URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 22:38:39 | 3.255.48.233 | ec2-3-255-48-233.eu-west-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | IE | yes |
| 2025-04-27 22:38:39 | 52.215.95.29 | ec2-52-215-95-29.eu-west-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | IE | yes |
| 2025-04-27 22:38:39 | 54.194.127.198 | ec2-54-194-127-198.eu-west-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | IE | yes |
| 2019-02-26 21:04:12 | 112.78.112.171 | www1831.sakura.ne.jp | Not listed | AS9371 MAINT-JPNIC | JP | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2019-02-26 21:04:12 | http://aya-craft.jp/templates/jsn_epic_pro/elem... | Offline | exe Ransomware Troldesh |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2019-03-04 23:52:29 | 400295a3f7672579a747ee9d78dd601e023d1d5fffef4358d1473b82eac6cd92 | exe | Ransomware.Troldesh | |
| 2019-03-04 20:14:38 | 70bedd8eddd7b0a1d49fdfe8ab46e1f95b3d62c54432b29c9ed7a6f03884902a | exe | Ransomware.Troldesh | |
| 2019-03-04 12:36:32 | df4a138c802d091e14fa70817b569b2c9a242350f89adabc5677cc605bd342c5 | exe | Ransomware.Troldesh | |
| 2019-03-04 06:59:31 | a1271c366e91dbc3a7f0d6b4b2c1873019056786219c14ad12185ad115771632 | exe | Ransomware.Troldesh | |
| 2019-03-04 00:20:04 | 9fd117a49c72a3a351a8ebdb81b4a4d112884fc2fcf2506910c3e353f4237f8d | exe | Ransomware.Troldesh | |
| 2019-03-01 08:13:00 | 391a3defc2f9ec2de3e163e6f5655e5580d8390bcc156075b6fbc7caefe131e0 | exe | Ransomware.Troldesh | |
| 2019-03-01 00:39:43 | 80febde88e93687893fee2cc8f25b95873a6c7ea673f2cd13fa0bbbab5f7d4df | exe | Ransomware.Troldesh | |
| 2019-02-27 10:03:47 | c08517e00079c82b6fbe91e9a57409c7c5d2d72556cdf9ff7f84488ac3aa58e6 | exe | ||
| 2019-02-26 21:04:11 | 73c904d658efa66370dfe8ec83a39c3038343b03e5509fa3280c85bd76790b32 | exe | Ransomware.Troldesh |
IE
JP