URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 163.123.142.134
Firstseen:2022-06-05 08:05:05 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-06-15 18:14:05http://163.123.142.134/Vqtqcolii_Dioajjhs.bmpOfflineencrypted SnakeKeylogger ext abuse_ch
2022-06-15 18:13:05http://163.123.142.134/Mzpwdz_Bilnmevx.bmpOfflineencrypted SnakeKeylogger ext abuse_ch
2022-06-11 11:35:05http://163.123.142.134/Mvppopw_Bbvrtmcq.pngOfflineencrypted SnakeKeylogger ext abuse_ch
2022-06-05 08:05:07http://163.123.142.134/Secpyyfsv_Afarfgcq.pngOfflineencrypted SnakeKeylogger ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-06-15 18:14:05e3d2f350e07351361812529b5aece2833a4d5f7e9ad84fe5b006831ad40668c7unknown  
2022-06-15 18:13:05b774eecbacc739047ff49465e60928539c60535b316665190960d9f3b550d965unknown  
2022-06-11 11:35:05c2de76555f133c18bce691af3ed657679b41559e3fb7b26acc42c2fa6f178406unknown  
2022-06-05 08:05:06fa5d0fd18ef7880b656c1ce7a617ec55698c5a99eb4a754a0ba30564dcd3c862unknown