URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 64.226.114.30
Firstseen:2023-06-18 10:07:03 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-06-18 10:07:11 64.226.114.30Not listedAS14061 DIGITALOCEAN-ASN- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-18 10:07:16http://64.226.114.30/psOffline ULTRAFRAUD
2023-06-18 10:07:16http://64.226.114.30/xmrigOfflineCoinMiner ULTRAFRAUD
2023-06-18 10:07:15http://64.226.114.30/appOffline ULTRAFRAUD
2023-06-18 10:07:15http://64.226.114.30/nbminerOffline ULTRAFRAUD
2023-06-18 10:07:11http://64.226.114.30/bruteOffline ULTRAFRAUD

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-18 10:07:1114779e087a764063d260cafa5c2b93d7ed5e0d19783eeaea6abb12d17561949aelf 
2023-06-18 10:07:11f72cc34394c1d4ce63a6151c1effe973e44cc65043df34de98f82a127c6225d1elfCoinMiner
2023-06-18 10:07:09fcbf3eb0312aaba9d8d18fd26a92c5deff41947750a03023701999fc517ccc71elf 
2023-06-18 10:07:092434f71db9a79ffb70703b9b67b410b3fb47e595273ad3a07825f5286da41887elf 
2023-06-18 10:07:056163a3ca3be7c3b6e8449722f316be66079207e493830c1cf4e114128f4fb6a4elf