URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 113.250.188.15
Firstseen:2023-12-24 07:14:20 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-12-24 07:14:25 113.250.188.15Not listedAS134420 CHINATELECOM-Chongqing-IDC- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-17 13:00:09http://113.250.188.15:8078/02.08.2022.exeOfflinecensys CobaltStrike ext DaveLikesMalwre
2024-10-13 04:03:21https://113.250.188.15:8886/02.08.2022.exeOfflineCobaltStrike ext DaveLikesMalwre
2024-10-05 14:03:14http://113.250.188.15:8454/02.08.2022.exeOfflineCobaltStrike ext abus3reports
2023-12-24 07:14:25https://113.250.188.15:8599/4xdMOfflineCobaltStrike ext pesnoo

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-01-17 13:00:09bad620b2b6f2f16b5a8afadff7ec25a59e001ed120434a0c782a13a608ca513eunknown  
2024-10-13 04:03:20f2f040917ecc2b49382eb38c1113d311d8fe6eb55bf279e4383e6b273dd7e5c8unknown  
2024-10-05 14:03:14341593322bdb77458573336873040857acb0596e189fa65ca9523f0834ab907aunknown  
2023-12-24 07:14:25b7ecacd8bac503dda5a68944a41dc770acf4ce2206566436d906a1f7b8aa011funknown