URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 192.3.141.148
Firstseen:2022-08-23 12:15:04 UTC
Total malware sites :10
Online malware sites :0 (0%)
Offline Malware sites :10 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-08-23 12:15:07 192.3.141.148192-3-141-148-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-09-21 14:30:07http://192.3.141.148/ada/ada.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-09-21 05:52:05http://192.3.141.148/sis/sis.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-09-20 06:09:05http://192.3.141.148/mum/mum.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2022-09-19 08:14:05http://192.3.141.148/dad/dad.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-09-07 09:40:04http://192.3.141.148/co/co.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-08-31 18:23:05http://192.3.141.148/vii/vii.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-08-30 13:31:14http://192.3.141.148/gud/gud.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-08-29 10:31:06http://192.3.141.148/mon/mon.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2022-08-24 04:04:06http://192.3.141.148/wed/wed.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2022-08-23 12:15:07http://192.3.141.148/tue/vbc.exeOfflineexe opendir SnakeKeylogger ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-09-21 14:30:07fce934785376740013926628485b6419b7d4121f352141b64ca0086697d85e30exeSnakeKeylogger
2022-09-21 05:52:053d3d04e0b7d813c8a0a409488de8719baead684b8933341c5ae11665430c5536exeSnakeKeylogger
2022-09-20 06:09:05722a3599f70c013fe933904f6b7e64e5a4c4db633dc1940fd1f58961de4c9e07exeSnakeKeylogger
2022-09-19 14:39:32ae9ff33302c6861dbbdde05eb447b31fd3bcf4623bf2ee483f89b262f025204fexeSnakeKeylogger
2022-09-19 09:24:277c4e62b2ffd08f20ae8ecd5b5b72bf2cb84d8b02c73132f1c2bfb190b244bea9exeSnakeKeylogger
2022-09-19 08:14:05997dfa9474f19f973c4161f7cfa03d778f4f8c0875c6834c1b2dd8e42c289bc3exeSnakeKeylogger
2022-09-07 09:40:049e30d8935fb3e8e214a41e064bd76ae17a9d777e6b689277e5c6aa48625af2b8exeSnakeKeylogger
2022-09-01 07:13:17771f1007662a8d38a9ee7e039877879b11708d81175d19043ffbcf89f309f14bexeSnakeKeylogger
2022-08-31 18:23:05b698a54c66941c7ccf011044b264250733bb8185b6448826b2a7a0da79309d71exeSnakeKeylogger
2022-08-31 08:21:42576f82be5f1a3c4a83f02a3c3db7c48ba32419513786d094a7068d40263d9d97exeSnakeKeylogger
2022-08-30 13:31:1496dc2f2254e595b823c0ced74921369cb6e181250dce55aa06443e0c64611767exeSnakeKeylogger
2022-08-29 14:13:266a359c4a92ab2abcf5316b769d1aee00636de0086fb88412c9a102c25ebc3584exeSnakeKeylogger
2022-08-29 10:31:06ecf4b6e9b5e079122f1880f081dd1fae353e324182c335e5eb332f862053b34cexeSnakeKeylogger
2022-08-24 11:52:11449aec309db606211060d9bcb655b6e9bd94654abff88780e8b1c4eb4d72d3d3exeSnakeKeylogger
2022-08-24 08:04:59e89fb8987dc8e42016c0487623c2cfe35d41b5aa281a67eec60cf022c0008b17exeSnakeKeylogger
2022-08-24 04:04:061f09f9e9d4ea093344c49438bdb3dc3f65f0183f3743c7994353a90e7969605dexeSnakeKeylogger
2022-08-23 15:59:54015ef85eaa71919d83e37b1db5c29ad782fd64103b6c84eec53daeb543287e15exeSnakeKeylogger
2022-08-23 12:15:0677e3f9d194434b83f6d4f855204928504da2bf4f0ab175542abcdc2089458501exeSnakeKeylogger