URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.84.161.186
Firstseen:2024-12-13 13:25:05 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-12-13 13:25:12 185.84.161.186Not listedAS149766 YUT-AS-AP- THyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-12-13 13:25:56http://185.84.161.186/OUCH_SOKHENG/product.batOffline lontze7
2024-12-13 13:25:53http://185.84.161.186/OUCH_SOKHENG/cv.batOffline lontze7
2024-12-13 13:25:53http://185.84.161.186/product.batOffline lontze7
2024-12-13 13:25:44http://185.84.161.186/x.batOffline lontze7
2024-12-13 13:25:29http://185.84.161.186/OUCH_SOKHENG/FINAL_PDF.exeOffline lontze7
2024-12-13 13:25:26http://185.84.161.186/OUCH_SOKHENG/cv.exeOffline lontze7
2024-12-13 13:25:23http://185.84.161.186/OUCH_SOKHENG/Filezilla.exeOffline lontze7
2024-12-13 13:25:23http://185.84.161.186/Filezilla.exeOffline lontze7
2024-12-13 13:25:22http://185.84.161.186/Filezilla-stage2.exeOffline lontze7
2024-12-13 13:25:15http://185.84.161.186/OUCH_SOKHENG/Filezilla-st...Offline lontze7
2024-12-13 13:25:15http://185.84.161.186/OUCH_SOKHENG/mycv.scrOffline lontze7
2024-12-13 13:25:12http://185.84.161.186/OUCH_SOKHENG/cv.docmOffline lontze7
2024-12-13 13:25:12http://185.84.161.186/OUCH_SOKHENG/payload.vbsOffline lontze7
2024-12-13 13:25:12http://185.84.161.186/test.exeOffline lontze7