URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 195.103.203.106
Firstseen:2024-06-28 14:45:36 UTC
Total malware sites :5
Online malware sites :5 (100%)
Offline Malware sites :0 (0%)
Newest active malware site :2025-10-09 05:53:31 UTC
Oldest active malware site :2024-06-28 14:46:58 UTC (Age: 1 year, 6 month, 5 days, 4 hours, 40 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-06-28 14:46:58 195.103.203.106host-195-103-203-106.business.telecomitalia.itNot listedAS3269 ASN-IBSNAZ- ITyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-10-09 05:53:31http://195.103.203.106/AV.scrOnlineCoinMiner Riordz
2024-06-28 14:46:58http://195.103.203.106/Photo.scrOnlineCoinMiner exe iframe Photo.scr scr NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-10-09 05:53:319194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9exe CoinMiner
2025-10-08 00:48:4900401651af3194ede5157004b6dbe1edf836a94ca182221f2c034201fe55e4dclnk  
2025-10-08 00:00:0800401651af3194ede5157004b6dbe1edf836a94ca182221f2c034201fe55e4dclnk  
2025-10-07 23:44:169194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9exe CoinMiner
2025-01-25 17:18:260c4d7c1461b55e77da12a266c4b0c366caddac920f49302bd37123d157e7b313exe CoinMiner
2025-01-16 18:01:46bbb3f6455e0bb2ec7fd3d5a12431c170722d081362a6be717aad1853db38093bexe CoinMiner
2025-01-15 06:24:56ecf93f602beaedb04bd6f476e921c9d20e405dd53eb02f91091237470e4c8038exe CoinMiner
2024-12-29 17:34:487910dce97499ac42c4e27ca2dfe406d79a2919fb0cc7dfb8bea74d894d0b4161exe CoinMiner
2024-12-28 17:23:02a2387d84bbaebd311d8722965a80a9e296123e2e0bfb126a04e48929e2b0cc04exe CoinMiner
2024-12-26 15:58:15c09452386f6da8fd5a9a8b56d7583d2fd19adf60208e1888fe7324a6d5814a1aexe CoinMiner
2024-12-22 17:57:15cd6ef7ccb60d33dfe18efcbf9c9f4732a234cf984559380b1a7ae021a2dfb072exe CoinMiner
2024-12-21 05:03:55f6ec3ef935fadc9c7551477b5be517540d9ecf73d89206ab9749d508ae0a9087exe CoinMiner
2024-10-06 09:06:358d5d6f0ad306ad32832780b7c56ca5d1867c5da5933938a1bda28aa09d73d559exe CoinMiner
2024-09-22 05:57:401d3460bd75e1a6dab72a84eaf99a491d90af197d843459b7f4407d53b53f57f4exe CoinMiner
2024-09-16 10:53:00ed45accb9e65ea7966e6d7b70223e8deef57cd2a528b1413eafa74034589fa93exe CoinMiner
2024-09-12 01:30:03acac4b42dba9a318c281df822193c95d00f0e78aac9c1dd9ed821f13ef3a3b9bexe CoinMiner
2024-08-31 01:11:4497bf9ed43a2db1e468151870c80681927f09a5019cab88af807ae5e40a12c213exe CoinMiner
2024-08-23 04:43:54c253701607d91784f80102dfad4fa90bbb185906128656ead83c66dc342694d2exe CoinMiner
2024-08-19 22:36:499931d6c9ae2c25b5cc7b76378a9e764f38f148a58464ce3ed534d01ff9c7b264exe CoinMiner
2024-08-18 11:29:122920361747840b4b3701b31ba35e4d0686ae2725db68eb3472cbc1ddbe869f86exe CoinMiner
2024-06-28 14:46:589194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9exe CoinMiner