URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 151.80.8.7
Firstseen:2019-10-15 07:01:02 UTC
Total malware sites :39
Online malware sites :0 (0%)
Offline Malware sites :39 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-10-15 07:01:10 151.80.8.7Not listedAS16276 OVH- FRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-11-01 13:05:03http://151.80.8.7/bigb/c.exeOfflineexe Quakbot ext oppimaniac
2019-11-01 13:01:04http://151.80.8.7/bigb/vbc.exeOfflineAgentTesla ext exe oppimaniac
2019-11-01 06:02:10http://151.80.8.7/wrkf/svchost.exeOfflineexe zbetcheckin
2019-11-01 05:58:11http://151.80.8.7/lue/svchost.exeOfflineexe Pony ext zbetcheckin
2019-11-01 05:49:07http://151.80.8.7/morito/svchost.exeOfflineAgentTesla ext exe zbetcheckin
2019-11-01 05:49:04http://151.80.8.7/angel/vbc.exeOfflineexe Formbook ext zbetcheckin
2019-11-01 05:45:02http://151.80.8.7/bin/word.docOfflineRTF zbetcheckin
2019-10-31 21:20:04http://151.80.8.7/aero/c.exeOfflineexe Quakbot ext oppimaniac
2019-10-31 21:20:01http://151.80.8.7/aero/svchost.exeOfflineexe oppimaniac
2019-10-29 12:23:03http://151.80.8.7/bgl.............................OfflineAgentTesla ext exe zbetcheckin
2019-10-27 04:44:06http://151.80.8.7/zagy/svchost.exeOfflineexe Formbook ext zbetcheckin
2019-10-27 04:44:03http://151.80.8.7/zagy/nnw.docOfflineRTF zbetcheckin
2019-10-24 15:38:04http://151.80.8.7/newbot/zegy.exeOfflineexe Formbook ext zbetcheckin
2019-10-24 15:16:02http://151.80.8.7/newbot/bot.docOfflineRTF zbetcheckin
2019-10-24 15:10:05http://151.80.8.7/love/test.docOfflineRTF zbetcheckin
2019-10-22 18:15:45http://151.80.8.7/big/win.docOffline JayTHL
2019-10-22 18:15:44http://151.80.8.7/big/svchost.exeOfflineAgentTesla ext Quakbot ext JayTHL
2019-10-22 18:15:42http://151.80.8.7/big/c.exeOfflineQuakbot ext JayTHL
2019-10-22 18:15:40http://151.80.8.7/angel/svchost.exeOfflineFormbook ext JayTHL
2019-10-22 18:15:37http://151.80.8.7/angel/V.exeOfflineQuakbot ext JayTHL
2019-10-22 18:15:35http://151.80.8.7/nbin/svchost.exeOfflineFormbook ext JayTHL
2019-10-22 18:15:33http://151.80.8.7/nbin/pss.pptxOffline JayTHL
2019-10-22 18:15:31http://151.80.8.7/nbin/lexy.exeOfflineFormbook ext JayTHL
2019-10-22 18:15:29http://151.80.8.7/nbin/jack.exeOfflineRemcosRAT ext JayTHL
2019-10-22 18:15:28http://151.80.8.7/nbin/ccc.exeOfflineQuakbot ext JayTHL
2019-10-22 18:15:25http://151.80.8.7/nbin/big.exeOfflineAgentTesla ext JayTHL
2019-10-22 18:15:23http://151.80.8.7/lavinch/v.docOffline JayTHL
2019-10-22 18:15:21http://151.80.8.7/lavinch/svchost.exeOfflineQuakbot ext JayTHL
2019-10-22 18:15:19http://151.80.8.7/lavinch/document.docOffline JayTHL
2019-10-22 16:22:02http://151.80.8.7/lavinch/image.jpegOfflinevbs ps66uk
2019-10-22 13:36:11http://151.80.8.7/rarbin/vpn.exeOfflineexe Formbook ext oppimaniac
2019-10-22 13:36:09http://151.80.8.7/rarbin/vhc.exeOfflineexe oppimaniac
2019-10-22 13:36:07http://151.80.8.7/rarbin/vc.exeOfflineexe Quakbot ext oppimaniac
2019-10-22 13:36:04http://151.80.8.7/rarbin/svchost.exeOfflineexe oppimaniac
2019-10-22 13:36:02http://151.80.8.7/rarbin/...............______-...Offlinedownloader RTF sc oppimaniac
2019-10-15 18:46:05http://151.80.8.7/extrm/vbc.exeOfflineexe HawkEye ext zbetcheckin
2019-10-15 10:01:03http://151.80.8.7/big/vbc.exeOfflineAgentTesla ext exe zbetcheckin
2019-10-15 07:01:22http://151.80.8.7/love/v.exeOfflineQuakbot ext JAMESWT_MHT
2019-10-15 07:01:10http://151.80.8.7/love/vbc.exeOfflinePony ext JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-11-01 13:05:03736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-11-01 13:01:04e67baee9fcffa1016e210022c6749200eee6fe2d07b18ac415640106443a6f5fexe AgentTesla
2019-11-01 06:02:10361100b5e0f7add9e4fd075e68f6a47f588900b9bb05931e527278ce9d2eb8d2exe  
2019-11-01 05:58:118937d8ca16ba9adf9177c6893530816e6f169145e4572adbe37eb5168507f36eexe Downloader.Pony
2019-11-01 05:49:07d7f5fff8e0330d60502a285027f836e5019eddedfb81e2225020216e21d76f1bexe AgentTesla
2019-11-01 05:49:04475d46cb284554c2307c1d101f0eeabf4e96323aadd4cc41a26adc4255a2b31fexe FormBook
2019-10-31 21:20:04736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-31 21:20:0120b32dd1c8171fa1fb1f970c6f586859aba372537174716d5174ab1e8888ebe6exe  
2019-10-30 17:44:0564b80f904338a04a4cb8967921f68e0a7a2aca61f166b2f507e8424f1f4f5682exe  
2019-10-29 12:23:03cda308482a91e3bdfa95d1e9846196df1ab53ffd4652d6ed3a721edbf6d2314eexe AgentTesla
2019-10-27 04:44:06bc010276c0487600be17b64ed5337e54e0a60561e21148ab8b2c7f43c4eedf1cexe FormBook
2019-10-27 04:44:03171616a1aa1c9d4a72d01d465c565b459b71a51cbbf6fd8eeed2ef0253ce2186rtf  
2019-10-24 15:38:04e769049a672d2209c01a3a14f544028d4a10f1917c550514f34fa866fa284fadexe Formbook
2019-10-24 15:16:024a18203a22c9250da9f3143be264fccec06852a270d0b060a08369c82505c99brtf  
2019-10-24 15:10:0519272f8c9954490fe2d808c8892c23779cbf0b4c1b467d99165ce2540f357078rtf  
2019-10-24 10:04:2589f986bccd65bab8d1a10a805fa809ef523352f8d48d6e0d2cb7ce36d4ce0ab8exe  
2019-10-23 12:54:1713aa81e1c32f6e3b2028a945e5d73c1e5ef711ccc8cfb4006884bc7bd936e353exe Downloader.Pony
2019-10-23 09:52:28736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 18:15:451155564b6ee7d0b42aea856d44776d4fdb635ebd2e3d7db8433233b9d284d930rtf  
2019-10-22 18:15:446f190792b5aec00a3907f84da0b9f69ecc1572dcd4bd1678f836e427d5d6f4e7exe AgentTesla
2019-10-22 18:15:42736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 18:15:40b2f2986fc98509b2a3642ccb3d167ce2d3b5d2dc466a0f7e1cd63fc20e526e68exe FormBook
2019-10-22 18:15:37736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 18:15:359af287d3a67addf142f8ee3cce356a0f36c40cd3250aaf20e3452f49a2571d72exe FormBook
2019-10-22 18:15:33a2d76f1860221cf8bedc25283f49799ef694483f52ea161aadffb7f9f7e8af20unknown  
2019-10-22 18:15:3197c1ed53f148306cc2ecfa13b83e09409827da662067210f4f55f63944e08536exe FormBook
2019-10-22 18:15:293ccd3f15aebf11a0eda6f87d0b4472683723231a1351a61e7075b47d5595ea60exe RemcosRAT
2019-10-22 18:15:28736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 18:15:25385fc33d21d891a001075641241cbbee41bf02b8a33d310e0bb8ace7a3239d2eexe AgentTesla
2019-10-22 18:15:231155564b6ee7d0b42aea856d44776d4fdb635ebd2e3d7db8433233b9d284d930rtf  
2019-10-22 18:15:21736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 18:15:19a6d7d5163c3e21024e7fb77344b94a8791e9558a9699e348e61d02cb4be989bertf  
2019-10-22 13:36:1111d741a197d9684f4b03346658a27d0d9f74016a7ea534c8253f3f475af865ffexe FormBook
2019-10-22 13:36:0947882688b88f45a1117875a3b6623f4f072f5c86538be79496284f6c010e1ec7exe  
2019-10-22 13:36:07736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-22 13:36:041aece1acb68a49d208fd1050b08bbe20659bb108a7b9159bbfbe8805bbe16fdeexe  
2019-10-22 13:36:0297820ec755717237f3414547576d6ec23e1bc1edd7607361e347837e9b34e4fbrtf  
2019-10-16 07:14:169270a1d45221cac5bb55ccfccc77c2432b250a78dee90d203401ae69de3a94a4exe HawkEye
2019-10-15 18:46:0593c068f8ceaac52e057f6f03d60afdcc481bbe6431f1f513478b62c6db1b5b7dexe  
2019-10-15 10:01:033d1448c1f1c1ef1d126d63587b2c1282d993a70847a423a19654b30ab69dfebdexe AgentTesla
2019-10-15 07:01:22736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582exeQuakbot
2019-10-15 07:01:1001f2c891685d8b1f1282be643167eb28fc95a0b4542d510b8b79788c9852bc88exe Downloader.Pony