URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: augustair.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-11-19 08:02:03 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 15:25:52 185.146.167.193Not listedAS48254 TWENTYI- USyes
2020-11-19 08:02:05 206.130.99.140sl-508-26-shared.slc.westdc.netNot listedAS13213 UK2NET-AS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-11 05:38:07http://augustair.com/Resources/eft/edi.exeOfflinebitrat ext RedLineStealer ext RemcosRAT ext AndreGironda
2021-08-05 05:38:11http://augustair.com/log/remit/edi.exeOfflineRemcosRAT ext AndreGironda
2021-07-14 06:24:10http://augustair.com/log/remit/mail.exeOfflineremcos ext RemcosRAT ext AndreGironda
2021-02-18 06:29:04http://augustair.com/log/remit/edi.jsOfflinejs rat RemcosRAT ext abuse_ch
2020-11-19 08:03:03http://augustair.com/log/remit/edi.vbsOfflineRemcosRAT ext vbs abuse_ch
2020-11-19 08:02:05http://augustair.com/log/remit/edi.jpgOfflineEncoded RemcosRAT ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-09-23 22:40:5919f7f97c17580f22d17edc3e01639286a09eb587863dd298aebee46125bf5307exeRemcosRAT
2021-09-14 22:17:243eff13340e0b34b34a87485ef702924b8b80fa506f120c297c8474c3afcc2c85exeBitRAT
2021-09-13 18:16:42f193f6876576b6969474c670850280a89df1091b0abfea162d74b98483c7314dexe RedLineStealer
2021-08-24 17:15:2054d90bf7f12a3b1369e8ef4f708a58fed9d7950e1a87c9d5d805b974a148ce9eexeBitRAT
2021-08-17 18:59:3829dd2b13f081a0c7f8312c4b4c433ccdcc3b3a83b91a16a88393370dda44f60bexeBitRAT
2021-08-16 16:19:4971c81318d16023aba7c537168d68b7d87eeeb085725d0904c3ea7298fc43d7e8exeBitRAT
2021-08-12 18:42:329d077371cd1d6dc2b8b337d0bc978afb1e910a947bb0e14c15a37c70c745704cexeBitRAT
2021-08-11 23:31:58bf6b69cb7063d748e6404300ed8b587473b20b2239605862ccbec909bccf7485exeBitRAT
2021-08-11 06:29:12730cad1b268ed70bf04cd6b94439813a6483b69732420a6748a868376c08bea2exeRemcosRAT
2021-08-11 05:38:076d7fac5d7bfe833eb0756a174ceb9ea8280cd3f9858215924284af1b559bd81fexeBitRAT
2021-08-11 04:01:22730cad1b268ed70bf04cd6b94439813a6483b69732420a6748a868376c08bea2exeRemcosRAT
2021-08-05 05:38:11ded1412f9509d9fbc0c48687c3611d6cd8356ff0f00a9a2c5836890a5df03925exeRemcosRAT
2021-07-27 19:58:146575fa393fb6628051e380e29e2933ceceb9099e1d6378ac2b137478b732ab5aexeRemcosRAT
2021-07-27 19:24:11f980b2377c9cd2ff4415608fff97031062be1788bfd981ae55f9e92c4985ada4exeRemcosRAT
2021-07-15 00:59:000b1970568987b6e2a949dde9d4e249d704cbfaf622c80741db02dd711838abffexeRemcosRAT
2021-07-14 06:24:1038520db387146a005345d7862edcd4a22d3b4db1c7ae863202fa60b0eab42166exeRemcosRAT
2021-04-04 23:28:5027b32d0375a6aff4ae330d9a574dfcc17d14f37b6adea3727d337388585b2483txt  
2021-03-17 06:14:4949be31aeff0dd112d067ce1eb1b8d3b2f5cc9ad0d9ed903ed0565fb51a4bd23btxt  
2021-02-25 11:31:537d0a476538855ebcd55313366a753d89566c40712d5c522575f424ef61c3d81ftxt  
2021-02-17 21:28:530287c3b3799b18a86c95d279802562dcfc493a5b9fed6938c8b9c4a9224fcd29txt  
2021-02-10 06:34:2981a73957e44bfadbef17d234c592b261dbe9a5c828ad8c99547cc82547914018txt  
2021-02-04 23:06:0747909d7b5ccde1376d77acc283653ec760000ec9041a5ad1997d05c94586ea2atxt  
2021-01-29 00:07:441e3219f6a22bcd8194eefbac02f05c063aedf77196b25d52461dd81d878bf2c2txt  
2021-01-27 04:07:53f34aba4ec6ef12489570885c37d16336d39babb89d476bbe86a331890916cb74txt