URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 167.235.240.0
Firstseen:2023-03-09 16:51:03 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-03-09 16:51:10 167.235.240.0static.0.240.235.167.clients.your-server.deNot listedAS24940 HETZNER-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-04-02 22:55:04http://167.235.240.0/ntredirect.dllOfflinedropped-by-amadey LaplasClipper viql
2023-04-01 17:33:32http://167.235.240.0/ntvdm64.exeOfflinedropped-by-amadey LaplasClipper viql
2023-03-29 19:57:04http://167.235.240.0/dhwnml/CrackHash.batOfflinedropped-by-amadey viql
2023-03-20 20:24:07http://167.235.240.0/dhwnml/rw001ext.exeOfflinedropped-by-amadey LaplasClipper viql
2023-03-10 10:33:05http://167.235.240.0/umciavi64.exeOfflinedropped-by-amadey RedLineStealer ext viql
2023-03-09 16:51:10http://167.235.240.0/rlmp32wlve.dllOfflinedropped-by-amadey LaplasClipper viql

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-04-09 01:48:32c314bec57a53acfd55c1aa6c4c4bb49784e2c944c8e8d700c08e63f1ad80e659dll  
2023-04-07 02:41:16f0475c7dc0aeeb162c86b54d19a83a3c1065c2944d0a7d810868c8b96bd8ce24dll LaplasClipper
2023-04-02 23:06:318b9b5bd8b2621c1c2fd22bd488ec94882c93539b51f14ac29e64951c0b84cee8dllLaplasClipper
2023-04-01 17:33:3278b49f7d4523704579aa2c70ca8602317e347ec8b4884fc6f52a4b83d4258549exeLaplasClipper
2023-03-20 20:24:07d1bd5a14d886e71aa5855ce74c84aa7cefa1f782e32cd2140c3a10d91084105dexeLaplasClipper
2023-03-15 20:03:00f2f8eb46f2f7a3609078fb53dabe55f26b111089dda3071beb9b9c6c691b4139exe  
2023-03-14 21:11:38435b4022ba5fe6f3236b50ec19c781777ce1068123765f8cb8f309904b7e313adll  
2023-03-14 03:30:49f8265e97af9a32c208c4e927ede782ecbd60fd7b3b46772c16241b5cd387c6f6exe  
2023-03-14 02:31:33ec70a42d8ad7f3ec75d9d6cf4ae08618965f8c0bcf5fc2973617d0117bf73c57dll  
2023-03-12 22:55:341b2ea9709e72f8fa708cfdff7561abc7da239c1d4edcb019ca471937c66b0be3dllLaplasClipper
2023-03-12 22:53:2583df9dc5871099422c1fec0a1ae35645c42db96ad1a7a11eb0548b975332c14fexe  
2023-03-12 09:55:23147b554b67aaa224e7a1e50f259f26ff11be96d9ee6da5573ddacfdb32045c8aexe 
2023-03-10 18:33:295adf8415987f3956bae44ca3e7a23a690f5cdb11584af7d6ec7e551c0c2bf84cexe  
2023-03-10 17:19:37cb7a3b0e7d9f5be1d6a3b94db752ca363b363c1be12c3cf8a4cdab9832730225dll LaplasClipper
2023-03-10 10:33:05cae649741e0db59b69e01f3bf0f33084ed58b4fe8ce117809f209bfc181387d9exeRedLineStealer
2023-03-10 01:04:4480bae29f567f244b81456d999039ed9aae02de19b92f3bec9bc1d1b38f773501dll 
2023-03-09 16:51:04340e98f83d47ba0a82f5894a0c4c4b8f689f37b0ee576b23c98f4099add95814dllLaplasClipper