URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 107.175.243.133
Firstseen:2024-01-17 14:40:06 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-01-17 14:40:07 107.175.243.133107-175-243-133-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-02 14:07:07http://107.175.243.133/Veddooood.txtOfflineAgentTesla ext ascii Encoded rev-base64-loader abuse_ch
2025-08-22 15:53:08http://107.175.243.133/friyymydayT.vbsOfflineAgentTesla ext vbs abuse_ch
2025-08-15 15:45:10http://107.175.243.133/comememebaig.txtOfflineAgentTesla ext ascii Encoded rev-base64-loader abuse_ch
2025-08-14 13:49:05http://107.175.243.133/thursdayconstraints.vbsOfflineAgentTesla ext vbs abuse_ch
2025-08-14 13:45:10http://107.175.243.133/Tuesdayconstraints.vbsOfflineAgentTesla ext vbs abuse_ch
2025-08-09 09:43:06http://107.175.243.133/FRIDASYconstraints.vbsOfflineAgentTesla ext ascii vbs abuse_ch
2025-08-06 20:49:03http://107.175.243.133/noodx.vbsOfflineascii vbs abuse_ch
2025-08-06 20:48:08http://107.175.243.133/optimized_MSI.pngOffline abuse_ch
2025-08-06 20:47:10http://107.175.243.133/MyFiledotcome.VBSOfflineascii vbs abuse_ch
2024-01-31 11:14:09http://107.175.243.133/3150/conhost.exeOfflineAgentTesla ext exe Formbook ext opendir abuse_ch
2024-01-31 11:14:08http://107.175.243.133/eww/microsoftupdationgoi...OfflineAgentTesla ext doc abuse_ch
2024-01-29 11:15:12http://107.175.243.133/3151/conhost.exeOfflineAgentTesla ext exe Formbook ext opendir abuse_ch
2024-01-25 08:50:08http://107.175.243.133/4030/conhost.exeOffline32 AgentTesla ext exe zbetcheckin
2024-01-24 09:58:06http://107.175.243.133/4020/conhost.exeOfflineexe Formbook ext opendir abuse_ch
2024-01-22 10:05:10http://107.175.243.133/3804/conhost.exeOfflineexe Formbook ext opendir abuse_ch
2024-01-22 10:05:08http://107.175.243.133/hmc/microsoftunderstandt...Offlinedoc Formbook ext abuse_ch
2024-01-19 05:31:08https://107.175.243.133/1521/conhost.exeOffline32 AgentTesla ext exe zbetcheckin
2024-01-18 06:28:06http://107.175.243.133/1521/conhost.exeOffline32 AgentTesla ext exe zbetcheckin
2024-01-18 05:41:07http://107.175.243.133/4121/conhost.exeOffline32 AgentTesla ext exe zbetcheckin
2024-01-18 05:41:06http://107.175.243.133/4122/conhost.exeOffline32 AgentTesla ext exe zbetcheckin
2024-01-17 14:40:09http://107.175.243.133/1522/conhost.exeOfflineAgentTesla ext exe GuLoader ext opendir abuse_ch
2024-01-17 14:40:08http://107.175.243.133/hcb/hc/microbiolagicalth...OfflineAgentTesla ext doc opendir abuse_ch
2024-01-17 14:40:07http://107.175.243.133/hcb/microbiolagicalthing...Offlinedoc opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-02 14:07:0736cb09e4ff67d5495bafb892243773781ebe8236073aca4dd15efcce792bb9edtxt AgentTesla
2025-08-22 20:36:31ffbb2562e2cfdfa7601c57d3dd01b9b77e519c18cf592fbe184c9be2a4285ad6txtAgentTesla
2025-08-22 15:53:08ddb6dc98283c5ce029fc0d34009b6a284df76cf81f9de895872277ebfb0355e7txtAgentTesla
2025-08-15 15:45:10018648727f760e361eb4efa7f955a7815a197224c23016b321ab954767b45b82txt AgentTesla
2025-08-15 12:10:3209f651d97f0592ac1da8b1f1abb3c1f1522f3d228ba0e42a57eea2f783d72132txt  
2025-08-14 15:21:5156b4683889bc8c9a8cbceb1b9d5a87d6eb6f6f801adb95770d44a7ffdc3f69bfvbsAgentTesla
2025-08-14 14:07:47d25591f0627f988edceb12fdadef30e4a856b1fa016f10043cdf2379ac234b2ctxtAgentTesla
2025-08-14 14:07:45709c8c48088b66d8f45b0f21da8a92b3ea06685c58d7fec991deb851c1d49f51unknown  
2025-08-14 14:07:21395b9861f15f8c08044e74862e7a2623886b962af1981e81d584d0e761f5cee8txt  
2025-08-14 14:07:186883ecbf1372ba950b82e20753a6b623d3a5e19512d1808c9956d10fff93477atxt  
2025-08-14 14:07:11460ed7af6dcb37b116bc98b2bb3acde6f713e3dafd3737e2d0200fc908f31ce0txt  
2025-08-14 13:45:1005215a379ae277dd2a72c88fd255b4554d23ea45745579b3bc69a5071632f636txtAgentTesla
2025-08-06 20:48:08ec4909738ec8c8729a34582c8fdb8131a28eb0eeaab81a0066b884affce55e24unknown  
2024-02-01 08:27:258c6360e67859b70843f5d8a2ad3525468b84a4bce1ec8d5a2650e4549b169b78exe AgentTesla
2024-02-01 08:18:1965269afbc5e25ecfd1ab52f0a19fba7bdcfc0f30f31c15d550ecfb16f8bdba63exe Formbook
2024-02-01 05:27:5488df89ef3900fb91540605ecf6174d74669d10a960fd68a471e719b077ddf348exe AgentTesla
2024-02-01 01:23:45f95262165f9afdd1f502b629aaeb753e75bd91d4b743f829af52d4e7cdfa45f8exe AgentTesla
2024-02-01 00:04:392f7f8aa963bd4cd4610ccd5e5dce4d61794382b110d4388bb19183e37123ed80exe AgentTesla
2024-01-31 11:14:09811a8a070c378c06d99c7d719dd149ba3af15124cbcdb3d1e42dc56238dc022eexeAgentTesla
2024-01-31 11:14:08baa3465c0103008538f66bf85fc993f26c31e0901040b25462956e387060dd06unknown  
2024-01-31 08:32:3233ba35e2e228b96eb53a62193efee7022e7d0bc7e281a58afa5d02b9b0069866exe AgentTesla
2024-01-30 06:33:068bcd03bb5a557a9688dd577083d2bff30d700f94e8780b1ec2477ae25899ae16exe Formbook
2024-01-29 21:24:3184751bcf03258a672747728fe92c31c4a97bb7cc409960e94557a909ae60ba04exeAgentTesla
2024-01-29 11:15:12355dd906fa6b99dc3cc713e432823b87b4db60faae1d25473539a7d30be59f47exeAgentTesla
2024-01-25 08:50:08070b9d022843ac420d8bdfcb8f91d5d5dace6ddc452cff9e0d3f85d564030d31exeAgentTesla
2024-01-24 09:58:06d9ce37fccf19b2aca12e06ede4bfec3654bc288b8748284e9ecc2676b8d93212exeFormbook
2024-01-24 07:06:47d9ce37fccf19b2aca12e06ede4bfec3654bc288b8748284e9ecc2676b8d93212exeFormbook
2024-01-23 01:41:22af44409d8c91f6233e6f5158318c154f79b07759cdab2285976d42aab8ad2953exeFormbook
2024-01-22 10:05:100497f6d061c93f99d46132b30e460f5e856ad3749b1d7ac9c9e1351e6db37020exeFormbook
2024-01-19 05:31:08b0dbda906765c5262d46f603a1b2f6ccf60706dc2e5dc8566ec5c0ee26d316c1exeAgentTesla
2024-01-19 00:58:03b3932a0a2ec299c8a287a7f5eccc2913c5be856c7fba20973333084f093e73e2exeGuLoader
2024-01-18 08:35:37b0dbda906765c5262d46f603a1b2f6ccf60706dc2e5dc8566ec5c0ee26d316c1exeAgentTesla
2024-01-18 08:27:45b0dbda906765c5262d46f603a1b2f6ccf60706dc2e5dc8566ec5c0ee26d316c1exeAgentTesla
2024-01-18 06:28:06196a326301bebc45154960c2430a6af600f0ec892666e1fa3b53cd63a5d73f61exeAgentTesla
2024-01-18 05:41:07196a326301bebc45154960c2430a6af600f0ec892666e1fa3b53cd63a5d73f61exeAgentTesla
2024-01-18 05:41:069a944cee31188f51d787d109344c36a68baeb27ef13a230a1ed8f18b9100d298exeAgentTesla
2024-01-17 23:36:209dcb0348e0fce20a54926901e9660c7a68719732230f68616049c238f0318e33exeAgentTesla
2024-01-17 14:40:09ee0c5f720625ad1cd24714bf731e85419098b62c6f335af5e296342ec65c7a23exeAgentTesla
2024-01-17 14:40:080a55b617d7da8d7b50f0880b6799520ed895c2db8154dd54fcbe6161d4d231c0unknown