URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.songtian2022.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-15 23:13:05 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-15 23:13:09 47.242.53.98Not listedAS45102 ALIBABA-CN-NET- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-15 23:13:09http://www.songtian2022.top/quackish/7838656582/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-16 06:47:24e6896dad4ee0bc73a3114762b88c9d93732c631e64c537334ac38f7c7c421141docHeodo
2020-10-16 06:25:53794cd8d6c12b283f0a19f40472aa0817f0b038ddce585fd66b0985d440e59616docHeodo
2020-10-16 06:04:3992d36d8404107035e4524734547170d1517c9ffff23480556c718f4c7c89d3d1docHeodo
2020-10-16 05:46:5483f30b3a4a10e5a1a7c91c9ca69d9bc4551924e63d41ca17faf0be34297659dadocHeodo
2020-10-16 05:09:08f677579d45117ccb457830413b6ee450bfe97425e2b31f2b582368410b0b78e9docHeodo
2020-10-16 04:42:292d9023a6f86851ac7ecb86a93a0c083b17f481474a2b8182c64a69cbda7fb2e2docHeodo
2020-10-16 04:15:490132d7543ceb26d2709cd377cfaa3132827b865267e7b98d31bcf3f38e3b1c3cdocHeodo
2020-10-16 03:33:27d88cc631f25d888116c3b78ddf00181cc391af4dde6f53be7dab166efdfe71e1docHeodo
2020-10-16 03:06:472955467d39aee8efaa08f284298b86e105ff6b8855c674bb41e38ca21d2c6bfedocHeodo
2020-10-16 02:36:32db94d5c4b06addbc9cf25f6314120acc65844c5992881c55969c97cec957012ddocHeodo
2020-10-16 02:02:592ea42eea9abe81ee4415154eabd2fc00bb951b3a234e1b3ef9e824d77ee97732docHeodo
2020-10-16 01:21:54a0af2c0d46bfa10fc4589560d7055a18babee6615726fb2893b817e111f9ecbfdocHeodo
2020-10-16 00:57:2928a6bdd824538dcbdc61dc5ffe9d61ccf016e4a4bb027becec2d522503ec8b0adocHeodo
2020-10-16 00:37:22200fd063fbce58987452058b68b6f0d32d9fd51afddd74f6ed466124627fc51bdocHeodo
2020-10-16 00:06:254175a2dd2295146108a2fb6d370f0d24239715d3709a82c0c6ec420a962efe90docHeodo
2020-10-15 23:41:23c092eeeaefd8e9d4c328cc78e77530cb40fc820d921ce06c271c47781aae2da4docHeodo
2020-10-15 23:13:08f3aecd021c57be4a051eb58488f96cd6183ea34153cf79876db7f699d5ce1032docHeodo