URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 172.245.52.196
Firstseen:2020-05-19 04:25:15 UTC
Total malware sites :10
Online malware sites :0 (0%)
Offline Malware sites :10 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-05-19 04:25:17 172.245.52.196172-245-52-196-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- IEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-20 04:23:29http://172.245.52.196/SBIDIOT/zteOffline JayTHL
2020-05-20 04:23:25http://172.245.52.196/SBIDIOT/yarnOffline JayTHL
2020-05-20 04:23:23http://172.245.52.196/SBIDIOT/x86Offline JayTHL
2020-05-20 04:23:21http://172.245.52.196/SBIDIOT/rtkOffline JayTHL
2020-05-20 04:23:19http://172.245.52.196/SBIDIOT/rootOffline JayTHL
2020-05-20 04:23:17http://172.245.52.196/SBIDIOT/ppcOffline JayTHL
2020-05-20 04:23:15http://172.245.52.196/SBIDIOT/mpslOffline JayTHL
2020-05-20 04:23:13http://172.245.52.196/SBIDIOT/mipsOffline JayTHL
2020-05-20 04:23:11http://172.245.52.196/SBIDIOT/arm6Offline JayTHL
2020-05-19 04:25:17http://172.245.52.196/SBIDIOT/armOfflineelf tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-20 19:25:29a87d59b771fc434d950cd854ff55bb8c248c5492d80d11aa7f69246ba3a7ae86elf  
2020-05-20 19:25:294499f0c10a0c6bacfcb4de20c30d009a3f6ca41b6711091c572d13e01c7dd26delf  
2020-05-20 19:25:282867ff94ea39fc48aa05d53fc43f09bbd4659a27feda337ac9fb0fa805e7ebf4elf  
2020-05-20 19:25:28e7f0d15d376a27c25b483006fd439127b00e0f04ce325cf61ab34d6a55d89fe8elf  
2020-05-20 19:25:28568f14fe823d80e31f305fb3b4bacf5a977c903b241dce794e53cbe3c219503felf  
2020-05-20 19:25:280366c01c59a50e3a8ad1c52adbebb0cd944f91400bcfead8260494393ce56c4delf  
2020-05-20 19:25:28f3af3bf133b68f78f835ed8f720c2b7e282794ee80a6852b548397185a9281f7elf  
2020-05-20 19:25:28db85daf27e5fb12cbaa1eb9e0eeff961d2312e09dcd83d8c190f753eca1963ccelf  
2020-05-20 19:25:28425d57806fef1873b8a2c81c8bcf82c2a344374988610618d4f963a0c7773d1eelf  
2020-05-20 19:25:12c3c751e4c5310cc4391b0450f359c914c179fbcfa8f3cd907f18b3acdeee0f9delf  
2020-05-20 04:23:29a0ac4ce32b09c47bee477bdc7c3135919b9de493b9d7381b61b3a37b15bc2561elf  
2020-05-20 04:23:2555a5a075a50ddb37b738c98ead778e5fe8b0819832500b40a6df5abf502602fdelf  
2020-05-20 04:23:23b9dc00222d33b8122287c8e36466e6a1788c89da44ed472a4379b7cc860e9356elf  
2020-05-20 04:23:2166e1de5639c9b7fe3564752354bdcd12a885d469252542d10f230a37b59dfa3eelf  
2020-05-20 04:23:193b31b9882811b8ce2dd106d3741b1c65c02d22e67fa00740eb7752c887f400d6elf  
2020-05-20 04:23:175e2e96ba55a2d7b820d5f6b8d8fba94697634e0b062b845341c532c583091804elf  
2020-05-20 04:23:151b798b0c3f942d3b5633266eac6bec9cace6ff86b861b39d3402706811d60638elf  
2020-05-20 04:23:1338c204a1fa1ec5ad4e5f54b2c3a23f00c13d2f9de92005701332d29be90b94a5elf  
2020-05-20 04:23:1195ab5313b4974e559027b70fdfe0cd928cc40b5b7f7efd27ac0576d19cfa3fdaelf  
2020-05-19 04:25:15d47e8cc51b45410973a5fe93ae512f3aa5e33140a44dd1fe87d79ccfd799c338elf