URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | 87.120.113.91 |
|---|---|
| Firstseen: | 2024-12-27 13:51:03 UTC |
| Total malware sites : | 2 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 2 (100%) |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2025-01-18 19:14:05 | http://87.120.113.91/chrome.exe | Offline | exe PureCrypter | |
| 2024-12-27 13:51:06 | http://87.120.113.91/image.exe | Offline | DarkVisionRAT DBatLoader |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2025-01-18 19:14:04 | b363a0f2509e9f7b9c050c829633a6b9684f68b7b4bb4e89e6387f0df94ee680 | exe | PureCrypter | |
| 2025-01-07 15:26:58 | 87bd876ce006ac681bdc03bb01449c6444f93f8ddf147c6af6b8e1275e3949e9 | exe | DarkVisionRAT | |
| 2025-01-07 10:52:44 | 80bd5d37d851dc02ff3777786a27575787ff6742839ddbe451403c6939f56a9f | exe | ||
| 2025-01-06 07:44:12 | 939c125accb6e2f939bc239c45d3ead938a0c0bcd63d77fbde11ed96ed1a1c76 | exe | DBatLoader | |
| 2025-01-02 14:22:05 | 155854758b79cdee58f7df5c1a4a07d3b19b3d64a0a58b2e8faf6d8b67042f3c | exe | njrat | |
| 2025-01-02 09:52:37 | 200566dea238327c1f05f8216f0ae1e991d01e48a6f3fd7cd6c645f911c4da95 | exe | ||
| 2024-12-30 12:17:26 | f96c269716f360aa2fbb1926dda79c3ff47ea7d8ec6615cde06b205d28400f79 | exe | DarkVisionRAT | |
| 2024-12-30 05:47:04 | 887a49ba65548dfe2e4cd6abcf1d106adf2c63c3c6978f55f157597ab90cd235 | exe | ||
| 2024-12-27 13:51:06 | bbb59f158a76d0b043c7d050bba4c4ad82b94d383f9db265119a24360d7279e4 | exe | DarkVisionRAT |