URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 20.206.70.41
Firstseen:2023-04-21 13:15:05 UTC
Total malware sites :12
Online malware sites :0 (0%)
Offline Malware sites :12 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-21 13:15:15 20.206.70.41Not listedAS8075 MICROSOFT-CORP-MSN-AS-BLOCK- BRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-04-21 13:16:13http://20.206.70.41/itau.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:16:10http://20.206.70.41/caixa.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:16:08http://20.206.70.41/bradesco.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:16:08http://20.206.70.41/pix.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:16:08http://20.206.70.41/leiilaosodre.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:16:07http://20.206.70.41/serasa.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:15:20http://20.206.70.41/Emprestimo.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:15:15http://20.206.70.41/Xp.seguranca.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:15:15http://20.206.70.41/Gps.appmaps.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:15:15http://20.206.70.41/Ambev.apkOfflineapk SpyNote r3dbU7z
2023-04-21 13:15:15http://20.206.70.41/Nubank.apkOfflineapk SpyNote r3dbU7z

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-04 17:46:12e62483d2d9528ed14d8607992451985dd5c0bf934b773664f02bc047325050ebzip  
2023-05-03 20:28:18564accd52d50e27211207ffcd45fed4a4b31db6a44676fd31d07f3c9b072e438zip  
2023-05-03 13:57:040d7891c54681d558c17f364fa7ff1f5f08e209502b0efd9cd7f25f298674f761zip  
2023-05-03 05:49:48a37244b115c1978eb361d53d67c182c41f2ad48d5b599e0f005d1f4eb027b7f5zip  
2023-05-03 00:41:33d1ae119302f4635abde59c0b8257ce5813b0c8b2212b28ed1952801308067244zip  
2023-05-02 23:07:287eb90db11d11f90512b62a2b5f184783fa49a2ebb512aed1a2f0e1d3d640a577zip  
2023-04-29 14:35:54376f8746bb675370f832cb731ed2447a2878b7b5156901d10a0d6cad37612230zip  
2023-04-27 15:02:50a923892e2da3c2360280fc307e0389afae809d7420546798c2fc83bed3426752zip  
2023-04-26 04:50:46992f2ae59880ee318469827e923e5b47dcd49a9662b14b4403ab23e88a5540b6zip  
2023-04-21 15:20:465f8bb5d850fbf082d9665855b48a912f1de8434fa6f66a860bac50240fb252cczip  
2023-04-21 13:16:5424c88d895d2e2f946ad39cc710a40235cff307cfa01f5c583c1c3011df6fd443zip  
2023-04-21 13:16:134a0425ae6b0accea35c58020147e2122c77ea6d1fb231176f4737d31bc1c9fb6zipSpyNote
2023-04-21 13:16:10d4dd905273ddcf887378be462217582d6e78b57e7d105c80abebba43dbcc355bzipSpyNote
2023-04-21 13:16:082f922df9bde2e816064bbc23c5e4d4ec833f8f0d822c0f097f3b584ec81df032zipSpyNote
2023-04-21 13:16:08059b5f74e053c2966775157cd521580fcfaa3b1a7613560b8f499dbd9c11d4b4zipSpyNote
2023-04-21 13:16:08bb511cff0a5aafd76618ffee79a1751b71c007e2dd79ad296f57ef7877d26353zipSpyNote
2023-04-21 13:16:078f698592e9e944b5b2f580485d13b2e6b5a1fcdb58adfebb0f4b78ca23a4185azipSpyNote
2023-04-21 13:15:15f90b5a04fc46422771096a04498d4f8852a164f87e1775c8c1c6c209b9e88e6dzipSpyNote
2023-04-21 13:15:105c01f7727c78dea9c89dccf92b01b4c45e69406e6462340779401497bf4d4589zipSpyNote
2023-04-21 13:15:108c365bd58edeb2ca371ead5e28350ee6c480a79f558d967ecbef525e9f1d7b3ezipSpyNote
2023-04-21 13:15:10dee1eaaa8879a7d321ef4e698203be7b23eeda80a6dea3c70cbf3138597b1800zipSpyNote
2023-04-21 13:15:10bb511cff0a5aafd76618ffee79a1751b71c007e2dd79ad296f57ef7877d26353zipSpyNote