URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | 104.243.37.232 |
|---|---|
| Firstseen: | 2025-09-30 17:32:04 UTC |
| Total malware sites : | 3 |
| Online malware sites : | 3 (100%) |
| Offline Malware sites : | 0 (0%) |
| Newest active malware site : | 2025-10-10 14:11:06 UTC |
| Oldest active malware site : | 2025-09-30 17:32:08 UTC (Age: 2 months, 27 days, 3 hours, 0 minutes) |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-30 17:32:08 | 104.243.37.232 | Not listed | AS23470 RELIABLESITE | US | yes |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2025-10-10 14:11:06 | http://104.243.37.232/277/ie4eri45uie8rruerj484... | Online | hta PureLogsStealer RemcosRAT | |
| 2025-10-01 15:04:08 | http://104.243.37.232/157/IMG__pic0399940000003... | Online | hta RemcosRAT | |
| 2025-09-30 17:32:08 | http://104.243.37.232/155/IMG___pict00499500500... | Online | hta rat RemcosRAT |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2025-12-13 12:20:17 | 8fb876fd7e52699fe2c6f1bbc8e70552e06eddd813e9e5ce165fea3d6c354c9f | hta | RemcosRAT | |
| 2025-12-13 12:00:33 | 8fb876fd7e52699fe2c6f1bbc8e70552e06eddd813e9e5ce165fea3d6c354c9f | hta | RemcosRAT | |
| 2025-12-13 02:47:20 | 8fb876fd7e52699fe2c6f1bbc8e70552e06eddd813e9e5ce165fea3d6c354c9f | hta | RemcosRAT | |
| 2025-10-10 14:11:06 | b06f81fe6e6e5f7dc716ed8200a7ad5ec8ca222b7c45723d8b4be45bf671ac48 | html | PureLogsStealer | |
| 2025-10-01 15:59:56 | 21698a167781d1941f8548ef6663f2701ac7ce3a9c7c1325b66f768ab9149480 | html | ||
| 2025-10-01 15:04:07 | aba36150c621c68e27a4a152e389c175d5d3a93d0889bb4a5d131e814d2b1683 | html | ||
| 2025-09-30 17:32:07 | 932dd59419b1e3f1fe0aba8cb1aedc4965011412a58ef17328e8a468b39af86c | html | RemcosRAT |
US