URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 51.159.29.96
Firstseen:2024-09-16 16:58:04 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-09-16 16:58:10 51.159.29.9651-159-29-96.rev.poneytelecom.euNot listedAS12876 AS12876- FRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-09-17 20:32:11http://51.159.29.96/search/gefox.exeOfflineexe Socks5Systemz ext NDA0E
2024-09-16 16:58:16http://51.159.29.96/ssl/online.exeOfflineexe Socks5Systemz ext abus3reports
2024-09-16 16:58:16http://51.159.29.96/ssl/crt.exeOfflineexe Socks5Systemz ext abus3reports
2024-09-16 16:58:16http://51.159.29.96/ssl/job.exeOfflineexe Socks5Systemz ext abus3reports
2024-09-16 16:58:10http://51.159.29.96/ssl/off.exeOfflineexe Socks5Systemz ext abus3reports
2024-09-16 16:58:10http://51.159.29.96/ssl/soon.exeOfflineexe Socks5Systemz ext abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-09-19 07:12:37c8b8fcbe4ca291f4a1b08258c4980bbe6323dda4f132bd1a6446324858d5d7e1exe Socks5Systemz
2024-09-18 15:49:570ecc78c8637b4b28d7158a31ee3ca75f07dea64d7bb8c2330ce38189340a4c9eexe Socks5Systemz
2024-09-18 10:53:47a4d3e439ee171d55bfc435125503d421c2314d87e8bc5910161bebecfa505edaexeSocks5Systemz
2024-09-18 08:42:38ace8a2abb91d331c97259f9bcc0192e0493e6e243ea4e61c8516125ca9d5758dexe Socks5Systemz
2024-09-17 20:32:108bc5aab9c43dafa763ecf0c4f4502980183b1a1560e8919397ac6ff32e144229exeSocks5Systemz
2024-09-17 06:00:0295d0d6577a03fae5fe0dbf14d291e2bac81b5261e411dc8f02cc98b4fefe8c3cexe Socks5Systemz
2024-09-17 05:48:3647c7456bfbc3b877b5cb51375eb0ce68b3f5a9499cfe1c2e3c4ba64077195814exe Socks5Systemz
2024-09-17 05:32:27d5cd9f0cc1ae08c701f55a8d865bccb581a1a0ac2287636fde2875d3293c8ae6exeSocks5Systemz
2024-09-17 05:29:53da8ccd10a7e94f0ee8b0ddc00d2e2ddd9748ea811ea572c9ac5fb6126e372c41exe Socks5Systemz
2024-09-17 02:38:58c3832360cf0e265a05ac93f97a526ea60c2aca7f142fb214a52df77e58fbfa0eexe Socks5Systemz
2024-09-17 01:58:20c3832360cf0e265a05ac93f97a526ea60c2aca7f142fb214a52df77e58fbfa0eexe Socks5Systemz
2024-09-17 01:39:408872fd7ee88335e2304847f2d036a0b3db14f1fc6f4f9cc6b8886ea16027388fexe Socks5Systemz
2024-09-16 23:39:331d0e7514a7601baf5dc7d9530b4c62baebfd5cb9eb26b8e4c2663cec32bcf4d8exe Socks5Systemz
2024-09-16 23:04:03fc57a119f7c177505c6daef89eaa87a00c222e7d6088af49f3ee3ddfea1d4718exe Socks5Systemz
2024-09-16 22:58:48fc57a119f7c177505c6daef89eaa87a00c222e7d6088af49f3ee3ddfea1d4718exe Socks5Systemz
2024-09-16 20:32:178f4c03ed87ccb9665929a6dabbec0cff046f3d176eaf3626d37625f01dde94dbexe Socks5Systemz
2024-09-16 20:21:425d702d85714478fb139601bbe45cbba01f65ced1e3fdbb9a88e156728c0ff13cexe Socks5Systemz
2024-09-16 19:53:120a5ca763389ee117baf095b45dd75fc08c4fde97c16d5cbfe01428d2e435c0ceexe Socks5Systemz
2024-09-16 19:37:1516a360a185a4821633231e553888714530a368157d75024e8e54bb5be6d8ee35exeSocks5Systemz
2024-09-16 16:58:16e5e757a3389143c54aa241eb003a92c6817b7b49fe421138791eadfe4ae8b433exe Socks5Systemz
2024-09-16 16:58:16ba9aa6dffbda1d7dca62d8df94b5240a504df1f54fc7f4f5c027a745ecf24453exe Socks5Systemz
2024-09-16 16:58:16e5e757a3389143c54aa241eb003a92c6817b7b49fe421138791eadfe4ae8b433exe Socks5Systemz
2024-09-16 16:58:1089a8a732170648b1483a76ca2f198187822ada8bd41ee9ead0befb6fa9a87025exe Socks5Systemz
2024-09-16 16:58:091bb62d5b5dae6d83dc677ad6fe1c24ac9d399579ced7213ef144c7adce15dfc2exe Socks5Systemz