URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-11-21 19:08:40 | 100.21.16.7 | ec2-100-21-16-7.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-11-23 15:53:15 | 44.229.202.122 | ec2-44-229-202-122.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-11-21 19:08:40 | 44.240.211.184 | ec2-44-240-211-184.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-11-21 19:08:40 | 52.39.194.67 | ec2-52-39-194-67.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-19 14:35:26 | 34.218.113.30 | ec2-34-218-113-30.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-19 14:35:26 | 44.255.154.90 | ec2-44-255-154-90.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-19 14:35:26 | 54.213.95.116 | ec2-54-213-95-116.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-19 14:35:26 | 54.68.32.168 | ec2-54-68-32-168.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-11 00:26:01 | 100.20.211.252 | ec2-100-20-211-252.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-11 00:26:00 | 34.217.168.113 | ec2-34-217-168-113.us-west-2.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-12-30 17:57:04 | http://academiafriedman.com/micheldomit/local/c... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-12-30 18:06:33 | b069777bc25c9afba5d6e9a7f25e8042c6de53dd0c82deff0df162c44c61a1a0 | doc | Heodo | |
| 2020-12-30 17:57:04 | 6dca5a2a6230eff6ce29c5dfebd77bb4eb68e4c6d774f8b9e2bc95c013cbded3 | doc | Heodo |
US