URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bomx.xyz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-08-09 05:06:03 UTC
Total malware sites :9
Online malware sites :0 (0%)
Offline Malware sites :9 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-14 09:20:47 13.248.169.48a904c694c05102f30.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-10-14 09:20:47 76.223.54.146a904c694c05102f30.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-27 11:18:46 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-04-27 11:18:46 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-08-09 05:06:03 185.239.243.112ns1.20mb.nlNot listedAS212238 CDNEXT- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-11 06:57:03http://bomx.xyz/blaqzx.exeOfflineAgentTesla ext exe abuse_ch
2021-08-10 13:33:03http://bomx.xyz/bigshoezx.exeOfflineAgentTesla ext exe SnakeKeylogger ext abuse_ch
2021-08-10 13:33:03http://bomx.xyz/arinzezx.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-08-10 13:32:03http://bomx.xyz/ejikezx.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-08-10 13:24:05http://bomx.xyz/templezx.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-08-10 13:09:03http://bomx.xyz/sunnyzx.exeOfflineSnakeKeylogger ext James_inthe_box
2021-08-09 11:40:04http://bomx.xyz/assadzx.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2021-08-09 05:51:09http://bomx.xyz/usermasabikx.exeOfflineAgentTesla ext exe abuse_ch
2021-08-09 05:06:03http://bomx.xyz/mazx.exeOfflineexe Formbook ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-11 10:11:50a3ae6227d7e27a44c9bf4db3a2de495922fa0d013ba77c0eccd935253bafa89cexeSnakeKeylogger
2021-08-11 07:18:21f9d59fe75c94003f801899a3f569514dec3f125792a96722e9cc29919f37063dexeAgentTesla
2021-08-11 03:13:59474f66d3344f0a29d6484ab7de9e11e6a293a5d5c719508c91b9bc7d673ce545exeSnakeKeylogger
2021-08-11 02:07:06805396fbeda73fc0b950131a9091fefe9df45ab56ae6e6bb47c2fa3c4779f52bexeSnakeKeylogger
2021-08-10 13:42:060e77d367c706963bb393e99c935c129c66e0f71d70f5836b4abc9c8b91a25425exeSnakeKeylogger
2021-08-10 13:39:574ac9b6a9a2e4787dcf2f85ac31200933d3e3a01b9a0410c13ffc46277a1d3a16exeSnakeKeylogger
2021-08-10 13:32:03118c359597e28e97538cdfc872032e8879955ec1168dffadd7a04bc8f703732fexeSnakeKeylogger
2021-08-10 13:26:329c52db7859362b52c325ce724f2edbee2b954a1f9e9bf1f98ae0830abeabe8dcexeSnakeKeylogger
2021-08-10 13:24:05f9c99819e882b21b76cf3397677ec58d55243ef1852c3105a3e324c4cf60dafdexeSnakeKeylogger
2021-08-10 11:03:20334573b5d45dae9447050cc038264568ae3309ee64904d11ebeffeba2027cc53exeSnakeKeylogger
2021-08-10 02:37:162f884ea5e0db8834637e6a97e1a3835d6b205f084b482a15c618989d777a1231exeSnakeKeylogger
2021-08-10 01:57:240ea81e325568a6d5c8ecde8ce0198dabe9553e237ef46b328240d7f51231d3bbexeFormbook
2021-08-09 11:40:04aacc4ffd4879c92125c613f8a8abd7ab81789581d2305e162efbca3ce23ac180exeSnakeKeylogger
2021-08-09 05:51:0925d00c1061f3eef8b3deed088a7128fff1d1f86bd03ac216d5d668a48525f480exeAgentTesla
2021-08-09 05:06:037240d57a675a066d7dcb095a520ec2b86c2460080ccfbc759a9d404dec7d3817exeFormbook