URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zybrkat.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-12 11:24:12 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 21:16:37 81.169.145.162wa2.rzone.deNot listedAS6724 STRATO- DEyes
2020-08-12 11:24:13 81.169.145.86w86.rzone.deNot listedAS6724 STRATO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-12 11:24:13http://zybrkat.org/ON/multifunctional-resource/...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-13 07:40:405c70b1d9be2e62d3cb581708789ffcafdc47ae8733f09039db0c3c7bfe9041d9docHeodo
2020-08-13 06:09:2457fcedf7b710607daf3ff9d1d3f81b02e5597d6a760e10c3af3805702f2e2ec5docHeodo
2020-08-13 04:37:55c58ccc775e7c2333d87ae2d0e8b965a9c633a1eebb558d4e153f2ed1a7cb63e7docHeodo
2020-08-13 04:20:451dd5d7a44f9459e8c6b9aedd3201e616a357788e0008f048f110c382e7411b54docHeodo
2020-08-13 04:01:50d16cd96a6382c743e97444d51967f3d83c72ca0618c6d92facad07211712c9bedocHeodo
2020-08-13 03:44:4734b90b804ac07f37b48a7437f520d80dd3efe9bc79c96c722240c63d9e457164docHeodo
2020-08-13 02:13:517efe325d3dd462aa685894527836d96928d50d1fe594ceab5af597a3df8c258adocHeodo
2020-08-13 00:42:22ccef51f2aac08b771675329e49226ef621176b8408f1e7f7b72aa4359c3d137ddocHeodo
2020-08-12 23:10:555aaa39535adf5512408d58dfbf5d54f364b46a2ed6bd258250858b08f2d13e3ddocHeodo
2020-08-12 22:54:196793d7866cd3e3e456843e5eaab907dbcf624cd6b5431f5f40c0cbf492da582ddocHeodo
2020-08-12 20:44:55986acc515daf31c8bd8d424f27e1307eab1f51a043c896ffeb2cd94df1eed8a1docHeodo
2020-08-12 20:17:575e7f7727ae77642bcc909bc96c4fb22081f5f58fa7366bceffc2c629cc369e4adocHeodo
2020-08-12 19:59:5399587a42037e6883c1b3d9ed477034427499b230aa1d61f823e0771f83d94944docHeodo
2020-08-12 19:37:14ac4a497f08d9286aff7a72c55589c9c1ee603462e501e24b5354e0dad963cea9docHeodo
2020-08-12 18:59:520a2fb529473b1340196d1f0e98caa568208f26a280f1bc09523963eead8b88d0docHeodo
2020-08-12 18:37:13c194497bd53deae5037d7ffd04e93de9ae4a080daa6a37959aa42207f197a31adocHeodo
2020-08-12 18:14:54e060a3ea1c14105f1702e8b612d1095bd704a9757c2107e3aacc4ce542cf2af4docHeodo
2020-08-12 16:47:4387b90453b1edf9bf7ee26ba76b7a73b73be127dd13678ada570fda173417ff98docHeodo
2020-08-12 16:24:4319a0b43438b15957a52c653d27778c90008ae27821fe97db817356de978f063fdocHeodo
2020-08-12 15:53:516b6d945cfba7f58812d7c716d37f887c9d81c2edb7c04cc524c5a0284e128289docHeodo
2020-08-12 14:21:1198f20f5c7e6b59a25bea4d2534f9a6e09e78e722088cde30014b21fe7d9d487cdocHeodo
2020-08-12 14:04:435ea80c59d4629ef6a11ef42c5a585fc6c263cd78ce8876440df9193182199ef6docHeodo
2020-08-12 13:44:5998cdaca6fb4bec5a48ca84cbfa00b123f41849a8c0e94c9a7a0b5e2e00bc2ddedocHeodo
2020-08-12 13:33:454a57ee0f815573230706a5077ac0b74ee8e1b28a2961f94fe17bf39b26773cf6docHeodo
2020-08-12 12:13:53a796c9c3edf51aaecefec195b48f72e3810e0b60569ebce025c3f29897a90911docHeodo
2020-08-12 11:24:13e43bee7af8123de382fd32886e7ddd9a114de8c6d4276b848d35ebdcfb049564docHeodo