URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.sadafdamghan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-26 16:49:02 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-26 16:49:04 136.243.5.53server3.dn-server.comNot listedAS24940 HETZNER-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-26 16:49:04https://www.sadafdamghan.com/wp-admin/235323749...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-27 06:43:530f84086df046d8247545c6850bdd674cc2ec7f6917a000402e5601f869877440docHeodo
2020-10-27 06:21:16c8a26a6bf04fa1b4487e91652089536164904c9871390ff9384b964ab9ff8923docHeodo
2020-10-27 06:16:03bbcf342f38fad4cb3b252689523b40dbee9d9ac7fc13a132a7159a2319704997docHeodo
2020-10-27 05:54:30025c53c15a718576f252e314fd616fd0254ba584908745032798dcd45f930eb1docHeodo
2020-10-27 05:23:41fad3876dba63b039b011d17ca535f18ea1961cc3569c9ea39a813f1d887ab8b2docHeodo
2020-10-27 04:57:01b2dd36198ab64fa72b4d6eaac45af4c16d8e108a6449b40ec93f42a177fa185ddocHeodo
2020-10-27 04:38:53124f56eaa0b487e7b12b941084ad16075fec2f6f8f9016dd7366c8c33d18f531docHeodo
2020-10-27 04:08:58ba8769c88b663f9b0c6c929dd205c97e2309d714936a6f17d5e2eb479e8a48c1docHeodo
2020-10-27 03:55:09f715e2571cf2bfd37aa823b2ddbe5462575a40ed082e3b039329ce574a2be700docHeodo
2020-10-27 03:31:529c8e29cf162bd43604573c0a82cc8375a4f728d790c0c5e9c090b23672e5e529docHeodo
2020-10-27 03:12:27b476a22032820fe10208a586bc4a6d4e0cbf3c24aa884da7fa6563758151493ddocHeodo
2020-10-27 02:50:12850d6c02cdf898bc72beada105c810692cb2bfdb8fab3b14e772c2076db9b99fdocHeodo
2020-10-27 02:33:36dea0bc4c6fff09c2bd1c8a995db1da421b50f9e57b107db26bc5b71dba427610docHeodo
2020-10-27 02:08:007db77f1a42a01fd8da4a5ca5eed3c944f6cc3db9caef5ac3e8b5d420b970b612docHeodo
2020-10-27 01:45:1663de45b66603ef77afff13bd0ba2dc21747b5f6d5b0f4aa2ab8d3d373d5c4b68docHeodo
2020-10-27 01:27:14a8af91bef70904171bef405f02b5defa05d6b30f158c7ad6360a7436e6b7be3fdocHeodo
2020-10-27 01:14:47c34b033be6ccec716ff4925ce6e96a65872b23103b659fa24f079d99711963bcdocHeodo
2020-10-27 00:59:5582bc786b9af204285f0f89af1602a8e5e1b5df8a914084602d45eabc08922607docHeodo
2020-10-27 00:48:3334552d4adde7395abb5b114284e79a47c0aab68c0ab1fc62affe993b7373852edoc Heodo
2020-10-27 00:22:364be5a08e5917bfda74c71ec644045bbf4a80fd8d4a42606da954548f86b90765docHeodo
2020-10-26 23:59:03edf8d1c6eaf9fc29cd8dc065087f100ddc1e811bb4279f1650627028cd2a3c08docHeodo
2020-10-26 23:34:27d51e0046c1cfccdbbee59aa82fdc5780aace64ee8225348e067170db0a442ba6docHeodo
2020-10-26 23:02:49f620c363a605c7c11abe0ed6c9f919168781361df2901e24752c0ebd428c4854docHeodo
2020-10-26 22:56:2873d1b4c3fb5a035d592fd68fb3393cbfbd659c6fb165d4aebb3c1abd953aa593docHeodo
2020-10-26 22:39:129624eca338cef03d8004d874cd0c774bf67ece67290d5a0022da8117345b11c6doc Heodo
2020-10-26 18:22:4931086afbd5dd032e22abadd031a2e61e2af43af502a030068c2c5376efde09c2docHeodo
2020-10-26 17:42:47d90ed0030c1275bb1ddd893fd29e73bdcd9ba1321e78c8a7525f30e5786c4431docHeodo
2020-10-26 17:21:014d7c83ab9cbadd584834009dce7bde2c59c2867fab78b643766b83bab6899445docHeodo
2020-10-26 16:59:44ff5007b5761e068b27ecde2c4c2a63d1ffa24ad25ea98ec266369b5ed35d8d17doc Heodo
2020-10-26 16:49:04b1b9d4c785c61ee38c3c543ce248b7e2380a84b608eafa74a370d0a95d0bad4cdoc Heodo