URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 107.172.93.57
Firstseen:2022-04-27 09:32:03 UTC
Total malware sites :13
Online malware sites :0 (0%)
Offline Malware sites :13 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-04-27 09:32:05 107.172.93.57107-172-93-57-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-06-09 08:45:06http://107.172.93.57/235/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-13 14:54:04http://107.172.93.57/600/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-12 07:14:04http://107.172.93.57/60/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-12 07:14:04http://107.172.93.57/800/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-10 11:21:04http://107.172.93.57/222/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-10 02:59:04http://107.172.93.57/450/vbc.exeOffline32 exe Loki ext zbetcheckin
2022-05-10 02:54:04http://107.172.93.57/250/vbc.exeOffline32 exe Loki ext zbetcheckin
2022-05-09 14:33:04http://107.172.93.57/400/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-04 06:59:05http://107.172.93.57/700/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-03 12:38:04http://107.172.93.57/480/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-02 18:14:04http://107.172.93.57/470/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-05-02 06:40:04http://107.172.93.57/456/vbc.exeOfflineexe Loki ext abuse_ch
2022-04-27 09:32:05http://107.172.93.57/150/vbc.exeOfflineexe Loki ext opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-06-09 08:45:06c9676ad577cabd3f66d355013492b7c19ffd117006ff590cb59570c6cef650ceexeLoki
2022-06-02 09:00:26f2d2638afb528c7476c9ee8e83ddb20e686b0b05f53f2f966fd9eb962427f8aaexe 
2022-05-13 14:54:04ae518b415f4c868777f1530bd1c0f5e5562fecd562b707a112404e886d177a1cexeLoki
2022-05-13 08:13:31ae518b415f4c868777f1530bd1c0f5e5562fecd562b707a112404e886d177a1cexeLoki
2022-05-12 15:35:479dd8a4c3430b484914c739029de85fe8043e44d9206ce5a473ba8771a818c763exe Loki
2022-05-12 15:34:419dd8a4c3430b484914c739029de85fe8043e44d9206ce5a473ba8771a818c763exe Loki
2022-05-12 07:56:520728b4bdf11dbf9da1c04ad542981e9bc44e313747bf5b86dccc15ca7f8dc927exeLoki
2022-05-12 07:55:250728b4bdf11dbf9da1c04ad542981e9bc44e313747bf5b86dccc15ca7f8dc927exeLoki
2022-05-12 07:14:047e7fb389420084c8d186307502d05cb767293ec80fddabb73d7b1fe9e3654bcbexeLoki
2022-05-12 07:14:047e7fb389420084c8d186307502d05cb767293ec80fddabb73d7b1fe9e3654bcbexeLoki
2022-05-11 09:42:51c621f6f6ac9d846039beaa639d87d36d78d7484ec73ac11fbd105a7132f4d6b3exeLoki
2022-05-11 04:46:461e1eaa51dc055269238537f9eab9b186a0adc9f033314e9d445684ae175cf8b5exeLoki
2022-05-10 23:24:0860e7b7da05ecbd0f5badda6f55ddd865c73453b620067a0dbfc4e7cc76caf416exe Loki
2022-05-10 13:34:218f55cd87f94613eb7ea5e568c263cc3803378ab422bf31ceb7b7cc166bd9ad77exeLoki
2022-05-10 11:21:048116cbb4df4ee4bb16670039400e53305fa7084b29463a8d541e308cfd0b7950exeLoki
2022-05-10 10:54:428116cbb4df4ee4bb16670039400e53305fa7084b29463a8d541e308cfd0b7950exeLoki
2022-05-10 08:20:45493fec71a20becefae761219d18fd3b3c63c5d6ed7c3a998e97a1a1b3c1511e4exeLoki
2022-05-10 05:49:117c79a61d6bc2a13c372c68567ea0cb7162cc9a6ca9285abe9def70255490f653exeLoki
2022-05-10 02:59:040f7c872693fa95f05cae9eab78c2ad3d83db274a68ece81da8070901f6a39d53exeLoki
2022-05-10 02:54:040f7c872693fa95f05cae9eab78c2ad3d83db274a68ece81da8070901f6a39d53exeLoki
2022-05-09 23:25:414fdc3536cb342008ee5a453f308afafc8a34d005b3883ede76eb746356213d97exeLoki
2022-05-09 14:33:041492c0e4ee79d6417b749a82c453357ea8a072aaa87ca6184b4d6a33920cb7feexeLoki
2022-05-05 23:42:29f211e461c63bae847965b6f1c1d5a606601794387dc9ec5537b03f60e009d565exeLoki
2022-05-05 08:55:1110771f89d25d10e453a1caa577756ffe9cf704fa25394bcd0745c43939bb2305exeLoki
2022-05-05 05:44:012559470d892d939b0df177b1613313cc1b2bced2a17cda536de05d0c02e09d20exeLoki
2022-05-04 07:42:05a7ee299c6804573312fb3e6bd3d8b196517608c42f310cfd0bcec25eaffb18f1exeLoki
2022-05-04 06:59:05d47067d24dd0d829c1616e232e7e0df717382b7708d6e96bd23ab6ef2936e2f2exeLoki
2022-05-03 12:38:04ec68e4a53a49acd215d52b8b85b809c5fd1acb318e1cf9673806ff3d6b57f478exeLoki
2022-05-02 18:14:043b349af65d48ae4917241a8c2c148bb84457d39abfaf7b1a3a441253f898473bexeLoki
2022-05-02 06:40:049d9aa5e9ddbd3966a7578912c56f6908e4a671fc94f31832c41bb2f79cf5a525exeLoki
2022-04-27 10:03:26b901007fab5bd11e94a317f14137830b2fd97c8158c170e2ba3aed0e79ed11e1exeLoki
2022-04-27 09:32:046e0c0e4a0fd87e286b0d1b2b3f0a8d9a1cec874e15bf185ab0e042b6e08fa560exe Loki