URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xylontoken.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-13 17:44:25 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-24 23:39:52 172.67.177.17Not listedAS13335 CLOUDFLARENETn/ano
2020-08-13 17:44:30 159.138.52.146heracles.hongkongserver.netNot listedAS136907 HWCLOUDS-AS-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-13 17:44:30http://xylontoken.com/tnubr/pffvl07z-kef-965412/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 00:04:360df32e243143f973d1085fde1f1b5352cffad0a635a6c377227dd2773082ac49docHeodo
2020-08-14 22:32:307de39bd208f9dc300125b4fd349c4750c501e395b37e3c6a4d2856c516ef30d3docHeodo
2020-08-14 22:15:052ae0fb0ffcfdb106a9a9f0e5ca0e092207da05903f4126376ad7f2e153491abbdocHeodo
2020-08-14 21:47:51b86c240ff73da180f757c89c445ffcabe432f5274d37075086d28f00b41871d4docHeodo
2020-08-14 21:35:19945f6863a44778bca636e7c1076746b4f4fb45cc9e67a455d55ec84b4d3a83c4docHeodo
2020-08-14 21:23:49284869d2f6bf8757c4361deba6f72989a57e8fc84c93be00e7d2e9be8b979d61docHeodo
2020-08-14 20:59:02a3ad36ba5e2f29b182462c4bd4ac3e327b037ed3726031ebc106081eb157016edocHeodo
2020-08-14 20:20:12ecad5745af706bbb7ea9c6ec69d389e2e6c4899ca17cb7fdf29ac1230375503cdocHeodo
2020-08-14 19:30:3495cc5ce9259454f349e823d4c1e4c546a303dacfd17dd01c60af5f9dfb171cb6docHeodo
2020-08-14 19:02:12c2e044af01e5ba139d873400d8594ed2349fcb2f9005243a69c8476d0570b32adocHeodo
2020-08-14 18:31:0515892365a0d7743e823e39c1ba099b5bbb34ff1e38de28228b9d5c07794801a0docHeodo
2020-08-14 16:59:55c129af5aef7d314993b58cc7c4a1df79f5550e97f3eb6b9f1d558defa38df88fdocHeodo
2020-08-14 16:41:185dff91cf6d41a1afd397c3c21a5b5a401acbb9abf2dc6e09df6f45b8f8dd9af2docHeodo
2020-08-14 15:09:453d56178779af4f3321a7d6adabc672edb3e9036292191e34bb37d215e19a9f4bdocHeodo
2020-08-14 14:45:39a4a28205cafc8bad9f4887c857273508e7324991fb3b765e7019cef1f0192d4adocHeodo
2020-08-14 14:19:31936f0b1c957e1480cdba3c5cefac63730008c19b570d825bd0d6c6de85ca38b2docHeodo
2020-08-14 12:47:279d6676d7926e7555e55f55924ee0a8082d62b5b813ac98704090a5a23e7a1775docHeodo
2020-08-14 12:29:174935ab1182453885ea821cc714b1679ae7eeb54bb744fe13f52ad6e954a7f785docHeodo
2020-08-14 12:09:07fe58e66ba70c6c395732f2c817dbd2c6454463fc5104633ec022c7d1fac1bed9docHeodo
2020-08-14 11:47:227dc64cdcabade0fe1b2cccc83c3a256efb0de22bbc1e8b17a072104e393b3b26docHeodo
2020-08-14 11:29:22f29b2352c27bd3d9fca98d1f168efbbed851c986473a4281bdebadee731653f7docHeodo
2020-08-14 11:09:30b3ffd34596fe613e60507fc3754eb284d3bdf1968ea939014bb5c3efcdefedaedocHeodo
2020-08-14 09:37:12b580ef15f157d6c19b61810ddb5f085007685d55693d05cb54782cb52bac7e2bdocHeodo
2020-08-14 09:14:1873d4b0a7ca15e61e87a8fe48a88037618e4b4aac3d8a94cf4583f52cbab9bcc1docHeodo
2020-08-14 05:37:52865aa27f909822b77734136c2ce238a258cbf8a6041b588f5fb75c284fab5d26docHeodo
2020-08-14 05:21:08c32ebf07a4f2324cc33cf6e7c975c375621c519fa654fc27303c9a812293fd7fdocHeodo
2020-08-14 05:03:17dbc3f242e959a4c3398cc0676dacb940b4253a18f4a2be2d3a1aebb7c1f62d74docHeodo
2020-08-14 04:35:334156fe5a204dbbd2086b1c71f40ced2d03b723dfbbf218927b71ad2b2fb369c6docHeodo
2020-08-14 04:13:348b725e5a090dcb30815c5df978e72af9a04372b9fda6729678004e9bdd617ce6docHeodo
2020-08-14 02:42:48f740ad05fe75e146443ce0776602fc5828a534f28e1e2f34a1d785083de85bd1docHeodo
2020-08-14 02:27:17ebfd94ac1cb7510d9b3fe2de38c88bb88d64956d0c6eb93aceebee8ea83ac763docHeodo
2020-08-14 00:50:370b134d91d537beab9f4e700b126eb1b43b69c80126818592cef4697fce08263bdocHeodo
2020-08-14 00:36:032879a9d705300779c0269f3a6847fb725a3564c7ae27f44226fe17f422474ca3docHeodo
2020-08-14 00:16:27e8516c23d1aec8faadd52ae68fd240339940d05f4a1db7c56afdbec1eb5de0f6docHeodo
2020-08-13 23:49:593c2103ec1e6af0ce039524d58d70a4ced5e2845549def894d03f836978afa09ddocHeodo
2020-08-13 22:17:563eb6b088630e12b4b89f3af4f5b1366626605adddd5d7d447d1b4b8246d305bcdocHeodo
2020-08-13 22:04:334121659e82eadcc9063dbad5e46d42ef2d1b91e429f0c0e38fb203a6a0fec99bdocHeodo
2020-08-13 21:39:02ff68f4adbb2d5f421b94ec8c2ca343c8dc807544237928a2617bb4c1dd32b7b8docHeodo
2020-08-13 21:22:350dd2a96118f23f2fec5549ff2bbfbda83f954a2522474688ae8db5a35a84942ddocHeodo
2020-08-13 21:01:0749d66f1859784a289e46f5690a521c15cb397cb29ad8db6882806c03628a4b97docHeodo
2020-08-13 20:35:24639901538a10ecd38b6c3be81eb84718e712437127c13093a785557a1b920a8adocHeodo
2020-08-13 18:54:165068ac1fc3ea1af3eb637bed169df3a72f14ab7db56ff2996f718fbe8c05642edocHeodo
2020-08-13 18:13:44294443b3b8e68154544b8f501310b598b2925bc108c42f5a30bccfa9598b6782docHeodo
2020-08-13 17:52:303d0036d52990a0213f5c99f7929c005ba31e75d971852d42cdb1343128b1584ddocHeodo
2020-08-13 17:44:28a0174ce27bcb676191641c4b06722c67732d37458580fcda2aca969593f838d9docHeodo