URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 62.233.57.190
Firstseen:2023-07-08 03:52:04 UTC
Total malware sites :10
Online malware sites :0 (0%)
Offline Malware sites :10 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-08 03:52:05 62.233.57.190vds1181826.hosted-by-itldc.comNot listedAS204957 GREENFLOID-AS- CZyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-07-19 12:50:06http://62.233.57.190/z1/quote111.exeOfflineAgentTesla ext abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Yvqceb.pdfOffline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Loslsum.pdfOffline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Wvwli.mp3Offline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Aiqxa.pdfOffline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Vsznspg.datOffline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Tjgvm.mp4Offline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Thufmpiu.mp4Offline abuse_ch
2023-07-19 12:50:04http://62.233.57.190/z1/Ngmsggjhvnt.mp3Offline abuse_ch
2023-07-08 03:52:05http://62.233.57.190/z1/PTT_20230707-WA01120xls...Offline32 AgentTesla ext exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-07-19 12:50:0610c3ade35a4335bd3c404789a75cc98b4b28a12468db7f8fd6e94d468e0bad7eexeAgentTesla
2023-07-09 01:02:2180f34e5dd3e3ef556ee98c0925ed30be710be1340504d2da781b0d0cfdc0a670exe  
2023-07-08 03:52:0519f4543b9d32f5f1febc36981cbe57e9727beccbc231baa67a12826924a2090dexeAgentTesla