URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | 172.245.208.6 |
|---|---|
| Firstseen: | 2023-10-26 07:22:03 UTC |
| Total malware sites : | 6 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 6 (100%) |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2023-10-26 07:22:05 | 172.245.208.6 | 172-245-208-6-host.colocrossing.com | Not listed | AS36352 AS-COLOCROSSING | US | yes |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2023-11-03 07:48:07 | http://172.245.208.6/2001/IGCC.exe | Offline | AgentTesla | |
| 2023-11-03 07:43:06 | http://172.245.208.6/2002/IGCC.exe | Offline | AgentTesla | |
| 2023-11-01 05:55:08 | http://172.245.208.6/7012/IGCC.exe | Offline | AgentTesla | |
| 2023-10-27 15:41:07 | http://172.245.208.6/2201/audiodgse.exe | Offline | AgentTesla | |
| 2023-10-26 07:23:06 | http://172.245.208.6/1536/audiodgse.exe | Offline | exe Formbook | |
| 2023-10-26 07:22:05 | http://172.245.208.6/1535/audiodgse.exe | Offline | exe Formbook |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2023-11-03 07:48:07 | 010a6fd82bd5d20ea77e63b238793079e5e16a8b59fad51c07ae5bfa69a003cc | exe | AgentTesla | |
| 2023-11-03 07:43:06 | 010a6fd82bd5d20ea77e63b238793079e5e16a8b59fad51c07ae5bfa69a003cc | exe | AgentTesla | |
| 2023-11-01 05:55:08 | 2e292710afe067f1065639192d5382b772babbc91d2a6a27fff41f8d110313ee | exe | AgentTesla | |
| 2023-10-27 15:41:07 | 605dc8045830795f0445770f524e12568592d9004296c17fe792f745dff1fab1 | exe | AgentTesla | |
| 2023-10-26 07:23:06 | 037500eba0044c05416217ea9936c6b9f4d9ee9a0a05d2d7860245fffdd347b6 | exe | Formbook | |
| 2023-10-26 07:22:05 | 037500eba0044c05416217ea9936c6b9f4d9ee9a0a05d2d7860245fffdd347b6 | exe | Formbook |
US