URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.90.146.31
Firstseen:2020-06-09 05:18:24 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-06-09 05:18:27 111.90.146.31server1.kamon.laNot listedAS45839 SHINJIRU-MY-AS-AP- MYyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-10 05:46:42http://111.90.146.31/bin_mvsoFdqPh179.binOfflineencrypted GuLoader ext abuse_ch
2020-06-10 05:46:35http://111.90.146.31/bin_DjHTZkf127.binOfflineencrypted GuLoader ext abuse_ch
2020-06-10 05:43:59http://111.90.146.31/rfq_LrULI174.binOfflineencrypted GuLoader ext abuse_ch
2020-06-09 05:18:27http://111.90.146.31/bin_wugtNRTblx159.binOfflineencrypted GuLoader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-10 05:46:42a187072144e7862412bb8c1e975368e45e11da9a40936dc5b64e1916ca96bd44unknown  
2020-06-10 05:46:355743e7cf6ed042bfd85da30f6465a6e25b20c28b3e50e225b4d60b116c5de342unknown  
2020-06-10 05:43:59503ded281206245826a2acc562993b8d7ef2fa81f15e894abebee461068c435funknown  
2020-06-09 05:18:26542f02265e740e3c4d4991cd0772beb6ceda55768ff4ca2ecba0b86e4c056061unknown