URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.willingwater.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-21 04:52:15 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 20:39:45 23.227.38.74shops.myshopify.comNot listedAS13335 CLOUDFLARENET- CAyes
2020-07-31 16:24:16 23.227.38.64shops.myshopify.comNot listedAS13335 CLOUDFLARENET- CAno
2020-07-21 04:52:17 156.226.21.166Not listedAS132813 AISI-AS-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-21 04:52:17http://www.willingwater.com/wp-admin/y068zaq-c0...Offlinedoc emotet ext epoch3 heodo ext ZLoader ext TrappmanRhett

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-22 10:44:29393ac27aa81e021260be2c3de9507d953b3d57f2dfd0ebee96d4a18af210b982docHeodo
2020-07-22 10:14:03bc1674694af57a7a421c131be6eb3403a2d2392a862aaff679ac7d2087690953doc Heodo
2020-07-22 04:28:4802c7fd8ed2ff395eb8c7eb3caca1e0cec299f4db7480e6d19829069ce541bc7ddocZLoader
2020-07-22 03:28:080f2039a528f454dc85d45347c05e3deeed35f371d829ed160143b2cda326accbdoc ZLoader
2020-07-22 03:14:524832f93778c37574a58c2119d6f0df1c00221503b83f91db3a165d2195eeb1acdoc ZLoader
2020-07-22 02:28:49eb7c02a2f5a7f9b6c76befb58faed0e6cba4cfc494eca22bd8e87b36fa241b66doc  
2020-07-22 01:42:14134fcf928417712824838f1dbfb546e7735361bf131324ddffe62aedbcd5f679doc  
2020-07-22 01:22:34e7af4a6f667a4edbd224f0b3c1358fcc307b4f67688529201e0c1c9a91560f64doc ZLoader
2020-07-22 01:10:25ebec7284e20fdc5a633b8f505fd018ebfdb512a595eaf179e5d77b60d33970b8doc  
2020-07-22 00:56:466475e70afc346103957694beb826b2eefdb2850c9939c91d6b514ce9e1cd32a4doc Heodo
2020-07-22 00:43:122a1b48f3aaada9451e14e735699dc6910a2df66a18b4f4497c7f4f6f159c8296doc ZLoader
2020-07-22 00:30:1614c000f66600b5ca3d6bac699b2d5c04ddcb6d8718fee703a5cc2c57fc7a1ce5doc  
2020-07-22 00:15:587476dba24b28d2a074d7e75aea79591f98fbb95b065c91870b5a8198ab615f19doc  
2020-07-22 00:03:138cafecab78eb955d85ec99123092085c12c6f94ab003097360fd6bb694cec236doc Heodo
2020-07-21 23:51:08d1fe2bcc5439caf2963c2bcf85af9c8b8d4451abbc4675be82a33bf97ca81f18docHeodo
2020-07-21 23:40:1443025670822df6a6ae1ba1f56baae65c0d563c0c12410244aeb8fb166be9f737doc ZLoader
2020-07-21 23:27:14b697a31e24a1872813f044cfe369887a6850b80c7d79509587d7e4e6955ba322doc ZLoader
2020-07-21 23:12:193d8d9972ea35adeb0f1d1014490dd3f3595a14b01aa429e48fe21cdfca7daa31doc  
2020-07-21 22:59:2274a3c90f0a3c99e8816a94689a4cac44f886be61e0dc3f6d324a661c16c663f9doc ZLoader
2020-07-21 22:46:5629fd633ba82c884e342db1c88a40a28984b2cb2fc5cbb4fdd901a3c6e5850817doc ZLoader
2020-07-21 22:35:079e2fa2ec0c3818292f9a10539ef4bdcda848df84a8e0223cae2f28f82360a11fdoc ZLoader
2020-07-21 22:23:07747095882ee4fedcb2d7306fbda6bcc5b792e877d427b855d80a0fdf5db073a2doc ZLoader
2020-07-21 22:10:502bf992bac6895328fca415aeeee4f89aff347608e709524ad9a2f549b007dae3doc ZLoader
2020-07-21 22:02:1072a76d3c5a30ccf7584528d7bd29ac47062d468d56a417063c19573496089d56doc ZLoader
2020-07-21 21:49:4297af910f93ee8e736e135660fd84b888bdcc82c809ef30af7cac06da62907994doc ZLoader
2020-07-21 21:15:49ff78753a5dfc898ae4ad1957d3d5ebbfce28458b5ed38a163e38e35532e62c58doc ZLoader
2020-07-21 19:31:13d00a595a3e71c743fc04ec4a2ba0eaab9fe1d76d7b018423fc5cece4e4a62a29doc Heodo
2020-07-21 19:30:23d00a595a3e71c743fc04ec4a2ba0eaab9fe1d76d7b018423fc5cece4e4a62a29doc Heodo
2020-07-21 19:19:013a5dd00ce1b9f75836d4575816fd4e49d546dfa29d24a4b5dff87b94d9b34b13doc Heodo
2020-07-21 19:06:27efa78601a195a5d90844411d1e045d9589a8249a71bf35b0132e17b31a412c5ddoc  
2020-07-21 18:41:075dd07737bc4bcd586aa9a89cdc86f5222873447eaaf558d404f31e3fb459f437doc Heodo
2020-07-21 18:27:114de9b5d8be922ee6f95a85aa378d4b78596a0df19e25a0388096ba0831feebb4doc Heodo
2020-07-21 16:55:23bdf6b8a3ab43c2e8091f591a913040c789e38a80e2f57d9dde2c5f0cdd9d7fe6doc Heodo
2020-07-21 16:39:57a61871e76461292b6923cf001c886dc23104ef7295f6fd608c7b444e577398e6doc  
2020-07-21 16:22:025ddb6b1bf21e4b873293346c3383ce3ff112b9271388b039ed95d38bbed45c5edoc  
2020-07-21 16:12:0205b1f0822783aa9419a3b13424fb6d31e224e8dad2c84ace8cafa7c1b42a1f3edoc Heodo
2020-07-21 15:55:3737b40dfa5b0802e246f8fc7b2454db8cb46ad31ed36c4f7fb154a71aa200279edoc Heodo
2020-07-21 15:41:4975c9115e924a7b2ea6b2565e7d48407cbcdf06ffd452bcb6834bb821185b2272doc Heodo
2020-07-21 15:28:02692c3606f5b32a2200f1ec78d8764604def5e99ca282474046d78500e09fb91adoc  
2020-07-21 15:15:36bcc004820abd0f210285b3aa58c625f0a00187f4f545313a553b4a40ec68b6badoc  
2020-07-21 15:06:108f32874205c29ff499e75943e0f6c9b298417cca9166bee485e13f791d6cc4c3docHeodo
2020-07-21 14:51:14f46d92d4440678792e72b414df3ccbe066766a4b486ea3c25c767d8c297335b0doc Heodo
2020-07-21 14:23:10c809bea4eab861ed271e8d1688b261c33747782ac6756d644edf6889ba745c88doc  
2020-07-21 14:00:51aa31041b4dcd03e3ad1818d6ca5ac597b999aa6725212a9dfecec97c68100a27doc  
2020-07-21 13:47:14969b9fcc13e520a48a60d7e65714c495c99ac1a90075aef31a7486070b8bb171doc Heodo
2020-07-21 13:28:076a474d19ec3d28962de1668764ca03da5b762d1d6a949bdf78910db1a1bd1bc9doc Heodo
2020-07-21 11:56:41ec15490f0fe558b1c2db47afeb9bd903a82cc44b48ba66e6c66a5570e0be87b8doc Heodo
2020-07-21 11:28:17f37d602c2d14ef7dade7cd13740d744939c846704065c8d20367a677ce0ad095doc  
2020-07-21 11:10:59b7c0c24f3f9f552c499937cca5dcb7a8fbb7bbf600dc1ad43256647401ca3d04doc Heodo
2020-07-21 10:57:007f53ea4c64012caad27163ff00c2aefd9e2dff6a4c5fe488955be018c8af4362docHeodo
2020-07-21 10:38:173f7a1b33f7dcc1b83d5f92638f49684c3669a37cb4aadc5ca4aca17036fbe4b1doc Heodo
2020-07-21 10:20:20eb0997857baec37d1cddca0ae3c7b6c59fb78566eb5faf16035fef12063a3a2adoc  
2020-07-21 10:08:01e0b1f74edfc82851cded4dcd2efe9482c8272105eb6853b36947bc7ef8510145doc Heodo
2020-07-21 09:53:029880e4daf09068bccb16b2baae14ff902fa9d6f841f48ebb26bdd1944e41045bdoc  
2020-07-21 09:35:5191eeda612b556a293a55a78b95987a664e002e871a53ff177794b04908f39fccdoc Heodo
2020-07-21 09:24:032b44339164b5e8b860c12c8e8b4ad6dc2e1bc587463ec797b04401d948978140doc Heodo
2020-07-21 09:05:154903f451f19bc16aaefc695c70d0fb223e73d48958a54a4381cf8f776bc4e8f2doc Heodo
2020-07-21 08:52:037b89c117307ff77f93913774b637ef762d4bd0656e1b17b9462821cf15e87f0ddoc Heodo
2020-07-21 08:33:5459fdc24661735c738aea0c5ce35581112339c50c9a16a48bdc26694fcc2aec0edoc Heodo
2020-07-21 08:08:12d279829ce22ee6a6b6a7c259b4c7be73b7cad4a3ba3771caf3255dc6c4024f3edoc  
2020-07-21 07:55:55ebbd45d43283a8cb0568c350a669315564a1e8707aee4ac4556c0a843483d482doc Heodo
2020-07-21 07:40:584c0125f72c43063a474cd06d510baf4675597b0dc15dbc75808ba19e47c3b508doc  
2020-07-21 07:16:37c8b378b56c943ef48599ab9f3eac4de26ced0acd9c5db6d952aac355b1ba581fdoc  
2020-07-21 07:04:1938f0850e9bbc46f419acd8e723015f8a5c90bc3643e680ffac42cb2b88179c77doc Heodo
2020-07-21 06:55:31295dab6cbdbbcb48ed5d8b1623aeec9031d7a1c617436d3805f32e3da8267efddoc Heodo
2020-07-21 06:26:1133a93dab74ebd140d4d77872dc8c32cc0a9f876e750bfe15994bc2884d42a458doc Heodo
2020-07-21 06:06:39543ce71bd2deaa4b6c6994a72f3641b50eff2be1f90beca627322bae86b4f7e1doc Heodo
2020-07-21 05:48:5119d54ecf09138dbd9153771a0928e858bb5afc3ca208c3a58c9bd8aa5934b110doc  
2020-07-21 05:28:22bcbd3e8aab56417bcded9dbddfa8631d609998e5cdbe1e9dad903c4b5c96c156doc Heodo
2020-07-21 05:08:31e37800a8be08a41f6959068617236eaaa5f0bcfbf166b68d0aac0292ff664780doc  
2020-07-21 04:52:172aafa91f9bf7bb0ba237bd6180ec6279528f3936609ddbb3138e151094fbb45edoc