URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | 66.235.168.242 |
|---|---|
| Firstseen: | 2024-05-23 10:55:05 UTC |
| Total malware sites : | 8 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 8 (100%) |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2024-05-23 10:55:16 | 66.235.168.242 | Not listed | AS397423 TIER-NET | US | yes |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2024-05-23 10:57:06 | http://66.235.168.242/DefenderService.rar | Offline | trojan | |
| 2024-05-23 10:56:07 | http://66.235.168.242/Testing.exe | Offline | AsyncRAT | |
| 2024-05-23 10:56:06 | http://66.235.168.242/new%20loader.rar | Offline | AsyncRAT | |
| 2024-05-23 10:56:06 | http://66.235.168.242/CLients/Infected.exe | Offline | backdoor Formbook | |
| 2024-05-23 10:56:06 | http://66.235.168.242/CLients/Client.exe | Offline | backdoor VenomRAT | |
| 2024-05-23 10:56:06 | http://66.235.168.242/WinDefend.rar | Offline | AsyncRAT | |
| 2024-05-23 10:55:17 | http://66.235.168.242/Scorpion.apk | Offline | SpyNote | |
| 2024-05-23 10:55:16 | http://66.235.168.242/Craxs.apk | Offline | SpyNote |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2024-05-23 10:57:06 | 44620aaade1b48d38b0fd9d73c77668b90fd0c3ba197359b7431d77041e01405 | rar | ||
| 2024-05-23 10:56:07 | e3f245020bcf6beaca39b8cc9eb06b3db7f209356e765f41d8306ad56735e944 | exe | VenomRAT | |
| 2024-05-23 10:56:06 | 749d4623c8ded4493b2426ac71e80f3747ad8902a62145de31938ea7e9e97ae6 | rar | ||
| 2024-05-23 10:56:06 | a150a433c6a3e4278f6cc4cbc85863fc431e5c1e65081ad67253513e8ca01282 | exe | Formbook | |
| 2024-05-23 10:56:06 | 3caa5f06008365fbecf46198744793c36c42309b49a6324bebe8123be10f87d5 | exe | VenomRAT | |
| 2024-05-23 10:56:06 | c1c552de1fea7a64b2c01c334bb754d72d6e53383cb0a28f969cb9437240bc83 | rar | ||
| 2024-05-23 10:55:15 | 5b0a90abfb7a8d597087f2cee1e38cab6818baf3bcf82b90b5c8eb9c1766230c | zip | ||
| 2024-05-23 10:55:14 | ec1eb46d8ff3d981668094e9a92482fabc61e5fb236ea7f458051e9840f4d9b5 | zip | SpyNote |
US