URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 76.53.38.126
Firstseen:2024-05-23 19:29:05 UTC
Total malware sites :21
Online malware sites :12 (57%)
Offline Malware sites :9 (43%)
Newest active malware site :2024-05-24 05:33:36 UTC
Oldest active malware site :2024-05-24 04:28:10 UTC (Age: 2 years, 0 months, 13 days, 9 hours, 54 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-05-23 19:29:06 76.53.38.126syn-076-053-038-126.biz.spectrum.comNot listedAS20001 TWC-20001-PACWEST- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-05-24 05:33:36http://76.53.38.126:8090/sshdOnlineelf RacWatchin8872
2024-05-24 05:33:22http://76.53.38.126:8082/sshdOnlineelf RacWatchin8872
2024-05-24 05:33:21http://76.53.38.126:8085/sshdOnlineelf RacWatchin8872
2024-05-24 05:33:21http://76.53.38.126:8087/sshdOnlineelf RacWatchin8872
2024-05-24 05:33:21http://76.53.38.126:8888/sshdOnlineelf RacWatchin8872
2024-05-24 05:33:21http://76.53.38.126:8081/sshdOfflineelf RacWatchin8872
2024-05-24 05:33:21http://76.53.38.126:8086/sshdOnlineelf RacWatchin8872
2024-05-24 04:29:52http://76.53.38.126:8086//sshdOnlinebackdoor sshdkit abus3reports
2024-05-24 04:29:49http://76.53.38.126:8085//sshdOnlinebackdoor sshdkit abus3reports
2024-05-24 04:29:48http://76.53.38.126:8888//sshdOnlinebackdoor sshdkit abus3reports
2024-05-24 04:29:43http://76.53.38.126:8087//sshdOnlinebackdoor sshdkit abus3reports
2024-05-24 04:29:19http://76.53.38.126:8090//sshdOnlinebackdoor sshdkit abus3reports
2024-05-24 04:29:02http://76.53.38.126:8081//sshdOfflinebackdoor sshdkit abus3reports
2024-05-24 04:28:10http://76.53.38.126:8082//sshdOnlinebackdoor sshdkit abus3reports
2024-05-23 19:29:13http://76.53.38.126:8087/sshOfflineelf RacWatchin8872
2024-05-23 19:29:10http://76.53.38.126:8085/sshOfflineelf RacWatchin8872
2024-05-23 19:29:09http://76.53.38.126:8081/sshOfflineelf RacWatchin8872
2024-05-23 19:29:09http://76.53.38.126:8086/sshOfflineelf RacWatchin8872
2024-05-23 19:29:08http://76.53.38.126:8082/sshOfflineelf RacWatchin8872
2024-05-23 19:29:07http://76.53.38.126:8888/sshOfflineelf RacWatchin8872
2024-05-23 19:29:06http://76.53.38.126:8090/sshOfflineelf RacWatchin8872