URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 3.64.251.139
Firstseen:2021-10-18 11:38:03 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-10-18 11:38:04 3.64.251.139ec2-3-64-251-139.eu-central-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-10-21 08:54:04http://3.64.251.139/v11/1/tdh_0117607520026img.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-21 08:41:02http://3.64.251.139/vr/r/iso-77002387418602.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-21 05:56:04http://3.64.251.139/vr/r/QA4ty2uUkTCD2tfNQSE5.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-20 12:00:04http://3.64.251.139/v11/1/451200001308IMG.exeOffline32 a310Logger ext exe zbetcheckin
2021-10-20 08:19:06http://3.64.251.139/v11/1/FTD_21000160852.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-20 00:43:03http://3.64.251.139/v11/1/tdh_0082205005img.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-19 16:37:04http://3.64.251.139/v11/1/TDL_011560751103011IM...Offline32 exe SnakeKeylogger ext zbetcheckin
2021-10-19 15:19:03http://3.64.251.139/v11/1/TDH_71036210065IMG.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-19 14:20:06http://3.64.251.139/v11/1/TDH_1366621005IMG.exeOfflineexe Loki ext abuse_ch
2021-10-18 23:37:03http://3.64.251.139/v3/2/bll_3605800091212.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-18 16:30:04http://3.64.251.139/v3/2/605300013806.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-18 12:52:02http://3.64.251.139/v3/2/PTL_100258541102.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-18 12:52:02http://3.64.251.139/v3/2/60852000010.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-18 12:52:02http://3.64.251.139/v3/2/8451.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-10-18 12:05:02http://3.64.251.139/v3/2/097001357520.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-18 12:05:02http://3.64.251.139/v3/2/34522201036.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-18 12:04:03http://3.64.251.139/v3/2/Requests07520000652.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-18 12:04:03http://3.64.251.139/v3/2/70016103621110.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-10-18 11:38:04http://3.64.251.139/v3/2/New_771008123115.exeOfflineexe SnakeKeylogger ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-10-21 08:54:04d33e00381cdafc0c33431016e4781e12e7d335e83ba405ae242ed54044af98d2exeSnakeKeylogger
2021-10-21 08:41:020cc6f444f52c66cd955fa64184e8784b8ec735a0d8b2f1f4c060532fcd54e9f8exeSnakeKeylogger
2021-10-21 05:56:0449e595816d745be34ae53202b5839e72a30d7245321003fe7a37e1d99508695eexeSnakeKeylogger
2021-10-20 12:00:046d22dfb53e173bdd14f24a6e08bd334596c89bd18519bfd5d9e1371991934ae9exea310Logger
2021-10-20 08:19:051216db955da408a0070ebd68abffd6978e62363fe917b55688b9df9f253d58cbexeSnakeKeylogger
2021-10-20 00:43:03406776bc31b30cd94d3e6e50ea5adfac4817b2787c49f02e9ac096ea128f4843exeSnakeKeylogger
2021-10-19 16:37:043559806841a45de7e6ed11acf6085ddbfb7ca67781e1db676b844b0e92ac30f9exeSnakeKeylogger
2021-10-19 15:19:03fa5955a750c70b0f3e673f7ae3384a8b2dc952609d98552535e4c1ed928ef2f3exeSnakeKeylogger
2021-10-19 14:20:06a3f50eb98afaf1fa3611be5e129012a443fb0f7e248e8d1e2c2e395d69c4fae1exeLoki
2021-10-18 23:37:03a2be24512daa156d5c3cd4726819d6cb085e77a1d8f3a6b2c6bfc26221f8853cexeSnakeKeylogger
2021-10-18 16:30:0467d0b08c6cf36abee6b895c90773663a21131e4bc36ff46726e8ba9a53ed0497exeSnakeKeylogger
2021-10-18 12:52:02e01b0ac8411fc377c317ed6aabf5656b400c17bbb4a61b55204ea335bbe2f0ceexeSnakeKeylogger
2021-10-18 12:52:02accad8825cb1550525445007a28a4d2ac8b5db15a6b403d78a4177262a1f681bexeSnakeKeylogger
2021-10-18 12:52:02baddb56c76c155fd267142a7d131a7526644fde87c04f0a031e9354f3a10465aexeSnakeKeylogger
2021-10-18 12:05:028194267924b10c3df2ea10dc1d56f9365effe18125b9197dfcc720db3e3e5f48exeSnakeKeylogger
2021-10-18 12:05:0212eac304f48075b2a3d7263a4b8182ddc676e1ccd04a16162770a1ca78671311exeSnakeKeylogger
2021-10-18 12:04:0353d520c1f12fe4e479c6e31626f7d4aba5a65d107c1a13401380ebca7cca5b05exeSnakeKeylogger
2021-10-18 12:04:03f5a980b01f25dea8e566dff4cc9750bdd5ea67e76c6d02fe490d7366039c9f92exeSnakeKeylogger
2021-10-18 11:38:031f3ebec39406d9a1db488ee7720e4d174dda862451540da480b834efd654699eexeSnakeKeylogger