URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2019-10-01 08:25:59 | 18.139.216.87 | cloudc1.previewtechs.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2019-07-01 06:18:14 | 18.139.20.95 | cloudc1.previewtechs.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2019-04-17 10:10:08 | 18.136.255.141 | cserver.previewtechs.net | Not listed | AS16509 AMAZON-02 | SG | no |
| 2019-10-26 10:00:58 | 209.99.40.222 | 209-99-40-222.fwd.datafoundry.com | Not listed | AS23005 SWITCH-LTD | US | no |
| 2019-10-27 09:45:50 | 209.99.40.223 | 209-99-40-223.fwd.datafoundry.com | Not listed | AS23005 SWITCH-LTD | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2019-04-17 10:10:08 | http://anb-product.com/wp-admin/GLmco-g6dy07MZA... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2019-04-18 20:00:47 | da6a4f6736fdc27c2450111f86b6c1d87ef69cd8544465381870accb54f1d852 | js | ||
| 2019-04-18 14:21:34 | 3f746e4a3ef98b041e6d69b9adae787c2b351e24ec3fc8cf150ddeaa44a4f293 | js | ||
| 2019-04-18 10:56:42 | 73da7ffa3619e3e8afbc2334219f1bd4be18b4128d835e2dfa9db8e3a9e239f5 | js | ||
| 2019-04-17 23:08:26 | 8b1b62324101cb93445ff7f6901e29fa08736ccb407948111e8babc53f3baea6 | js | ||
| 2019-04-17 17:00:23 | a0658a5b7ae031632d05aa301a55fddeaf02d97e90f79d18ded020999f9a5679 | js | ||
| 2019-04-17 16:23:24 | 26ed293e598bbbc392e9a279ca16107df3cae693344100e53b0b6868f3eab1c2 | doc | Heodo | |
| 2019-04-17 10:26:13 | fefb741d83c1183de4d36cd09ce6d8f0d8cdd650bb81fe850249dae9875477c4 | doc | Heodo | |
| 2019-04-17 10:10:06 | f6339ecff9972ad336d7f8205dca001b36969fa1fe9a0096ee6e4e0adc896b61 | doc | Heodo |
SG
US