URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 8.134.74.227
Firstseen:2025-07-31 08:52:04 UTC
Total malware sites :27
Online malware sites :0 (0%)
Offline Malware sites :27 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-31 08:52:10 8.134.74.227Not listedAS37963 ALIBABA-CN-NET- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-08-24 10:47:09http://8.134.74.227/RDPW_Installer.exeOfflineua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/test123.exeOfflineua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/test418.exeOfflineQuasarRAT ext ua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/Quasar.v1.4.1.zipOfflineQuasarRAT ext ua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/test1.exeOfflineQuasarRAT ext ua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/SharpWeb2.exeOfflineua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/powercat.ps1Offlineua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/Stager.exeOfflineQuasarRAT ext ua-wget BlinkzSec
2025-08-22 13:03:21http://8.134.74.227/SharpWeb.exeOfflineua-wget BlinkzSec
2025-08-22 13:03:18http://8.134.74.227/S123.exeOfflineDEU geofenced QuasarRAT ext ua-wget BlinkzSec
2025-08-22 13:03:17http://8.134.74.227/Server.exeOfflineDEU geofenced ua-wget BlinkzSec
2025-08-22 13:03:08http://8.134.74.227/ShellCodeFrame.exeOfflineua-wget BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/1/CoercedPotato.exeOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/1.exeOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/Client.exeOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/33.zipOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/gg4.htaOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/724.zipOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/exploit.pdfOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:35http://8.134.74.227/gg2.htaOfflinegeofenced ua-wget USA BlinkzSec
2025-08-01 14:58:08http://8.134.74.227/gg.jsOfflineua-wget BlinkzSec
2025-07-31 10:40:35http://8.134.74.227/SharpWeb3.exeOfflinemalware opendir stealer Joker
2025-07-31 08:52:34http://8.134.74.227/522.exeOfflinemalware opendir QuasarRAT ext Joker
2025-07-31 08:52:34http://8.134.74.227/Project1.exeOfflinemalware opendir trojan Joker
2025-07-31 08:52:34http://8.134.74.227/test.exeOfflinemalware opendir trojan Joker
2025-07-31 08:52:11http://8.134.74.227/33.exeOfflinemalware opendir trojan Joker
2025-07-31 08:52:10http://8.134.74.227/client.binOfflinemalware opendir QuasarRAT ext Joker

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-10-24 10:14:0448a1a559f2b229ea4b5ba68175663249ffc85f5ffc7d3ecf8fc4e270ffa513achta 
2025-10-19 03:59:51d06752ac8d7dc95c65e020cdd3f1a7161695c69daa1d477925fd93ae82a4dae6exe  
2025-10-14 18:09:41699cfb0909375793e6cad70131052e4aab85688ee8a98497b4b3e030492ef3behta 
2025-10-12 11:33:47c3cef0d64c1f62713be5b27d586af79e9bb65d8ba78117c951c758d421aa1038hta 
2025-10-08 23:26:461de2ba24e272c06abd291ce413b2f3d935285dc55463827549b22396f401aefdhta 
2025-10-02 15:13:3912e09180acdbd6e2620c333973c37aa66347503202015d47bbcf4f278d4461f7hta 
2025-09-25 15:31:3048c3c4f931c98912fa026ed9e4437cbcaa3087106f03f34b21a31cfbc3bb123dhta 
2025-09-22 16:04:447f078f8a025f5eecfc3e10cd21faf8d7cd3dd30f55c1ac0215a6d89b17e9ee79hta 
2025-09-21 21:57:55fc55229297d190df8296cb5c1cf825f45fe3707c057dd840689f2ec90d98735chta 
2025-09-21 15:41:5800be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-09-07 03:07:059a63a77e2604dd73cde4fb8e02af3d8416f49dca635ecab80b31a3e1a4dd4a7bhtml 
2025-09-06 17:06:1773b90d553465c596a0601dd3ec86067e1bcc10a60037577d0c74f7ab01a8a49ehta 
2025-09-02 20:39:589a63a77e2604dd73cde4fb8e02af3d8416f49dca635ecab80b31a3e1a4dd4a7bhta 
2025-09-01 08:03:5965e7379384f0debbb9dab01c7c3f9764d1f878b39ec3546ab273ca1d4730fafchta 
2025-08-31 07:55:1811da62138e7f93ad21217e884246c2341e5ffc8faab0b5f6b02205ff08fc6122hta 
2025-08-28 02:18:300e8c1bd6494bd82dc0f3ad1e21815f7348e1bfe412b7b0bcd22a58d523fd204bhta 
2025-08-24 10:47:09932bcf6c68e34fb99ffafb5ae62a1473fe761d961034cb5630dc3a9ba9155ccbexe  
2025-08-23 14:17:0700be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-22 13:05:55f350361892bcb6a2a60acc48b95c31790162516a3d58ba08c2474165f918faceexeQuasarRAT
2025-08-22 13:05:376e563017ca70274e96e179747af7693e751cdebcd9f1c39ac4978fd60ee646f5exe 
2025-08-22 13:05:04c55672b5d2963969abe045fe75db52069d0300691d4f1f5923afeadf5353b9d2txt 
2025-08-22 13:04:544cdeb2eae1cec1ab07077142313c524e9cf360cdec63497538c4405c2d8ded62zip QuasarRAT
2025-08-22 13:04:2921a8bab1166fba20c8e1e5a1b49ff40bd238a75c9049d23f7c83bf0169ab45ddexeQuasarRAT
2025-08-22 13:04:14532c703dcd32f84283b58f8710581b329525325d42c7c4b15a8575d1afc2d174exe 
2025-08-22 13:04:0172978ddc42b06d603ae186b6c4c4f9b13e09126589401bb602357a342f8fe34dexe 
2025-08-22 13:03:49b34734b85116c26310ca8bfe1347577c574ab2a7da4d5a3de4df86a933a726b5exeQuasarRAT
2025-08-22 13:03:1821a8bab1166fba20c8e1e5a1b49ff40bd238a75c9049d23f7c83bf0169ab45ddexeQuasarRAT
2025-08-22 13:03:16f7b9cc29232844bd1a25019f8cc3ab818dddf7f984343f81385313f3234650faexe 
2025-08-22 13:03:08fcee306cd9143b7ae24a69dc14da9aced1ba91aefc7139ccc0678cdd9e6076c4exe 
2025-08-19 13:34:358e55683b40b9f2d354eceac8b449be10a0e75a15b873e39ea1de389689b214e2hta 
2025-08-18 08:12:4300be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 12:14:3700be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35hta 
2025-08-11 18:12:1500be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35hta 
2025-08-08 09:46:45a9aa28b3eb31186e54758e78e64703d2f41f7b326bee187d26eadd0725a0d44fexe 
2025-08-08 00:05:10a13e4f5e885ff9dbfa3719fbb1821df0f0c97f020d93d50ebd34cba94bb4ee0ahta 
2025-08-04 11:32:13306ff415593caac9bcbafc07788fdd9c2710c4a32ae1badb8548aa0ea340efacexe 
2025-08-02 17:39:4768b297d80aa383884c5b1c657a8f05864912f5d38023317a5a0b8caacb55fa68hta 
2025-08-02 05:31:34255fd29ef29f7fa41053560b4e2cc0ab0b1ad88569138491f3d05184664590d2exe  
2025-08-01 23:17:17b8fee4437c65685d6404f630164ace8bdbdefefec1220f8c3dc4cbecba253805exe 
2025-08-01 23:12:5297e45607b33e6eef80425aea38d76adfb325bc30e8b857369a9f67c48616dde9exeQuasarRAT
2025-08-01 17:16:550db167394b1161fb398536218025b0874fb38267307ecd3767d3731efcec0ecahta 
2025-08-01 15:07:3367cc890f64d1cb42e3263c65092a49ed5bfa581acbece8206ea9edf0a15ac2a5zip  
2025-08-01 15:07:21cc0d485085cf6b766fd94f4dd4887b947de79aed10d4b2bc18f3fab393deadeahta 
2025-08-01 15:07:151410d8019510615750d29b4a45ec06ce493325118e228f3a1e49f09858c435a1zip  
2025-08-01 15:07:05f91d503e3752813ecc0f4766140e94e4cdcdb488c81df38dab786aa2ccdfaf2epdf 
2025-08-01 15:06:58fe4aa12d9d66e3601fa2e7a6330898105c9752df3426d60d8dcbce6afed04b0cexe  
2025-08-01 15:01:201d8cfc86c67301913a0e79c96630dab4260a1e1ff9d7f237e224a4b54a878969exe 
2025-08-01 14:58:084547034259b88032df989d2fdf11e4cdffa40d8c8963df3e05fa24e2ab381805js  
2025-08-01 11:52:35d4cb0622a934a48debb51b4f9ddb61f139cfe205a7a4a47ec3cf5e09d80f60c5exe 
2025-07-31 17:42:19d351b74eecc10bace9187414a58dbee901b0486c185a2473def879c0f789054dexe 
2025-07-31 11:19:52443d8cafe638ea6f159244454012efb33395fbda6b845e3c16f358768ee33cd2exe 
2025-07-31 08:52:08252db6cdc155093aadf5be0ab000b02626b6450c0d90e30c4610546605ccb505exe