URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.premiumztore.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-28 12:29:33 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-28 12:29:34 173.236.174.54apache2-echo.chelsted.dreamhost.comNot listedAS26347 DREAMHOST-AS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-28 12:29:34http://www.premiumztore.com/wp-admin/balance/bp...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-29 03:19:17aada778a6ee21579478c37d9f766a74e2abfae033441a997ea715036316c9eefdocHeodo
2020-08-29 02:53:37db5d1df258f52d33f22c630cbe8f27f55e548e910d8b851365ecc612bab09177docHeodo
2020-08-29 02:37:28651697a7ad4735c29617111afdad056545ae1047760f46b4266c80cbd4b784aadocHeodo
2020-08-29 02:22:5001371d2802721d16a5f83938f491a4b8896161541b7f5cff1fd68a20f93f29a6docHeodo
2020-08-29 02:02:31157051ab74fe0a9998973c53b29676ad387279383f482890cf7e5cf173b66129docHeodo
2020-08-29 01:50:101a0b2d954e4b0e1d3b217d9240cd26ab870841bb7b6fe7937de95e1e714f8c03docHeodo
2020-08-29 00:19:35db1d3d2b15cc11493eabf3ae9ddf03d01861c1699b81a760eef10f48a9c4a2f0docHeodo
2020-08-29 00:01:562b8c2b9a9c7d844ed52ed9144f940f325bccce6ad4c74c524b4470ee94a583ffdocHeodo
2020-08-28 23:48:46933af4898a9ce638e04dbcf02e075e9f7eecf02ab22cebc4488517cd415e1c71docHeodo
2020-08-28 23:33:39f5d308b615528818047b9010074fd219d6248ce43aff167bcc0bbb56a6d45504docHeodo
2020-08-28 23:20:33aef46f7e71936aca8da4fff081f587fe6293f09dac7b27fc70f372088eff86f5docHeodo
2020-08-28 23:04:58167504fd75c887fa1e091030f6f8899e57917c86c6e455c8f7fe99b378bb5f71docHeodo
2020-08-28 22:48:453e8f3a7d0d0ce8e8ab7b5363b9c12f3219bd75974ac09118344ccc9c2b727727docHeodo
2020-08-28 21:35:51e5cbe16ff82c0a8778906a889f99a6cc41def9921e1944cf107eab74e277559bdocHeodo
2020-08-28 20:05:223a81d48dd27d252c1d0dbbbe11a02671bc68c7b1970611a1bde4bcf3beaea556docHeodo
2020-08-28 19:58:54fb2ffb3aa6e2a0f7a272c7bae05e700460c73f88daef8b34d0ae4332116d3ee2docHeodo
2020-08-28 19:44:425332fb0050d2e914d7bad1f7ee68a30aec6cf4afb47db5fbad43cdc3cb500209docHeodo
2020-08-28 19:25:46e189a7569815651cf514dcabf42ee4991cc49f7653402684fbf55db8353f7908docHeodo
2020-08-28 16:00:37c795b19f871d0e1ac944400c6a910641454ffd71ec1c676185e9444399997d33doc Heodo
2020-08-28 15:39:381803fa537b36e16132a5b47171a58d1ca83f5254575e790017e36517709a1a01docHeodo
2020-08-28 15:16:01ebbbf1104be5c5f4f000285e72aa802cdac327750e71a35a101e4ecac224d1d2docHeodo
2020-08-28 13:41:5574fd5e51184bd860adf8fa2da123bfc7876d06d7ac5007da67eb4a56f54640a8docHeodo
2020-08-28 13:21:131324cdee7c8703547e61f73304abbfa0e134df0a5ffd1d9cda593e4a1b9110cddocHeodo
2020-08-28 12:57:36f49d9546a53d5b00619acd8dd32985c7475d25628ab997d7f6160250372fb2dfdocHeodo
2020-08-28 12:36:52d1511a600b9d22d7d714df89c667ab913ccfe116fad6aa3759320416e83f6e23docHeodo
2020-08-28 12:29:34395577d95250941c35985848770af43890c58b468224a59a4fc203ab5c75c048docHeodo