URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 68.183.165.105
Firstseen:2021-12-17 12:15:03 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-12-17 12:15:33 68.183.165.105Not listedAS14061 DIGITALOCEAN-ASN- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-12-18 08:15:33http://68.183.165.105/wp-content/themes/twentys...OfflineCoinMiner CVE-2021-44228 exe log4j abuse_ch
2021-12-17 12:16:33http://68.183.165.105/.l/pty5OfflineCVE-2021-44228 elf log4j Muhstik Tsunami ext cocaman
2021-12-17 12:16:33http://68.183.165.105/.l/pty1OfflineCVE-2021-44228 elf log4j Muhstik Tsunami ext cocaman
2021-12-17 12:16:33http://68.183.165.105/.l/pty3OfflineCVE-2021-44228 elf log4j Muhstik Tsunami ext cocaman
2021-12-17 12:16:33http://68.183.165.105/.l/pty2OfflineCVE-2021-44228 elf log4j Muhstik Tsunami ext cocaman
2021-12-17 12:16:04http://68.183.165.105/.l/pty4OfflineCVE-2021-44228 elf log4j Muhstik Tsunami ext cocaman
2021-12-17 12:15:33http://68.183.165.105/.l/logOfflinelog4j cocaman

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-12-20 12:56:29cb6daf019f819320f95c1943f46f4f80752a35ccacf25ff5b776cd3a081c19d0unknown  
2021-12-20 12:34:04daebc1cde6af5d2cc54c81c60d67d7d7daa8647d6c45b8c50cc4fbfc3a9e3c54unknown  
2021-12-20 10:21:01b30702b6432c4a5ca65ebc060b72f28ba71f60b20bb38b6f858af5e6aa61896felfTsunami
2021-12-20 10:20:51511127afbc6f189beb8239b778aca11c09b6032fbd9d593cf697024b024ad8f5elf  
2021-12-20 01:30:450e8760cf783a2a772a88e36a9a9fc52bdbbd4109fbccb1e601ec7e7919eb3357elf  
2021-12-19 08:46:1156bab5bd7f4eed51a6eb825a67137e04cb352b9e571de3a7c343a51cb44b7235elf  
2021-12-19 08:45:384a719439027a279b14a05d650691bed6e0a437ae87fb55895406616a55c6c720elf  
2021-12-19 07:55:19c9dff47d099b48da83b4f82a7596b3a2e1be62d074893aa8f5e3d96c53ae887delf  
2021-12-19 07:54:189410e688cc3aaf18eb921a9fd1774c994d4ef59690a6b89e587485898af531bbelf  
2021-12-18 18:56:574a249f05a84594a7dea4cc227389be454f2b021084c73b3301e081ca7be5f13bunknown  
2021-12-18 18:02:133cc5164b991c09187bc3ea44b9463a1da5b465643d23b4eb51b44290e47f132funknown  
2021-12-18 09:39:55771d794d6ace0a85fd384c538a62054f90df337fa34fd85add47d1578f8f32a4unknown  
2021-12-18 08:29:37d7b998957afba18e7f9c27b67692f1b26073250a6cf4187ad578e21925d16018exe  
2021-12-17 13:25:284c97321bcd291d2ca82c68b02cde465371083dace28502b7eb3a88558d7e190celf  
2021-12-17 13:23:502752deb9f9f9602ca0c7bd41c3171d1560b929b6a4221ab07b0bf872d042f7e7elf  
2021-12-17 13:15:18c39eb055c5f71ebfd6881ff04e876f49495c0be5560687586fc47bf5faee0c84elf  
2021-12-17 13:08:3933dd6c0af99455a0ca3908c0117e16a513b39fabbf9c52ba24c7b09226ad8626elf  
2021-12-17 12:24:08a290b6f956ecdb3d2d2019088f0b01a93a9f680c82a4680c0fb87eb5e3e64897unknown  
2021-12-17 12:16:04b0a8b2259c00d563aa387d7e1a1f1527405da19bf4741053f5822071699795e2elf