URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: banderu.us
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-02-11 09:54:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-11 09:54:13 198.54.114.189server120-1.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2022-02-08 06:04:06 99.83.154.118a51062ecadbb5a26e.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-11 09:54:13http://banderu.us/rdp.exeOfflineexe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-03-11 17:49:580d523274d47c33bc7218dbd4e3c2bc8d9f35cd295cccb3051df6566b0c8aada6exe  
2021-03-11 13:52:37e5b77db3b489a8c955683cc64e4c71df03b0462e1d8661dbd70013b1770e81b0exe  
2021-03-07 20:57:0333a19887efb64f91d54b93851e80467888ede4612c38a97fe3deaf1823d57558exe  
2021-03-07 08:37:01319b37298276ff36ff0d4c765c793c1e737e6d273022da995214526fcf8bd16bexe  
2021-03-05 13:42:0392e8f1946b355174717c6802fa1f9fac0d78b5b1acb6c41113fdd7d919222825exe  
2021-03-05 02:08:49c0fa85e30cc9a42cad4b8cc82b94044f7806e17fd07466e5355ea1e69de9a579exe 
2021-03-03 17:19:306f48e101007a2c4c4c5c80ce39f697f2958107c12ccfbc3ad521a7195ecceadcexe 
2021-03-01 10:04:20b0638f7b0304a3be813df68c557e90999820aa7018e279e88a19fff0c49f064aexe  
2021-02-28 04:37:53bc1aabf9dcff06da88c69403a1f791757c4e93c910d48a14c76194dbc3f7e5b0exe  
2021-02-26 00:49:1172fb1bfef6a4a8dd8e5104165ce1f5968602a3887ef4e7a1dcc13851cd2b6be1exe  
2021-02-24 18:16:3101aa5a74d5069ad0023efb9ef27f181d6c268842111250254b5b812f4f93a678exe 
2021-02-19 10:38:19cf5b509ae979c8ef242e36e999bfd4ab659f7ee75d777d41d14123022397c537exe 
2021-02-18 20:12:173f153a33f49aac45ce9cd42137015b239f46afae4073340d3aad977877d9b965exe 
2021-02-16 17:13:39a1d61a264f4e338c0f6fb4f98d58ae7bf573652dfb3bae779844a2c7bb34cd8fexe 
2021-02-16 13:56:50b41864bcaa9443f1e9cf6457b3f6d7702fd7fa3fbdaae79e3033f2c82bb70a38exe 
2021-02-14 20:58:5841609e0f1ff71e0b6421e8e3bfbac0307c0f5f80f9e1b3b60de547a54a80de51exe 
2021-02-13 22:27:32772dab859fd099f0c1373b3fb4fec7aaca42ed71daabe1d1a413e3c66cc4f14dexe 
2021-02-11 14:03:11a75b6f8ee56d8eaa809a7e7d265d9296f94524ddc2a1aac27284a7fb9947c915exe  
2021-02-11 09:54:138524ec166f99c15c47d3498db31df912b9f735ab341737421cf12032d00acaa7exe