URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.phazethree.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-02-26 09:24:16 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-02-26 09:24:24 64.62.182.69www-shared.iconisp.comNot listedAS6939 HURRICANE- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-03-16 04:39:07http://www.phazethree.com/wp-content/themes/cus...Offlineexe Troldesh ext zbetcheckin
2019-03-16 04:30:06http://www.phazethree.com/wp-content/themes/cus...Offlineexe Troldesh ext zbetcheckin
2019-02-26 16:53:19http://www.phazethree.com/wp-content/themes/cus...Offlineexe Ransomware Troldesh ext abuse_ch
2019-02-26 09:24:24http://www.phazethree.com/wp-content/themes/cus...OfflineRUS Troldesh ext zipped-JS Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-10-06 10:56:47e1f6dffe602ac54661716ca73f39066032b6f3010b7294723a7c1d015d711c82exe  
2019-03-16 04:39:07388e56393ae6b4d2ad4c434721060000f6782c412aea274f3465757a114efe04exe Ransomware.Troldesh
2019-03-16 04:30:062710580e6191bfdd72494a6e00548c6a697ad2f88bccc3cc73fc1100b4e60782exe Ransomware.Troldesh
2019-03-01 08:13:18391a3defc2f9ec2de3e163e6f5655e5580d8390bcc156075b6fbc7caefe131e0exe Ransomware.Troldesh
2019-03-01 00:40:0180febde88e93687893fee2cc8f25b95873a6c7ea673f2cd13fa0bbbab5f7d4dfexe Ransomware.Troldesh
2019-02-27 11:04:537fd069c438dd90ef35ae7671e85351080a8eb896882f052ea37b5b01c004d744zip  
2019-02-27 10:33:087d14e8f6342d01ea1837d78458ec799c7c63ce8deed8e41bb6af961ad0f5b9eazip  
2019-02-27 10:04:379874c3254124f8703ce9481edef53ca2b776f1a1bd88e92a59d0ae2e6dd99d3fzip  
2019-02-26 16:53:1973c904d658efa66370dfe8ec83a39c3038343b03e5509fa3280c85bd76790b32exe Ransomware.Troldesh
2019-02-26 12:02:12f19ae9a2f46cf686bf44791d5730c39de2d8e74c87d1807c9cecbdb180b841a6zip  
2019-02-26 11:00:17694ce86fc023a6f68dc9e16c9ee1b8ecb6d165a32e6d5cea41caa0c9dff04d5ezip  
2019-02-26 10:29:12b272cceeb310b42b97ea4c632b44d0814209994f295bbb17a32c7649d9b49a9czip  
2019-02-26 10:00:14dd6ac91fb138f26b0e06051fdb501cc8c719c8d587489869c59fa27c8ad32ecazip  
2019-02-26 09:33:064807000d6e15724f81bf8e640bcca4ee9c08ad8853acb79e0298dc5f02e1fe87zip  
2019-02-26 09:24:2308d0aa345da03d5ee13b462061cdaf8db1c3eca6d74cc9a687d36927d40a59e3zip