URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: yoursalesforcedeveloper.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-21 07:52:10 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 01:36:55 162.214.80.158sh055.webhostingservices.comNot listedAS31898 ORACLE-BMC-31898- USyes
2021-01-08 00:59:11 162.214.80.46sh016.webhostingservices.comNot listedAS31898 ORACLE-BMC-31898- USno
2020-10-21 07:52:12 148.72.89.1212.89.72.148.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-21 07:52:12http://yoursalesforcedeveloper.com/wp-admin/6qn...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-21 19:51:26890535144da2084ee8e9431e6521be9719100cc5bec7679a4d7bdce3763a692cdocHeodo
2020-10-21 19:29:1745624f05bc4fd26e7a1d0263d25d177e1296ffbc6c459542f3e64709f517f1dddocHeodo
2020-10-21 18:30:07707a2acd195f4e2ac6ab0bdd8c10bb19a6d95938a957ff75aab954aba3526fbfdocHeodo
2020-10-21 18:00:21a28398627e5a0e0869aa7177f328559dcae1253a785594871a5f33792172413adocHeodo
2020-10-21 17:30:33202d0af84b5b68cf2a54ce8f9afa3befc8f994b934e380cbc1dab9dfdbd11bccdocHeodo
2020-10-21 17:00:16c92778df4ae556cc2ad66979e6fafa9256ce4c9c7d0457c6525711429def55fedocHeodo
2020-10-21 16:28:47f32c2612be11b6cce6029b0f7b2b9396e61d7313b26fb513f79b5d416349f937docHeodo
2020-10-21 15:53:57f168ef97aa8cb399a6f327fb6a301f7ae5e115c7ed1ad5c8b59819663bebd7e2docHeodo
2020-10-21 15:06:14a8e0958e9f5cc471c0d6f5e23d002544d61929844383b17429c383146a68911cdocHeodo
2020-10-21 14:22:43d5c24aea94acf1b51e67dc57eaeb7009e54b212f508d33e9c08beba932daaafddocHeodo
2020-10-21 13:45:508afe1388f2757e768a8714f2f6543de0464e092f33de3b865b11fa6fcdf38cbfdocHeodo
2020-10-21 12:31:1911c8cdc867668b0fe262189aaf49519ffbf3391fa8303856b0a08a52562cd611docHeodo
2020-10-21 11:49:131ade5184899b623fc4bf9b7caacde819e06dcc9234a962622c056349092327c1docHeodo
2020-10-21 11:28:5064c0402c0b906a218b1e4c2101145066a57b5a034a16a82957081f8ca15b4763docHeodo
2020-10-21 10:50:5588c45b613e6367cbb58e012779f1cd95ff6a44efc175b2163185aa309e18573fdocHeodo
2020-10-21 10:07:1007dbb0f511ef2ce6007a7b576be51073b953253a7e7182b361b06036e6a82f84docHeodo
2020-10-21 09:39:3971e55ad14abd213d5627b65f8f045b2c9337c629a556868c692376c331d9fa58docHeodo
2020-10-21 09:10:16efc52b61116de71a3b3191b7bf3d79f9152dd3d3fa3d34889a4f11ef178d9e68docHeodo
2020-10-21 09:05:34d3eb1ac711c92a7ffd2516e93813ce184cf849bf5cc7890aadab90c20f450c17docHeodo
2020-10-21 08:39:3971c25e3712abdd3d405b0a43f2819fb51d16dd9bf3c5fd5c9ecd04b028240533docHeodo
2020-10-21 08:16:03aef69b034379dfae45642c5c2271b27f04298dab56a9de3b608ab2d3cb00fa72docHeodo
2020-10-21 07:52:127afb38a81dfd3bd90de1507b16ccc5ca62644ae6420c8701cb9fefad55f4309ddocHeodo