URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 212.192.241.211
Firstseen:2022-06-24 04:43:03 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-08-10 06:27:04http://212.192.241.211/putty.exeOfflinebazaloader ext exe SnakeKeylogger ext abuse_ch
2022-07-15 07:30:05http://212.192.241.211/putty8.exeOfflineAgentTesla ext exe abuse_ch
2022-07-14 11:53:03http://212.192.241.211/putty10.exeOfflineAgentTesla ext AveMariaRAT ext ps66uk
2022-07-14 11:28:04http://212.192.241.211/doggy1s.exeOffline32 AgentTesla ext exe zbetcheckin
2022-07-12 13:16:04http://212.192.241.211/doggy1.exeOffline32 AgentTesla ext exe zbetcheckin
2022-07-11 19:38:04http://212.192.241.211/2DEqQGmKuPRE4z3.exeOffline32 AgentTesla ext exe zbetcheckin
2022-07-11 14:37:07http://212.192.241.211/david.exeOfflineAgentTesla ext exe abuse_ch
2022-07-11 14:28:04http://212.192.241.211/doggy.exeOffline32 exe GuLoader ext zbetcheckin
2022-07-11 14:28:04http://212.192.241.211/bin.exeOffline32 exe GuLoader ext zbetcheckin
2022-07-07 12:02:04http://212.192.241.211/botboy.exeOfflineAgentTesla ext Anonymous
2022-07-07 11:50:04http://212.192.241.211/dogg12.exeOffline32 AgentTesla ext exe zbetcheckin
2022-07-01 09:42:04http://212.192.241.211/zolotink.exeOfflineexe GuLoader ext abuse_ch
2022-06-24 08:45:05http://212.192.241.211/rait/polls.exeOfflineAveMariaRAT ext exe GuLoader ext abuse_ch
2022-06-24 06:23:04http://212.192.241.211/Frits5.exeOffline32 exe GuLoader ext zbetcheckin
2022-06-24 06:22:05http://212.192.241.211/100/100.exeOffline32 AgentTesla ext exe zbetcheckin
2022-06-24 04:43:04http://212.192.241.211/rait/Integrals1.exeOfflineexe GuLoader ext AndreGironda

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-08-15 07:26:06f6e1828ca21c2a799b740920d1b8ebb8c65a2792b89832b86eb577f7e62ca54dexeSnakeKeylogger
2022-08-15 05:35:31a06d8e909a4da939d257366967c9930276d702f645f67900a1dc53136b4dccb8exe  
2022-08-14 20:51:35341cb4515476007153b7f17212f5e4476852837a031efedd5a4adea723c0bcbeexe BazaLoader
2022-08-10 14:32:054d4310af285ba36f250f39445af8ce414b26e315510559c593edd7d4b0a7c00eexe  
2022-08-10 07:39:12999077089b1cf34450d1b5aebcd29040131731b327e4d5545707a842ee041162exeSnakeKeylogger
2022-08-10 06:27:040535c17342eaabc5ad9ef8ad282a103c78c9bf312de161e834766ba7af6eb7feexeSnakeKeylogger
2022-07-15 07:30:05177da45a3fb47f6453dadca5edb4f57899b662c58575fd0f20b8f83e5c632932exeAgentTesla
2022-07-15 07:21:58b0b4d749317091c81d67ec20fbb4387c4814115e7e336448b1f4270b4e89824eexeAgentTesla
2022-07-14 11:53:031471f3f5e141804a94afd7df6588ad3b1cab8ec8b8db49c1861d6786e55ad265exeAveMariaRAT
2022-07-14 11:28:04ba18ee8213b7312c5140deaaab63cc6fed9a307b608429617490ecf9d592d8baexeAgentTesla
2022-07-12 13:16:044da9257dba60a057a0e4655e2863bed977b4e53f51edbd0025a0a73f8ec2b167exeAgentTesla
2022-07-11 19:38:04766c317f32e6d60a1eafbb6df187189a28a5acb8e7bfe4448204c9d7c8363916exeAgentTesla
2022-07-11 14:37:07b1059f1b9b0552c6ec70191b24caa6b5cd3ab1e18a847078a9375955da4f1cf2exeAgentTesla
2022-07-11 14:28:04a4c9b49e9e1731b887292faf6629f483bf784c47d9f98a0730b906502674b7adexeGuLoader
2022-07-11 14:28:04b03792d2394ce86e2a309c2d07a2a0cab79d6e6514bb49b492a44e2d3e83bb9eexeGuLoader
2022-07-07 12:02:0473fa812837bfb3dcf2dd2a2d9d7a0a09387aea17be001b146441ec57663cc62cexeAgentTesla
2022-07-07 11:50:04bde56a8aae29748298cf05e0d3a944b5e92c7e4d285cd059f3c5575881a1864fexeAgentTesla
2022-07-01 09:42:043c25bbddae696d5f40ddd16653462a4841252b1ca6089cecb6cb81a676f631baexeGuLoader
2022-06-24 08:45:05703f021c710d363f3ff07058cd216883f3d6085db6ba3e54e0d834d69b3bd9a4exeAveMariaRAT
2022-06-24 06:23:0433017ca5e094927fd63c358dfc2d1b4e761e32fbbf7e2373e1e9109fd20eb6f8exeGuLoader
2022-06-24 06:22:04db54f1ba3c63ba88583f915a8f97f9da3f0029d80440c02135d1669909d18791exeAgentTesla
2022-06-24 04:43:041b690ddae98543c2dcd21076e1981e49cb6f0a430484484e49e50f26cad27e91exeGuLoader