URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xxz1.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-23 19:08:40 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-02-18 19:48:36 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2020-01-23 19:08:44 109.230.219.138xvps.deNot listedAS48314 IP-PROJECTS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-23 19:08:44http://xxz1.top/wp-includes/closed-9415227-AXTt...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-25 02:29:437a257b44a9fb62afa665bf698344474aa5ad6ab256a2ba1692223bb491dd938edocHeodo
2020-01-24 19:37:36fadb42916d1b74f1293ad6a0fb9e79a5d8c485ad3dca747689a927986e2aff08doc Heodo
2020-01-24 18:06:501152574f8e44d0e8d372e21b715911bb6441dd3ab700cc6ebc6fdd9ed5d3f79fdoc Heodo
2020-01-24 16:57:479ee3737563b9456f1df85cd49ee7cbf7a995e52ab225b3e5b6b81ac731b62cc3doc Heodo
2020-01-24 15:37:067f0c9aed260e602ccc6fecdf02ef0f77b12ca9a067b9693e77a533850298b509doc Heodo
2020-01-24 15:22:04f1db275a6072ab84d0b6ebbeef56e335eba2bd202e1b885dba421a289c3cd774doc Heodo
2020-01-24 14:06:231a8a41cd0c967beeddf5ff91598443d77050bcd001a922d12043631147f218cedoc Heodo
2020-01-24 12:40:368dfda883de58e06c92b64245474e42e52ada0a0dd10cb9218595fb09bee88463doc  
2020-01-24 11:08:35ce660d7f4d173999ba421ad499211d7a5860bb5917791a8f626e84b49b216746doc Heodo
2020-01-24 09:37:44c86502170f9dd2b3e17715bdf23916760b86bba38f889c85bfc4f0e3a0fea368doc Heodo
2020-01-24 09:18:555f7b5b63f008af0a66e1469fdfde921c12560e0dd9e08a3e773526b7a3d4ecc4doc Heodo
2020-01-24 08:06:42700f862067a6c1dc5495773da2871b6b0517654aebf401bb5c0f467b4858a925doc Heodo
2020-01-24 07:22:397afdeb5e110e10671c2ae95ac8dcf544f850ef52c03073fe673ac245a9881d49doc Heodo
2020-01-24 06:12:18b1be02fd77a2e11a5150be46dc9dbc33f86e13d1a70b44f34fc4ef84dae64a24doc Heodo
2020-01-24 04:14:32d0fb35bf093cc307932021be6f60b55ffb401d6bf00e0798cb7618e4cbb657a2doc Heodo
2020-01-24 02:50:565beeb30893540e16293e931fc97174c50541f2340ad85f2d9f0c862821603cc4doc Heodo
2020-01-24 02:45:35a5949311c983e124ba9f32963d4edcfec18258c0993ae8f423472645c91d8314doc Heodo
2020-01-24 01:12:34cc580ae93e8482e6220192b175a1a9f16cfe8e9fdf3f06d9b92445249ecb90f3doc Heodo
2020-01-23 23:53:10dcd9613e4c74c03508bab4afe05cb54716057c6b38fea1e9dae9d42041eb43a6doc Heodo
2020-01-23 22:21:27356d9d432807a2d7fb61e5893fffec5494ff1c4500b5e0786e8548fa32ca930adoc Heodo
2020-01-23 21:45:11304ba010ff550b5b17f73a8fb4fc9f767506cfbf7968703a73f2282ceeeeacdadoc Heodo
2020-01-23 19:28:4083521dafde82fd8d028d0b8d5ea3b5782aec11a2de080e271d51df0b32c5ab25doc Heodo
2020-01-23 19:08:4310dcbf81c5bbee5daff50207bf3691bba9091395a6261d445b31afcb51788f79doc Heodo