URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 18.184.225.160
Firstseen:2021-03-06 05:39:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-03-06 05:39:05 18.184.225.160ec2-18-184-225-160.eu-central-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-06 07:08:05http://18.184.225.160/win/marorg.exeOfflineAgentTesla ext exe zbetcheckin
2021-03-06 05:39:05http://18.184.225.160/win/marxlo.exeOfflineAgentTesla ext exe Formbook ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-03-10 02:04:04b8f306fb8c064a7d4b5225d70c97595b563e9d9e2e585aa1bfe0ba56bff6ce17exeAgentTesla
2021-03-10 01:57:061a358d62b634888521fb303f5b388d72084d2983190f17b0af762b21f176fd68exeFormbook
2021-03-09 18:08:47e3485db2464c2d2c43be9447961a7bb434e44eba85039db4fdaf4520795cc4c1exeAgentTesla
2021-03-09 15:17:11b641319c88212713ad24eb947a2bb047372f18a66ca988bfb6018edffd4a369dexeAgentTesla
2021-03-09 15:06:59e0d8da6249a7613a40f6b514cae3b15c22a667b5632f1b8545453e0ca31215ccexeFormbook
2021-03-09 02:14:367bfd725d73753a04418764767c8c3a06dca2f8cebb832784fd277b4d409101b1exeAgentTesla
2021-03-09 01:35:39d2d50893bb4f2c943c32f834cf6c095e5e4f2e7997b543c1012cf0e74ca8adffexeFormbook
2021-03-08 14:17:18d98d22ecbb72159e63bc28a743f1a79241363dcdc272674691570903fe334a40exeAgentTesla
2021-03-08 13:56:02a076b3b8f0b77d504ad39226a9f30a04cbe94fb2b163d9173637600166dfe25bexeFormbook
2021-03-08 08:47:35dcf25c53393531d6afc2680fcedbb77d4826e4d109fbb001d3aaaed01798b867exeAgentTesla
2021-03-08 08:45:42e07c6115d9384a13918a22ac6f22631f78a9f18f8eaf3a945c6ba80ba91d713eexeFormbook
2021-03-08 07:29:041c66b22efb0bdbad857ae02729fc6354c8279f16ccd393ebfd16456363763fbfexeFormbook
2021-03-08 07:22:0238ffaeb68f1b6522a4d6b9fc9902b8ca07bee7d8f505b376eae35bb05deea453exeAgentTesla
2021-03-07 23:21:558e2509dafa70d2deeb976980b3b4fb0a353d80f521e34e1409e6b2862d83105cexeAgentTesla
2021-03-07 23:16:53bf6ae876108b5fec915d91bd36d3ccd22c8593be29412521c32a4b3f11a757f0exeFormbook
2021-03-07 10:45:07855df18b5bb8c92bbd2b960914a6c88874a201cbd5ca656ec9c397870fabb887exeAgentTesla
2021-03-07 09:46:52855df18b5bb8c92bbd2b960914a6c88874a201cbd5ca656ec9c397870fabb887exeAgentTesla
2021-03-07 09:29:32c8aaa220adc918c9972a9c588db765290bf51553bed7da48c604d188136d3073exeFormbook
2021-03-07 07:22:5142b03868b228a6ad438ae1ec4601d442b7271026a237f37f6ac9db725d08a034exeFormbook
2021-03-07 07:21:52f28ee29d6e4f2587b8fb1e2c5c85cabd5f2384973ec9273b9e97a00f2c6080c3exeAgentTesla
2021-03-07 00:20:06cba011ff738721f548b90c2297b21da4e3292ddd215dbce5a1b5df3371e8daddexeAgentTesla
2021-03-07 00:14:5999cfc0e79eca01b80f6b466bd9bf208b821e275b3787cb194d0f2b83d6ffe03aexeFormbook
2021-03-06 11:19:04733eb03ef38af546cb67e52d53cfa696ae978fd7884fbdf1971c577c08b70c27exeAgentTesla
2021-03-06 11:15:360e23e210b0a781a42bf7f5fcf1cc95b888c1230c819fe7134f04048a36706124exeFormbook
2021-03-06 10:29:1817dad12ff05c404eaa01cd849464c0a631051c8ba3056fe171ebfeb9e16915a8exeFormbook
2021-03-06 10:20:093b7ee4facff2af3e6d06eb2d2ed64707aef6228fd57391a7e9539ae5ef71e31fexeAgentTesla
2021-03-06 07:08:053e72dc414aa2944ab3c34429b2499b87444e61cc36f1a218c2292a6bcb35aa58exeAgentTesla
2021-03-06 05:39:059f5ee7d9915ac3e6f684c7e22555357b5c43c6ca6cbaca8a974b667b51a3ba51exeFormbook