URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: boyama.medyanef.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:34:53 UTC
Total malware sites :15
Online malware sites :0 (0%)
Offline Malware sites :15 (100%)
A record(s) observed :15

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-17 18:52:09 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-17 18:52:09 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-24 07:58:24 104.21.69.213Not listedAS13335 CLOUDFLARENETn/ano
2025-09-24 07:58:24 172.67.213.94Not listedAS13335 CLOUDFLARENETn/ano
2025-11-05 03:09:18 188.114.96.12SBL687667AS13335 CLOUDFLARENETn/ano
2025-11-05 03:09:18 188.114.97.12SBL687666AS13335 CLOUDFLARENETn/ano
2025-07-23 15:16:10 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-07-23 15:16:11 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-07-23 15:16:11 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-07-23 15:16:11 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-11-25 11:05:06http://boyama.medyanef.com/vendor/phpunit/phpun...Offlineexe MassLogger ext ffforward
2020-11-24 13:10:04http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe zbetcheckin
2020-11-24 13:06:03http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe zbetcheckin
2020-11-24 13:04:10http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe zbetcheckin
2020-11-24 13:04:07https://boyama.medyanef.com/vendor/hamcrest/fil...Offlineexe zbetcheckin
2020-11-24 13:04:03http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe zbetcheckin
2020-11-24 13:04:03http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe zbetcheckin
2020-11-24 10:03:05http://boyama.medyanef.com/vendor/phpunit/phpun...Offlineexe MassLogger ext ffforward
2020-11-20 09:52:05http://boyama.medyanef.com/vendor/hamcrest/file...OfflineAgentTesla ext exe ffforward
2020-11-17 06:51:06http://boyama.medyanef.com//vendor/hamcrest/fil...OfflineAgentTesla ext exe abuse_ch
2020-09-02 08:01:04http://boyama.medyanef.com/vendor/league/fracta...OfflineAgentTesla ext exe zbetcheckin
2020-09-02 07:56:13http://boyama.medyanef.com/vendor/league/fracta...OfflineAgentTesla ext exe zbetcheckin
2020-09-02 07:56:13http://boyama.medyanef.com/vendor/league/fracta...OfflineAgentTesla ext exe zbetcheckin
2020-09-02 07:56:09http://boyama.medyanef.com/vendor/league/fracta...OfflineAgentTesla ext exe zbetcheckin
2020-09-02 05:43:22http://boyama.medyanef.com/vendor/league/fracta...Offlineexe Raccoon ext RaccoonStealer ext malware_traffic

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-11-25 11:36:22e95d8b2d7c80f9b47d7c3fb368256962c357404e85f45701a473b6354ca18133exeMassLogger
2020-11-25 11:05:0631b06ca8f90f735bd3b209e576db1da2a5ab7f661b58f85eaabcde2181978003exeMassLogger
2020-11-24 13:26:25c31f631ead975ccd2ce2e02438b68e797a8d7e0f8e2ad064ecaa0ccba90c4ea0exe AgentTesla
2020-11-24 13:25:080027d8abcbe9fd87e9fbba48282723165cf06285b2b767cd60d3ae16688d02a4exe AgentTesla
2020-11-24 13:16:544febb829ea64f4c793d23cb3813aa33d46e620c451d7721b7eb982a873a71bf4exe AgentTesla
2020-11-24 13:10:04559599c95e2829cf5c4e8160a0b0af34e8f0d884e86a5457069e8f3342a9ed99exeAgentTesla
2020-11-24 13:04:10d4ef2bce3ac22813cdd4a6db95a9c74a8038c5a6f91e480544385b68c8dce8caexe AgentTesla
2020-11-24 13:04:07664ed6ed7e3992bdf022771e85f3ccf0930649b105cfe38c6fd1adad75f3b479exe 
2020-11-24 10:03:05b25aeadf9b7a24092bf9cc73be9f45ccfa08ac94c5a883aff2d8d8a5df68ffd9exeMassLogger
2020-11-20 09:55:22664ed6ed7e3992bdf022771e85f3ccf0930649b105cfe38c6fd1adad75f3b479exe 
2020-11-17 06:51:06559599c95e2829cf5c4e8160a0b0af34e8f0d884e86a5457069e8f3342a9ed99exeAgentTesla
2020-09-02 08:01:0480d8a172aae4789eba63d2f7399fc004c4e9c664115bc2fe6922401bf04b61e1exe AgentTesla
2020-09-02 07:56:136df497550f7e37acd32c4cc6d7572612ecc46bc51e826b534be0b4187dd43962exe AgentTesla
2020-09-02 07:56:132c6aa8d5fd233661b6d8c0130af1a0c63539aae4c05fb03d74859ebeec3b7cc6exeAgentTesla
2020-09-02 07:56:09f625256edcb3e5fc1cd8241f8a699d611c9c9adf5be08ba82220b175c7474497exe AgentTesla
2020-09-02 05:43:22c91e2df02ad2c8ccadc96054bceee4422382caa62d443e2633a003e4ce5c7476exeRaccoonStealer