URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 74.194.191.52
Firstseen:2025-08-11 15:11:04 UTC
Total malware sites :51
Online malware sites :0 (0%)
Offline Malware sites :51 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-11 15:11:04 74.194.191.5274-194-191-52.htvlcmta01.com.dyn.suddenlink.netNot listedAS19108 SUDDENLINK-COMMUNICATIONS- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-08 15:39:14http://74.194.191.52/rondo.wcr.shOfflineRondoDox BushidoToken
2025-11-08 15:39:10http://74.194.191.52/rondo.qzj.shOfflineRondoDox BushidoToken
2025-11-08 15:39:09http://74.194.191.52/rondo.sdu.shOfflineRondoDox BushidoToken
2025-11-08 15:39:09http://74.194.191.52/rondo.qbq.shOfflineRondoDox BushidoToken
2025-11-08 15:39:09http://74.194.191.52/rondo.wwc.shOfflineRondoDox BushidoToken
2025-11-08 15:39:04http://74.194.191.52/rondo.fzr.shOfflineRondoDox BushidoToken
2025-10-27 13:28:05http://74.194.191.52/rondo.dtm.shOfflinesh ua-wget NDA0E
2025-10-27 13:28:05http://74.194.191.52/rondo.xcw.shOfflinesh ua-wget NDA0E
2025-10-27 13:28:05http://74.194.191.52/rondo.txg.shOfflinesh ua-wget NDA0E
2025-10-27 13:28:05http://74.194.191.52/rondo.eby.shOfflinesh ua-wget NDA0E
2025-10-27 13:28:05http://74.194.191.52/rondo.vgz.shOfflinesh ua-wget NDA0E
2025-10-19 14:51:17http://74.194.191.52/rondo.qyz.shOfflinesh ua-wget NDA0E
2025-10-19 14:51:12http://74.194.191.52/rondo.uzz.shOfflinesh ua-wget NDA0E
2025-10-19 14:51:12http://74.194.191.52/rondo.rwx.shOfflinesh ua-wget NDA0E
2025-09-22 19:05:15http://74.194.191.52/rondo.wtf.shOfflinesh ua-wget NDA0E
2025-09-22 19:05:15http://74.194.191.52/rondo.idk.shOfflinesh ua-wget NDA0E
2025-09-18 13:26:15http://74.194.191.52/rondo.armebOfflineelf ua-wget NDA0E
2025-09-18 13:26:15http://74.194.191.52/rondo.armebhfOfflineelf ua-wget NDA0E
2025-09-18 13:25:23http://74.194.191.52/rondo.zqq.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:23http://74.194.191.52/rondo.fep.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:22http://74.194.191.52/rondo.ush.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:22http://74.194.191.52/rondo.qre.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:21http://74.194.191.52/rondo.xbm.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:21http://74.194.191.52/rondo.ebj.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:21http://74.194.191.52/rondo.wyu.shOfflinesh ua-wget NDA0E
2025-09-18 13:25:21http://74.194.191.52/rondo.djc.shOfflinesh ua-wget NDA0E
2025-09-17 17:55:07http://74.194.191.52/rondo.cay.shOfflineRondoDox BlinkzSec
2025-09-09 05:34:08http://74.194.191.52/rondo.sbx.shOfflinesh ua-wget BlinkzSec
2025-08-24 14:55:26http://74.194.191.52/rondo.lolOfflineelf ua-wget abuse_ch
2025-08-24 07:24:29http://74.194.191.52/rondo.xsj.shOfflineRondoDox sh ua-wget BlinkzSec
2025-08-18 14:34:24http://74.194.191.52/rondo.tkg.shOfflineDEU geofenced sh ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.armv6lOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.powerpcOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.sh4Offlineelf geofenced HUN mirai ext ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.fbsdamd64Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.mipsOfflineelf mirai ext ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.x86_64Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.fbsdi386Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.sparcOfflineDEU elf geofenced mirai ext ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.i686Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.mipselOfflineelf geofenced HUN mirai ext ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.arc700OfflineCHE elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.armv7lOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.armv4lOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.fbsdpowerpcOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.m68kOfflineelf geofenced HNG mirai ext ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.i486Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.i586Offlineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.powerpc-440fpOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.armv5lOfflineelf geofenced ITA mirai ext RondoDox ua-wget BlinkzSec
2025-08-11 15:11:05http://74.194.191.52/rondo.fbsdarm64Offlineelf geofenced mirai ext ua-wget USA BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-18 17:42:2460d814eed996f11b3cba89bf3c623beef71c3f824b3dc460b632ae91ca6f7922elfRondoDox
2025-11-02 18:09:46bb0069de1a2b09dab1947e8c9a7668c422a6fbc188b41d6808b23f5396766296elfRondoDox
2025-10-30 12:49:17f060cc5d9e4cf974b219dbead99a24b0d1482c5aebe88210018ec54727e3c997elfRondoDox
2025-10-22 21:57:47d59ee7e62c7a1fe52ab7fc649e6675eea2755a53d34f203aee0742a6261c1d7belfRondoDox
2025-10-21 16:18:57694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-10-14 23:35:42694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-10-09 11:21:2817be568b6b2acb3b237c6dc81b3692976bb83eea76a7a26fd405805d34901016elfRondoDox
2025-10-01 22:49:388fb9139e6b456df2ad035d597051e3bf28a4ce8b0f57b47761ec928d4a49b6dcelfRondoDox
2025-09-16 14:21:5025238642826b2cddf510638eaf28a0a4f5d79091595868d01a312b8e9670d9d6elfMirai
2025-09-14 05:31:46e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-09-12 20:52:42e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-09-12 08:57:27e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-09-09 03:10:06694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-09-02 19:25:05694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-09-01 08:42:16e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-31 07:57:45694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-08-27 02:25:54e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-24 16:54:08e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-24 08:16:52e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-23 02:10:39e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-22 08:38:50694608d38b05b9e2af7f3140545498baede355f91ee5a877928bec4009dce805html 
2025-08-22 07:47:33e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-22 07:31:35e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-22 06:45:22e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-21 04:53:31e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-20 19:01:41e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-20 07:03:47e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-20 01:46:59e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-14 08:26:131fba96811cbce9a3b4beb1e1a7d3f8815f4d5ce26ff7ed45af6605cdaa75bd71elfMirai
2025-08-14 08:26:07afc3df82a9cccd95a5d0f85eda9e8c4a74dbcd9400ba36f0373cbca41723eb9eelfMirai
2025-08-14 08:25:5430c0a6751274f43092475551dd6d854ad8b3560b1b83f717446a359da336840delfMirai
2025-08-14 08:25:186b2473dcd0969072f81ae5692d34f4c83195778cc76cc759f12bc0a4e5991e64elfMirai
2025-08-14 08:25:15b1da86210c9614e15c9924cdc047c1af6678931062f578ebf80c40d3c4ec2420elfMirai
2025-08-14 08:25:128bcdd2d3e2cc1024c0f0cd47e110e56abe66c5aaabe2f133c466c0a561a479afelfMirai
2025-08-14 08:25:05ee62ba350ea11f7f3d18db104eaa339ca21459c9e986859e356add6d95aa88b8elfMirai
2025-08-14 08:24:53a3af5e621fffe4e3e9da3ce84fe5363cf20566571da7c7bc546bf04b6b1a5d88elfMirai
2025-08-14 08:24:36f6f932a9c5538e728cb5379a3e9f25f329f659a321b803cd3ab452cc2a2188eaelfMirai
2025-08-14 08:24:17073f8c7a188f90025d074e9967c05bf1de285ca7ef107f415177501ae3ccbcdbelfMirai
2025-08-14 08:24:12a7f2879ba48b6c5eafbe0cac91859ee7705852d9c8d3e8daf82764cf20cff2ccelfMirai
2025-08-14 08:24:099424c99087c5ee58e153eb7e6ac57dad449093bee74ddeb12a5f1ca344a95a1eelfMirai
2025-08-14 08:24:057bcd2e83e2e9e364e5749faba1ad6c81b152c61d8b0e1218ece40f89a07d5c55elfMirai
2025-08-14 07:49:08aa56f5b1ac84921246a0adc4f4bfbfbbf8a2bdc0dc10cb1ed60db02da8b98e81elfMirai
2025-08-12 16:26:483bfc9ab9372f6719e585361e44e999432026b1948e6f5d23c2dce68f9d600046elfMirai
2025-08-12 16:26:469fb06f9f87f1db4cb8eaeac3804935e6edbe71eac2cfaab227b0da07ac62dd20elfMirai
2025-08-12 16:26:43c67e5edffca6b230236660c31b8689fddd67b77127f11827c12243a67082118celfMirai
2025-08-12 16:26:411c306b731ff5983fcf8effbf0c935f025b5cd9c7f59a9f7464fcaceb3621ed4delfMirai
2025-08-12 16:26:372a4c021eed57f148ab86f151cfdc30c9963b7ada7157550ae0334c368bf0d109elfMirai
2025-08-12 16:26:140e8c75c260f3e61faa02cbe9b33546b86ace79b89725124b6f10f1809fabe764elfMirai