URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 172.245.119.63
Firstseen:2022-02-10 19:19:03 UTC
Total malware sites :11
Online malware sites :0 (0%)
Offline Malware sites :11 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-10 19:19:04 172.245.119.63172-245-119-63-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-04 07:30:04http://172.245.119.63/533/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-03 09:46:04http://172.245.119.63/433/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-02 19:07:04http://172.245.119.63/70/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-02 19:07:04http://172.245.119.63/80/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-01 17:50:06http://172.245.119.63/111/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-01 17:50:05http://172.245.119.63/222/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-03-01 09:00:05http://172.245.119.63/77/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-02-23 13:11:04http://172.245.119.63/51/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-02-23 12:51:04http://172.245.119.63/56/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-02-15 20:13:04http://172.245.119.63/541/vbc.exeOfflineexe Loki ext opendir abuse_ch
2022-02-10 19:19:04http://172.245.119.63/543/vbc.exeOfflineexe Loki ext opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-04 07:30:04f491ca92789db4ebf58c5107059fd90616472d55a8ee51734cb9b77d89d0a7e3exeLoki
2022-03-04 03:05:277ec8d23c5167687f3e60e57527cedf105a3de3b1d88e47924d96bad31bfe5385exeLoki
2022-03-04 02:59:096fcd9b779accb07c3b05ac111df68e64fbc255f81887a60d810b94acd6f44388exeLoki
2022-03-04 02:58:151e36f8b1165ea81970aff36a7b13fe4bdd02f4bf95b08f634ea446d0668de24fexeLoki
2022-03-04 02:46:38ba66dd24d4e15ad89e20c99cc4fc7dbbdd429299e0edd1a36be467d98334a30aexeLoki
2022-03-04 02:33:125bc9a0828b73a38637c51b9cc2db9255449bfca4b12a597dcfa10f3066fe38e8exe Loki
2022-03-03 09:46:046fa3ca5bec61c6c9427b467ecefd895568f9d2db64097a2acb5d987228f97b0cexeLoki
2022-03-02 19:07:04cb59cd4c7a4896aab48aa27530bb65363920e5da091eec1aa2bdb538f9ae1491exeLoki
2022-03-02 19:07:04fd43579434ad0575895c12d783158f56396c725639c76f9ce04d00f6026c19a8exeLoki
2022-03-01 17:50:0651c4a9a807294ba857735727b3c3378db60c3bafad52d7cc80538c41ad27eecdexeLoki
2022-03-01 17:50:05082565f03fa8f59b87354a271edcf92c6559472043e21fef60a47cfc6072f495exeLoki
2022-03-01 09:00:05a4182d8f62fb365856798683af6277ad0c3b3a9d9788fe1e2cef07bb918197d6exeLoki
2022-02-23 13:11:046f975378cb65fa40e27b22cd6676e4385b46cdb0df3111cb94530a8615516281exeLoki
2022-02-23 12:51:0450762a8f6247c667e01b4f2d2a1c067401d8e278fd37e73668c927349b9727fcexeLoki
2022-02-15 20:13:0496d4f14f8d1be02a21feb4533eca4f270716e7b0feefe6e5a477454f13db99d1exeLoki
2022-02-10 19:19:0345ccc1212fa71608477ec52299aebe5adf84611dbcf30ace8378978a7ff05422exeLoki