URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 192.3.194.246
Firstseen:2022-06-08 09:25:04 UTC
Total malware sites :30
Online malware sites :0 (0%)
Offline Malware sites :30 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-06-08 09:25:10 192.3.194.246192-3-194-246-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-20 07:32:43http://192.3.194.246/Cyrdu.pngOffline abuse_ch
2022-11-20 07:32:43http://192.3.194.246/Kofdpterstw.jpegOffline abuse_ch
2022-11-20 07:32:43http://192.3.194.246/Fippkpowob.jpegOffline abuse_ch
2022-11-20 07:32:43http://192.3.194.246/Gfnjlkroe.bmpOffline abuse_ch
2022-11-20 07:32:43http://192.3.194.246/Fljezeu.jpegOffline abuse_ch
2022-11-17 08:21:11http://192.3.194.246/Zjvgktu.pngOfflineencrypted PureCrypter abuse_ch
2022-11-17 08:21:10http://192.3.194.246/Yfyspxjvrbt.bmpOfflineencrypted PureCrypter abuse_ch
2022-11-17 08:21:08http://192.3.194.246/Xivbwa.jpegOfflineencrypted PureCrypter abuse_ch
2022-11-17 08:21:07http://192.3.194.246/ecs.exeOfflineexe NetWire ext abuse_ch
2022-11-17 08:21:07http://192.3.194.246/inv_07836.exeOfflineexe NetWire ext abuse_ch
2022-11-17 08:20:05http://192.3.194.246/chris.exeOfflineexe NetWire ext abuse_ch
2022-11-10 07:59:05http://192.3.194.246/Bndzk.pngOfflineencrypted PureCrypter abuse_ch
2022-11-10 07:59:04http://192.3.194.246/paid_Xekwecvn.bmpOfflineencrypted PureCrypter abuse_ch
2022-11-10 07:59:04http://192.3.194.246/new_Qdkpyukm.pngOfflineencrypted PureCrypter abuse_ch
2022-11-10 07:59:03http://192.3.194.246/invoice_Cjcjrknc.jpgOfflineencrypted PureCrypter abuse_ch
2022-11-10 07:59:03http://192.3.194.246/Lnjrch.pngOfflineencrypted PureCrypter abuse_ch
2022-11-10 07:59:03http://192.3.194.246/INVOICE1_Staxrevk.jpgOfflineencrypted PureCrypter abuse_ch
2022-09-26 08:19:06http://192.3.194.246/P_O999.exeOfflineexe NetWire ext abuse_ch
2022-09-21 13:10:06http://192.3.194.246/RFQ.exeOfflineexe NetWire ext abuse_ch
2022-08-10 14:03:05http://192.3.194.246/ecst.exeOfflineexe NetWire ext rat abuse_ch
2022-08-10 13:34:05http://192.3.194.246/process.exeOfflineNetWire ext Anonymous
2022-07-22 17:43:24http://192.3.194.246/bin.exeOffline32 exe NetWire ext zbetcheckin
2022-07-16 08:48:05http://192.3.194.246/new_Jmenxekp.jpgOfflineencrypted NetWire ext rat abuse_ch
2022-07-15 14:10:05http://192.3.194.246/account_Mryifdyo.pngOfflineLLDLoader NetWire ext AndreGironda
2022-07-08 13:59:04http://192.3.194.246/PO_Confirmed_Qvefnrro.bmpOfflineencrypted NetWire ext rat abuse_ch
2022-07-07 05:41:04http://192.3.194.246/PO0089_Knqfiicv.bmpOfflineencrypted NetWire ext rat abuse_ch
2022-07-04 08:09:04http://192.3.194.246/IN0993_Cdlhstcr.pngOfflineencrypted NetWire ext rat abuse_ch
2022-06-08 11:37:05http://192.3.194.246/new.exeOffline32 exe NetWire ext zbetcheckin
2022-06-08 09:25:10http://192.3.194.246/fresh.exeOfflineexe NetWire ext rat abuse_ch
2022-06-08 09:25:10http://192.3.194.246/invoice.exeOfflineAveMariaRAT ext exe NetWire ext PureCrypter rat abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-11-19 08:16:18195d6535f8f97c525e1777cb2635b187bc905d15b2ef429d3e8a7d87c42575f9exePureCrypter
2022-11-17 08:21:1082a61c46955c31faeb5665c16f20686b7f24b37848eb822a7af9c214b07d2925unknown  
2022-11-17 08:21:100d707fceab55ffabd5f1f3138a7ef5b9a50037658a391da15b380cd355eac796unknown  
2022-11-17 08:21:086ff4f9630f53667ee9841235c6e4d9cc60b3cf67198ce1d7634cbbc6c57c8d14unknown  
2022-11-17 08:21:0744676f7732f4e6adfe2ba94d8e7dbaf4f6bf9d46f81118081f0f3a64f3fcb133exeNetWire
2022-11-17 08:21:077f26ea3cb1e19751ee9ca317c3b13d44f3877ede7e162e16172c2eced25f21d7exeNetWire
2022-11-17 08:20:0535a2e0e9daf4aaa64a5e8057eb6114c95bb4326763f768e09dbf25b57b387766exeNetWire
2022-11-10 07:59:05d9cdacf14d5335f50e1e286f1cbec5d56092b763dc6a6e7a695fcfeadb3ee0d0unknown  
2022-11-10 05:28:133b825210b99a016893d31e4590d385c83c9eb7c9152657d5c0997eb08d741800exeNetWire
2022-11-10 02:43:40d9165fe9df95eeb0aa98fa4dbc4aeb718342ebf2728c5fdd86e37cd207143aa3exe 
2022-11-08 01:42:01b0355698b9cac14e82f75a7b8cc8f49cfcf02e559f5122095cb7156eb44a0143exe NetWire
2022-11-07 11:36:4814bef316e807375c95d89a2d23d9a9af496dac1c91eaa431614f7881089e2abfexe AveMariaRAT
2022-10-31 01:57:56bc0a8e730ebbe66a98f6aa755671661158a982983898e45d306f79ec608250feexeNetWire
2022-10-27 07:23:56a21c8ef38b35eda08af936729863498ead8f750de997bc2d55ff9da429872e33exeNetWire
2022-10-13 09:00:1171e65562e00447d697f996d69ffc7798d96cf2b4799f27a298ce710730802428exeNetWire
2022-09-30 08:30:573fe1e3617e07294bb7f1b06743dea11ba1f7c700f9f425fae8a7fe832a9091f8exe NetWire
2022-09-26 08:19:063d10c53032ea46fb31e8b921c09466bf4a93347f5809c181a0d41ac8e423a153exeNetWire
2022-09-21 13:10:06ee61ac3cd6ac0319af2ca16d292464c08c018c15cd54f48c27df5907c9fca089exeNetWire
2022-09-21 02:32:0067f5ddf21cf15cefce056ddbe7bbcb3a3a7cd3551c0c1aec77360de58d820786exe NetWire
2022-09-12 10:06:3751d5a73c72f75f984194346b8a9e77fad48059295de86f339c9a092b0d51c9abexeNetWire
2022-08-20 05:00:00bca6c9c211bc4e28cec5bd528c55a215c6556b0e895386b7536b24cacbf2d866exe NetWire
2022-08-19 02:19:00012622e521dee6e1c74c6796c92f1b5d31dda65f11e81c095340ca5ec22bdc3eexe NetWire
2022-08-12 15:19:082abcdb606044f4db592baa3f9c808bf4fcab2146c49d83ba45a4ccbb20bc8354exeNetWire
2022-08-10 14:03:05e1005be756be06a809c11b66b47c79ee2fba85b2870693bee2882f369f03cec7exeNetWire
2022-08-10 13:34:05f3ba07ea43adc68f25d26028ec31b752001be473d77b69d5c89e1ef393d37812exeNetWire
2022-08-08 04:45:143a6ef5a50738a5230ca6c62f187b62b134ca090ba559f65c8a8204d9a66f724dexe NetWire
2022-07-22 17:43:24e7b7b828f1add6b862ccd69e5b0ecab7fc0926ed6e91f3f273c75a22edef2927exeNetWire
2022-07-16 08:48:0502950ab18569a48c2503d6b0b2cc21142687bb26cdfa90714d0287df53ab38f5unknown  
2022-07-16 02:05:27f621b17f07a862cf0dd4c87aaef881dc2a39e36f73900025169aa34c99d0a650exeNetWire
2022-07-15 14:10:055f5a26399cc48ed007e7b6c8b748d08a2a9104ee963187c73c22b500e470b88cunknown  
2022-07-08 13:59:04abf9b86d2a0da96d5a3c1a468da7fb6b9c932af98e0c990e6f29a3d4d6bcc89funknown  
2022-07-08 11:05:337418fd3ec75f43bed921ecf2df4ba922fbd86c2e1e158bf309bbee13d4374125exeNetWire
2022-07-07 21:09:38e82954e7c432701196ce8c5e2edd24c3335dc4dec000a4219ff574e993c32c2dexe NetWire
2022-07-07 05:41:048155b3ab830133425516390b927cf8b8c0e5543930823b4c24427d7caeb085aaunknown  
2022-07-04 08:09:044569653208bb5e3f1de0c5f075e4ba589db0b1d02b0e910e84b7947b44ecc16eunknown  
2022-07-03 18:46:34167b20bea3cf481d6b08785f82ce2f07dca108e925310df2e3c44b8f662509ecexeNetWire
2022-06-30 00:28:15a884e65e38d3545bd60f61ff95f10f87c1c956327d59e6df8ee9d441e19a3316exe NetWire
2022-06-17 09:13:4152eeb7fb08557b2a14fb725589df7a02a0018b41ba16cd9ab383e6dfb2a43dbfexeNetWire
2022-06-08 11:37:0562e10c7d7f2136172cfef4c1679edbe3a9f013fb81c17b33d252180e0087ea05exeNetWire
2022-06-08 09:25:05811690717824917911f152507cf4232df4aec5f198a57a638a3a9e0a738e84b8exeNetWire
2022-06-08 09:25:051317694579663bb8bfb86f87f2302076848c260ab23ad6b234c25669c36d3cdeexe NetWire