URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: acacaca.org
Domain registrar:Webnic -
Domain registration date:2022-06-05 18:56:22 UTC
Abuse complaint sent to registrar: Yes (2022-09-16 15:22:09 UTC to compliance_abuse{at}webnic[dot]cc)
Domain registry:Public Interest Registry -
Abuse complaint sent to registry: Yes (2022-09-16 15:22:09 UTC to abuse{at}pir[dot]org)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-08-28 07:17:04 UTC
Total malware sites :1
A record(s) observed :97

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-08-28 17:03:03 95.107.163.44cpe-static-95-107-163-044.tring.alNot listedAS47394 ASC-AL-AS- ALno
2022-08-28 07:17:35 190.140.74.43Not listedAS18809 Cable_Onda- PAno
2022-08-28 11:40:31 37.34.248.24Not listedAS42961 GPRS-AS- KWno
2022-08-28 10:32:17 185.95.186.58Not listedAS34515 NextNet-AS- IQno
2022-08-28 09:06:40 211.53.230.67Not listedAS3786 LGDACOM- KRno
2022-08-28 07:17:35 211.171.233.129Not listedAS3786 LGDACOM- KRno
2022-08-28 11:29:46 211.119.84.112Not listedAS3786 LGDACOM- KRno
2022-09-17 10:24:13 190.147.188.50static-ip-cr19014718850.cable.net.coNot listedAS10620 Telmex_Colombia_S.A.- COno
2022-08-28 11:29:47 181.197.121.228Not listedAS18809 Cable_Onda- PAno
2022-08-31 11:13:11 151.251.24.5Not listedAS13124 A1BG_RSD- BGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-08-28 07:17:35http://acacaca.org/files/1/build3.exeOfflineexe geofenced USA abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-09-13 15:48:178d7f0e6b6877bdfb9f4531afafd0451f7d17f0ac24e2f2427e9b4ecc5452b9f0exe