bb1b333398de5c6ee1ff7cfe3272bc22c09cabf2eca5549f94758272b36eb4unknown