URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 93.123.39.223
Firstseen:2024-03-19 09:50:06 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-03-19 09:50:09 93.123.39.223Not listedAS213702 QWINS-LTD- EEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-05-23 07:13:38http://93.123.39.223//fucked/service.vbeOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:37http://93.123.39.223//atest/s%20-Zn--%20-S.exeOfflinegeofenced trojan ua-wget USA xworm abus3reports
2024-05-23 07:13:37http://93.123.39.223//fucked/mmc.vbeOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:37http://93.123.39.223//atest/testr35tgjhjg.batOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:37http://93.123.39.223//fucked/afile.vbeOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:37http://93.123.39.223//atest/754abcd6.batOfflinegeofenced trojan ua-wget USA xworm abus3reports
2024-05-23 07:13:37http://93.123.39.223//fucked/showtime.vbeOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:37http://93.123.39.223//atest/retf543.batOfflinegeofenced trojan ua-wget USA xworm abus3reports
2024-05-23 07:13:09http://93.123.39.223//atest/test.pdfOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:13:06http://93.123.39.223//fucked/java.exeOfflinegeofenced trojan ua-wget USA abus3reports
2024-05-23 07:12:05http://93.123.39.223/random/ServiceHost.batOfflineGeneric trojan abus3reports
2024-04-21 18:30:23http://93.123.39.223/atest/testr35tgjhjg.batOfflinebat exe abus3reports
2024-04-21 18:30:18http://93.123.39.223/atest/s%20-Zn--%20-S.exeOfflinebat exe xworm abus3reports
2024-04-21 18:30:18http://93.123.39.223/atest/retf543.batOfflinebat exe xworm abus3reports
2024-04-21 18:30:17http://93.123.39.223/atest/754abcd6.batOfflinebat exe xworm abus3reports
2024-04-21 18:30:13http://93.123.39.223/atest/test.pdfOfflinebat exe abus3reports
2024-04-21 18:29:07http://93.123.39.223/fucked/showtime.vbeOfflinevbe abus3reports
2024-04-21 18:29:06http://93.123.39.223/fucked/afile.vbeOfflinevbe abus3reports
2024-03-19 09:50:13http://93.123.39.223/fucked/service.vbeOfflinevbe abus3reports
2024-03-19 09:50:10http://93.123.39.223/fucked/mmc.vbeOfflinevbe abus3reports
2024-03-19 09:50:09http://93.123.39.223/fucked/java.exeOfflineexe xworm abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-10-06 11:37:56e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-10-03 10:19:32e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-09-21 15:04:53e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-09-13 14:03:47e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-23 02:50:33e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2025-08-15 09:56:58e480c5556efd90bf1c71eb9a645ad1c7c31b2610f68aec7ac57a28218446484chtml 
2024-05-23 09:51:23b86c86fa3321ed97a4e5b0346dd482fcb910cbe8e996e46b125db3b5a58f790cexeXWorm
2024-05-23 08:36:56e3417059a68bc5315d45d3738e9621eeaef84300e4a53a8cde1bc6bc876b1291unknown  
2024-05-23 08:13:14e97f569b9e8e06d70d0bfdeb9abe305074c13d1a65f58ff47a5810d8354b3bc3unknown  
2024-05-23 08:08:09eb9813c264d7fa7b04eeeddbff3c011c23f279dab97bc072e4aeb021f1be6544exeXWorm
2024-05-23 08:05:3432542fff356938d1481bae2941831378c5b98ad4b9779668d954b444ef6a9d72unknown  
2024-05-23 07:57:16f10fa6d4cbdea6c1ad9d525443364dab31e7698a09a92eaed6b88a3c90af9d76unknown  
2024-05-23 07:53:393e893a539cde432c0675778be08a42741aab98cb837d4c4a64236fdebf4c44c7exe 
2024-05-23 07:48:18fd733056fe23c1d58de2178610834b5633dea41bd19f08063cff06a3732e9221exeXWorm
2024-05-23 07:13:09ec5a2996d87c1aaa592686e680b29935eb290a8ecd36b4d5644c368e2ed12a5fpdf  
2024-04-21 18:30:233e893a539cde432c0675778be08a42741aab98cb837d4c4a64236fdebf4c44c7exe 
2024-04-21 18:30:18eb9813c264d7fa7b04eeeddbff3c011c23f279dab97bc072e4aeb021f1be6544exeXWorm
2024-04-21 18:30:18fd733056fe23c1d58de2178610834b5633dea41bd19f08063cff06a3732e9221exeXWorm
2024-04-21 18:30:17b86c86fa3321ed97a4e5b0346dd482fcb910cbe8e996e46b125db3b5a58f790cexeXWorm
2024-04-21 18:30:13ec5a2996d87c1aaa592686e680b29935eb290a8ecd36b4d5644c368e2ed12a5fpdf  
2024-04-21 18:29:07e3417059a68bc5315d45d3738e9621eeaef84300e4a53a8cde1bc6bc876b1291unknown  
2024-04-21 18:29:06f10fa6d4cbdea6c1ad9d525443364dab31e7698a09a92eaed6b88a3c90af9d76unknown  
2024-04-05 00:07:3932542fff356938d1481bae2941831378c5b98ad4b9779668d954b444ef6a9d72unknown  
2024-03-19 12:03:566530d544994d01308081994f29b89f1c45cb29eeb20e428bc0e7543c9a217472unknown  
2024-03-19 09:50:13e86016a3c627db2de239d15eb4a71ba609a599895aad0c66b9a414e4c2b32725unknown  
2024-03-19 09:50:10e97f569b9e8e06d70d0bfdeb9abe305074c13d1a65f58ff47a5810d8354b3bc3unknown  
2024-03-19 09:50:084a79ea105c344a1916a423bd62d7d591e3ca4dec7df2dca8f1fd7d27bc905fd1exeXWorm