URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 91.92.246.47
Firstseen:2023-11-19 06:58:04 UTC
Total malware sites :12
Online malware sites :0 (0%)
Offline Malware sites :12 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-19 06:58:06 91.92.246.47Not listedAS203410 COLOBIX- BGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-12-03 16:15:10http://91.92.246.47/kjox.exeOfflineAgentTesla ext exe abuse_ch
2023-12-03 12:55:11http://91.92.246.47/simoogn.txtOfflineAgentTesla ext abus3reports
2023-12-03 12:55:10http://91.92.246.47/4ygvd.txtOfflineAgentTesla ext abus3reports
2023-12-03 12:55:07http://91.92.246.47/simiz.jsOfflineAgentTesla ext abus3reports
2023-12-01 09:23:05http://91.92.246.47/idew.jsOfflineAgentTesla ext ascii abuse_ch
2023-11-30 09:50:07http://91.92.246.47/jnatuT.jsOfflinejs abuse_ch
2023-11-30 09:49:05http://91.92.246.47/nigxo.jsOfflinejs abuse_ch
2023-11-27 11:27:05http://91.92.246.47/afriq.jsOfflineAgentTesla ext abuse_ch
2023-11-27 06:54:05http://91.92.246.47/wxing.jsOfflineAgentTesla ext js abuse_ch
2023-11-27 06:54:05http://91.92.246.47/4satry.jsOfflineAgentTesla ext ascii js abuse_ch
2023-11-27 06:51:06http://91.92.246.47/3tuvq.jsOfflineAgentTesla ext ascii js abuse_ch
2023-11-19 06:58:06http://91.92.246.47/afkjox.txtOfflineAgentTesla ext ascii Encoded abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-12-04 08:18:52e90908743d65dab58865b9019ed88ab9b61b33d691f13960ed4f51fb09b40238unknown  
2023-12-04 08:10:337a3cdc80acd4828c9a978cc4f7ff9b5f79895c39e85f29c97d8dc158ec897007unknown  
2023-12-04 08:09:34adfa25ebfb43642c0e034273bcda5e64ba2e6f143ca113cba0d8d3fdeb1ccf7eunknown  
2023-12-03 16:15:1018ff7446c538ea6c96f148a12b2a214f9823d7e4061c2f3d350cd81e6a8de8c5exeAgentTesla
2023-12-03 12:55:1158b9ab1353650ba3bb2daa10ab6f727fac1831e2a6b28440ebd696ca737fa9c3txt AgentTesla
2023-12-03 12:55:10ff38e8ad0c61c38881cea12d0a028e14ca9e907c06d97993b801f5e3afa599fatxt AgentTesla
2023-12-03 12:55:07696c0bd662e49bdba3a2491286ca18522cf681e5c38458e692a6da68906295afunknown  
2023-12-01 09:23:05a0c15760671b70b87efca7052ef48fb36f702bc97d4236c0a0f904b8f6547386unknown  
2023-12-01 07:06:10c74b4a057f10996a1bbfdda6ddc87283e7202a1e3f8ac4c563e110b793564defunknown  
2023-12-01 06:52:21c515cd35cb018485608115d2f6357e06c90fc169fef2f71fb9a1c21c7a9c2c6eunknown  
2023-12-01 06:48:248b081204158fd05c592b011f00c51be075eeafb4cb92bf2c8f4e773519a27ea4unknown  
2023-11-30 09:50:0731945b24ae3b59e4b7cc7da85d63f11eb5b59b67f901c4aec2947e0c35498beaunknown  
2023-11-30 09:49:05130b96ddb5c23bb88249f014928a46809aa0a6d2e7c66a90f7a9f5d60c1de0b2unknown  
2023-11-29 14:11:047eac15326f74d5d01d5e5b8f6f9d37b201cab9b34c8e3b81c95f49be96b50436unknown  
2023-11-29 13:56:40f1a6ec983635a0843830fa27c89021a9c7ce8531629bb600521879c196f52b3aunknown  
2023-11-27 11:27:05f4dc8b79421aa0047b5475ff67f1e357f329bc19d9165d23d3aee4a49e96c87funknown  
2023-11-27 09:57:3559af2921c60ac2a2019c4906929a63cf815b2decbc1dca744b3ee365325f431dunknown  
2023-11-27 09:54:403b15e80745d77ea0978adab892616ef94a6a28954c50864742a79b10ea2e850aunknown  
2023-11-27 06:54:05cba2aead157862b248d2415432df76c6859c95fe1e4aa6208a30f670963b3b7bunknown  
2023-11-27 06:54:0527f3ae678150a420f59f342a54d31196c16982dc101b4c346857147e66b954d7unknown  
2023-11-27 06:51:065f57cbb48d911fda81730edc42b0c674a7837fd5420662591ae42ae3ad52c35dunknown  
2023-11-19 06:58:06a9d6ef9be953a4b1cea43611c15eab7f654237ae2e43839aa542f71510dd5642txt AgentTesla