URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host 34.240.96.52.

Database Entry


Host: 34.240.96.52
Firstseen:2020-01-27 17:07:39 UTC
Malware URLs:7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-27 17:07:43 34.240.96.52ec2-34-240-96-52.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-02-17 13:58:13http://34.240.96.52/files/c_/vvvv.exeOfflineDreambot ext Gozi ext @benkow_
2020-02-17 13:58:09http://34.240.96.52/files/b_/vvvv.exeOfflineDreambot ext Gozi ext @benkow_
2020-02-17 13:58:05http://34.240.96.52/files/a_/vvvv.exeOfflineDreambot ext Gozi ext @benkow_
2020-02-09 14:16:12http://34.240.96.52/files/c/vvvv.exeOfflineIcedID ext @benkow_
2020-02-09 14:16:09http://34.240.96.52/files/b/vvvv.exeOfflineqbot ext Quakbot ext @benkow_
2020-02-09 14:16:05http://34.240.96.52/files/a/vvvv.exeOfflineDreambot ext Gozi ext @benkow_
2020-01-27 17:07:43http://34.240.96.52/files/sp/vvvv.exeOfflineexe Gozi ext @zbetcheckin