URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 192.3.215.60
Firstseen:2023-03-23 06:09:03 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-03-23 06:09:11 192.3.215.60192-3-215-60-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-03-31 11:12:04http://192.3.215.60/008/drub.exeOffline32 AgentTesla ext exe zbetcheckin
2023-03-30 07:22:06http://192.3.215.60/uo7/Zkbscbhcbcv.pngOfflineopendir abuse_ch
2023-03-30 07:21:05http://192.3.215.60/uo7/Cbqta.pngOfflineencrypted Formbook ext opendir PureCrypter abuse_ch
2023-03-29 04:44:05http://192.3.215.60/g8c/uy74.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2023-03-28 17:49:12http://192.3.215.60/uo7/Zzqzpswwlql.dllOffline abuse_ch
2023-03-28 06:27:17http://192.3.215.60/uo7/Llwttrhoy.datOfflineopendir abuse_ch
2023-03-28 06:27:09http://192.3.215.60/uo7/Sqbfeh.dllOfflineopendir abuse_ch
2023-03-28 06:27:08http://192.3.215.60/uo7/Fbnkrtltw.bmpOfflineopendir abuse_ch
2023-03-28 06:27:08http://192.3.215.60/uo7/Qzrirgagqls.dllOfflineopendir abuse_ch
2023-03-28 06:27:08http://192.3.215.60/uo7/Fgglzz.datOfflineopendir abuse_ch
2023-03-28 06:27:08http://192.3.215.60/uo7/Vdvkaavhxd.datOfflineopendir abuse_ch
2023-03-28 06:27:07http://192.3.215.60/uo7/Dtelr.bmpOfflineopendir abuse_ch
2023-03-28 06:27:07http://192.3.215.60/uo7/Xshzp.dllOfflineopendir abuse_ch
2023-03-28 06:27:07http://192.3.215.60/uo7/Decnrilana.pngOfflineopendir abuse_ch
2023-03-28 06:27:06http://192.3.215.60/uo7/Iixyx.datOfflineopendir abuse_ch
2023-03-28 06:27:06http://192.3.215.60/uo7/Cmtzmnhnm.datOfflineopendir abuse_ch
2023-03-28 06:26:06http://192.3.215.60/uo7/Ueyjiaj.bmpOfflineencrypted Formbook ext GuLoader ext opendir abuse_ch
2023-03-23 14:59:05http://192.3.215.60/uo7/Xnhftlkpb.datOfflineencrypted Formbook ext opendir abuse_ch
2023-03-23 14:53:13http://192.3.215.60/uo7/Loxhbdckoxl.datOffline abuse_ch
2023-03-23 06:09:12http://192.3.215.60/uo7/Sbclspp.pngOfflineopendir SnakeKeylogger ext abuse_ch
2023-03-23 06:09:11http://192.3.215.60/uo7/Bnebynig.dllOfflinedll opendir SnakeKeylogger ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-03-31 11:12:045df3a5073fc1a14936a0227e2674ecdc580c804e117463a40b417a54334e04ccexeAgentTesla
2023-03-30 07:22:06b575d28baf9df960a449b65aa293c671ca8ff1c24431afd69a00462504eaf34dtxt  
2023-03-30 07:21:05f9a713d5c8703b9491691da9dc79474396cb92c47662efe3a5461124abc110b6txt  
2023-03-29 04:44:058372e04e3eb4e1534143534f62e8a57de90333c2925053556bebc077619436b7exeSnakeKeylogger
2023-03-28 17:49:12c5628921a781cb0993ae64479aff0eed75ec7ffb4930311cff6473c144b41424txt  
2023-03-28 06:27:16b8c885e42f9fbed1c9039e3cdb6b57bd70392eba6146e4d398481243dbb469e9txt  
2023-03-28 06:27:09db9979fdaca91a423181485b0c5f0b7f5b96481ce131349791c08e4a32bc6332txt  
2023-03-28 06:27:08aa9d478489841356c3ca59885623cfcc66ca4324ef6ed72a3d333cbc20ef3931txt  
2023-03-28 06:27:0879a8f92ace0b6bbfa94d84cf46cc525880fe6cb647848444f703a48317f9d999txt  
2023-03-28 06:27:084b6ceaf4eaf1133e04ce0ad2b5eaaf7698135363208d0646d3959fc1b56ea1d7txt  
2023-03-28 06:27:07267569800bf60539b2f23c27773b4d15133533f9acb4caac977d7f977d776feetxt  
2023-03-28 06:27:077beafe9512b1a015f18938e09ffc246f0a44eb022b77d586a34aa04d28ef7513txt  
2023-03-28 06:27:07526cd0223379954fdcd8316605b74110cf69f106ddc843cb8d6a3d1984cb51cetxt  
2023-03-28 06:27:06c1c7703a83154b9dd2a3bea8d0734e9d9003c01f3a1a7b16c7b70bc8c34f95cdtxt  
2023-03-28 06:27:0683ae03e7b014d94034d12c46735d7adde94b83605b7034de4d57dd13f32b046ftxt  
2023-03-28 06:26:06f39cb223731120e37f9c2db57e87af03aaabc43ef40490382b8f4b5cd5648ff8txt  
2023-03-23 14:59:054a1c32d624426f65e2221a5bf32f7c301ab571f8d55267ae572314e9e826f143txt  
2023-03-23 14:53:13b2b18e8a7f8cb935076183379319b8009c4cad4eeaca2f5fec0947aa174e1664txt  
2023-03-23 06:09:127c28fc0ca0b4f5bb482930379d7a07869502abc5151a4ef135ff035854dbaa35txt  
2023-03-23 06:09:0529bbd3eb5766d88ea2a1477c1f099dbf1ad310dc7b83ad90eb091bba023e45edtxt