URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 192.3.194.242
Firstseen:2021-09-20 14:54:02 UTC
Total malware sites :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-09-20 14:54:03 192.3.194.242192-3-194-242-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-20 14:54:03http://192.3.194.242/EXCEL.exeOffline32 exe NanoCore ext RedLineStealer ext Xpertrat zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-10-18 22:32:489eea9caa338a673c1d88240839b08fe021ff9264620e7935ba5cb5bd3d00ebf6exeXpertRAT
2021-10-14 23:17:23f2926aaea4603961e15c9ac92eb599ddd51bd6e19bd7fded285a1db16753db87exeXpertRAT
2021-10-13 15:24:58259dbea8ad36ca1f502f7eba9257bf7111313f4ef76c34922cd34dd5808b5181exeXpertRAT
2021-10-11 00:19:05bd5c24761ed0f7e6b1741abc9812e18794dd98524a7f4d3a8998d9a71af071adexeXpertRAT
2021-10-07 10:00:553e77ec2e0bbc394a1841bfb8f9b004f93fcbc35b401580abd01c92c41b6635aaexeXpertRAT
2021-10-06 08:17:471a55b87ef779fe996b8aef3e98ea9252a5ce3a02d3a0a87000554bd41033a215exeXpertRAT
2021-10-04 14:58:429bd273556358606717f3d0e7d4a2521dba396d6838d8dfccb78bfc5c98590b84exeXpertRAT
2021-10-04 07:59:205bdc764598795f4afcb70f6ff95f29114f61ea24a1d836838125c08268e13de9exeXpertRAT
2021-10-01 09:45:129443d3d69b5e62fb2c944c1bc14b4d4ad21f3e0c70826b0d800e09eb9fb82d3fexe RedLineStealer
2021-09-30 01:53:53c830683f700f311fe3d533d849cf045b1cbed5ff76debaa6c3dd8f71c0daa535exeXpertRAT
2021-09-29 04:24:29e4b8184869d65a34fb9e0fb43d8b6c252cb153f7139485e3fde6d02cd6898242exeXpertRAT
2021-09-28 20:02:06bb9bfe8005ea5d29b91d9286c81ca934ce6fbc4fa0bcc5c2d404e08441775e2cexeNanoCore
2021-09-24 08:48:45515fbf67c103e796658acaf24ae3762943a56ebf14337ab46bf9e140f61da0f4exeXpertRAT
2021-09-21 19:20:06bc2a5e452669de43c4f4533c995b515bace2941ea5b45bb537085b204ee5d54bexeXpertRAT
2021-09-20 14:54:0385f0af15d708b6a2ea67a30f2a858efc9f32af678a5633289c297f588443cd7aexeXpertRAT