URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 190.104.213.45
Firstseen:2024-08-17 14:01:04 UTC
Total malware sites :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-08-17 14:01:14 190.104.213.45static.45.213.104.190.cps.com.arNot listedAS11014 CPS- ARyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-08-17 14:01:14http://190.104.213.45:6004/tftpOfflineelf tftp NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-12-09 01:03:31df12b303824b9bcefb1ce78d1c30e6194a8ac870550957f9e45425122da5f99belf  
2025-05-13 04:21:077b0ba2db25a9cd331cd5ac53d49580034f14219b719a8ae19647e384767b7574elf  
2025-04-16 18:14:57fab861ac30126a1e25c213b1e85fe456f15d2c715acecff482a8805031d8db76elf 
2025-03-26 07:08:24049db4f64d8c7a311c8fa72e20795c5ca85eb7803d43dc2df16fbb892976fe3celf  
2024-08-17 14:01:149b66676da9413803e42cb2efda1bb76084cdf89d40f503a6716f4eb719ac972felf