URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.tekfark.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-07-16 17:13:51 UTC
Total malware sites :20
Online malware sites :0 (0%)
Offline Malware sites :20 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-08 08:30:05 52.223.13.41a74e89cf4458da039.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2018-11-19 11:33:46 178.211.50.28server-178.211.50.28.as42926.netNot listedAS42926 RADORE- TRno
2018-07-16 17:13:55 94.73.148.22794-73-148-227.cizgi.net.trNot listedAS34619 CIZGI- TRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2018-11-19 20:05:02http://www.tekfark.com/EN_US/ACH/092018/Offlineemotet ext heodo ext cocaman
2018-09-27 23:03:59http://www.tekfark.com/EN_US/ACH/092018Offlinedoc emotet ext heodo ext unixronin
2018-09-25 18:56:11http://www.tekfark.com/EN_US/Attachments/09_18Offlinedoc emotet ext heodo ext unixronin
2018-09-24 07:57:03http://www.tekfark.com/95066NCWCVW/PAYMENT/Pers...Offlinedoc heodo ext zbetcheckin
2018-09-21 08:23:08http://www.tekfark.com/18JWBE/ACH/BusinessOfflinedoc emotet ext heodo ext j00dan
2018-09-11 05:20:32http://www.tekfark.com/088020ICR/PAYMENT/Personal/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-10 23:25:06http://www.tekfark.com/088020ICR/PAYMENT/PersonalOfflinedoc emotet ext heodo ext unixronin
2018-08-28 04:13:59http://www.tekfark.com/UJkgvUOSitYiaZ/SEPA/Priv...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-27 14:39:31http://www.tekfark.com/UJkgvUOSitYiaZ/SEPA/Priv...Offlinedoc emotet ext heodo ext unixronin
2018-08-24 09:46:07http://www.tekfark.com/990LPXAP/PAY/Business/Offlinedoc heodo ext zbetcheckin
2018-08-23 09:26:13http://www.tekfark.com/990LPXAP/PAY/BusinessOfflinedoc emotet ext heodo ext ps66uk
2018-08-22 22:26:10http://www.tekfark.com/INFO/US/Invoice-5323475/Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-21 08:01:38http://www.tekfark.com/INFO/US/Invoice-5323475Offlinedoc emotet ext heodo ext Anonymous
2018-08-17 03:38:48http://www.tekfark.com/newsletter/EN_en/Availab...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-16 08:50:37http://www.tekfark.com/newsletter/EN_en/Availab...Offlinedoc emotet ext heodo ext unixronin
2018-08-14 04:31:37http://www.tekfark.com/34QHDownload/CK699905934...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-13 22:22:44http://www.tekfark.com/34QHDownload/CK699905934...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-01 16:12:15http://www.tekfark.com/default/US_us/Due-balanc...Offlinedoc emotet ext heodo ext Anonymous
2018-08-01 15:28:04http://www.tekfark.com/default/US_us/Due-balanc...Offlineemotet ext heodo ext macro word doc malware_traffic
2018-07-16 17:13:55http://www.tekfark.com/sites/US/Purchase/Invoic...Offlinedoc emotet ext heodo ext Anonymous