URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 13.212.110.161
Firstseen:2021-12-09 07:06:03 UTC
Total malware sites :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-12-09 07:06:06 13.212.110.161ec2-13-212-110-161.ap-southeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-12-09 07:06:06http://13.212.110.161/ale/ale.exeOfflineAgentTesla ext exe Formbook ext opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-12-17 07:12:0215e6b5a93f3be05456b092ba5247bdd3c0e5968b1474809263ed4f61b2c180f8exeAgentTesla
2021-12-16 13:32:076fb0112287fac93ab53bb3e6b9910e6b9e9eb1131647bd249f2819a49b9d01cfexeAgentTesla
2021-12-16 09:39:581a8828bfca9c4cba055c11248866fd593e686406d977074a08d09e8fbc8d6369exe AgentTesla
2021-12-16 08:10:55ad0d9b3afa924be48034b82b1f3d7d55e47c4831ee6486bc96496209d492515cexeAgentTesla
2021-12-15 08:42:3912a3b36150ee28df4f927c413fd0a7262dc5b9701aecb53428ef801edb3b7bd4exeFormbook
2021-12-11 10:43:29dd241980d65198ef6a52095e8daabbb0dca1dcda503c621ff6bb722b96fe5254exeFormbook
2021-12-11 00:51:375178bc0a874fb846a5c9288a719b9e37b3ecf2bdddf02318fff042756c5d3dccexeFormbook
2021-12-10 11:51:0312d25165f4043c9fac5dc9088a4d3451e7ba0cabc3e46f9a21c9063ad1e71c0cexeFormbook
2021-12-10 10:11:0427fc31505dbc8da778775ca436aba118b32f405fc5927251bde8e675f6d86c21exeFormbook
2021-12-10 08:30:19c3658d5869cbdae036a490191e5cf72bc227dc7f8a3413d694573339a19bc55dexeFormbook
2021-12-10 06:55:168a0d28c7d412d1b45cf59ed1ec014c557e51d20cdf62e3a8eca1dddd152ec9a0exeFormbook
2021-12-10 06:16:182f955552fc0bb6e5dca5bf39e0a8a679e3871f8f690fc6cad2cdf50fe0b152c8exe Formbook
2021-12-10 04:31:171c2416570a4c0f3af0612d19b93141c2b78a941bcc7b6789d5d9eb67ada0d9d4exeFormbook
2021-12-10 02:32:578c6a4adf039e56bbd76bffa6978405f66a8d9a186d7e263affd6afb06774a7f6exeFormbook
2021-12-09 21:42:36b66d6c6e18090a5f05fe4ecf925b670a2d98737e2557ecc57aa269697022f6bfexeFormbook
2021-12-09 11:57:43295645c8141d426a6f510e1461dead195177dd16f3e375d220cbc7bc3d1be98bexeFormbook
2021-12-09 10:06:44a5c14452ee3d997af5f74a53641019faf59b432e61ea27ec2e93869343186ec6exeFormbook
2021-12-09 08:34:2845df8cea19c2e61209635263beed0231686818f1282c164d30b37de675d5ee23exeFormbook
2021-12-09 07:30:26e159309035035691a0390f1c30b4147d4755a5fb4c5a18fbee7d221ce040819dexeFormbook
2021-12-09 07:06:0518a250b294600f42d1883fe122bf7b5e4cf932eabffa5d3a3faf3427cafb2189exeFormbook