URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 54.238.74.62
Firstseen:2021-02-19 20:49:02 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-19 20:49:07 54.238.74.62ec2-54-238-74-62.ap-northeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- JPyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-19 20:50:14http://54.238.74.62/windows/88.exeOfflineexe Formbook ext de_aviation
2021-02-19 20:50:07http://54.238.74.62/windows/cmdss.exeOfflineAgentTesla ext exe Formbook ext de_aviation
2021-02-19 20:49:07http://54.238.74.62/windows/cmdzx.exeOfflineAgentTesla ext exe Formbook ext de_aviation

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-02-23 06:44:56e6370f5f39e8e3d7a2506659786deadd1fe5ce8208cb2b6bf7748b6637a3b793exeFormbook
2021-02-23 06:33:14c48763faaef45525c9b89e256e912eaaafe46d38953bce1a2462e610c9f9602fexeAgentTesla
2021-02-22 02:04:15f8aafaaa0ba7e096f3ba025d645799879660038ae6bf93be65d1db884183c137exeFormbook
2021-02-22 01:59:01f8aafaaa0ba7e096f3ba025d645799879660038ae6bf93be65d1db884183c137exeFormbook
2021-02-21 10:43:079b8ef6f170a3f6d196ac13599fcd5317c450c210d05a8d52285fd0eb4a17d333exeFormbook
2021-02-21 10:38:499b8ef6f170a3f6d196ac13599fcd5317c450c210d05a8d52285fd0eb4a17d333exeFormbook
2021-02-21 07:30:5769a63c57f8372d93ed37423a5a5c08245ba6609d210eba2fc26106284230266eexeAgentTesla
2021-02-21 07:29:4569a63c57f8372d93ed37423a5a5c08245ba6609d210eba2fc26106284230266eexeAgentTesla
2021-02-21 04:59:5178c1475a465508db6c9082fd239d9d040ab5ee56101ca43ffcded14332efba4cexe Formbook
2021-02-20 15:15:01954ea9356a580092319e9d42da77cff35db73c2eb7fe8235a6e4124bd9bce120exeFormbook
2021-02-20 15:12:51954ea9356a580092319e9d42da77cff35db73c2eb7fe8235a6e4124bd9bce120exeFormbook
2021-02-20 05:40:3478c1475a465508db6c9082fd239d9d040ab5ee56101ca43ffcded14332efba4cexe Formbook
2021-02-20 05:26:0878c1475a465508db6c9082fd239d9d040ab5ee56101ca43ffcded14332efba4cexe Formbook
2021-02-19 20:50:115a88f2832e625232b811db9715dcbb1058f9b33ae86677a95c3482ba66f2b98fexeFormbook
2021-02-19 20:50:074136247829572b4210102e01bef684b8e5cbc8ebd9d8dc6a87de79ca62a51630exeFormbook
2021-02-19 20:49:064136247829572b4210102e01bef684b8e5cbc8ebd9d8dc6a87de79ca62a51630exeFormbook