URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: brownfilleds.duckdns.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-04-20 17:09:03 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-06-24 18:31:21 192.169.69.26sinkhole.hyas.comNot listedAS27323 SERVERSTADIUM- USyes
2021-06-24 14:44:07 195.133.40.19Not listedAS210976 TWC-EU- CZno
2021-06-20 04:06:50 52.221.185.109ec2-52-221-185-109.ap-southeast-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- SGno
2021-06-14 21:24:58 18.133.226.253ec2-18-133-226-253.eu-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- GBno
2021-04-26 12:37:53 3.36.94.247ec2-3-36-94-247.ap-northeast-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- KRno
2021-04-20 17:09:06 54.197.82.186ec2-54-197-82-186.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-06-25 14:59:05http://brownfilleds.duckdns.org/microB.exeOfflineAgentTesla ext Cryptolaemus1
2021-06-24 14:44:07httP://brownfilleds.duckdns.org/microA.exeOfflineremcos ext RemcosRAT ext James_inthe_box
2021-04-23 12:03:05http://brownfilleds.duckdns.org/xpertee.exeOfflineexe Xpertrat wato_dn
2021-04-20 18:33:06http://brownfilleds.duckdns.org/zedd.exeOfflineAgentTesla ext exe zbetcheckin
2021-04-20 17:09:06http://brownfilleds.duckdns.org/zeddd.exeOfflineexe rat RemcosRAT ext Xpertrat abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-06-24 14:44:0664d9ad7fa453939964d045971555233437f87c747989ff1d41f28b60258a4b97exeRemcosRAT
2021-05-05 11:31:1702650bdf290724edd38abc7e303ff74ca1fc7fba26f3f0dcead22cdce5b9b3faexeRemcosRAT
2021-04-26 16:05:497fa108a90029ccac4b3ca33b1df07f267d97b692b73a911ae343364bf3eea1ffexeAgentTesla
2021-04-24 21:05:516c3660bf20a2e8b08dd1419f6a1f12195e83d7064724e7de895d648d5063a72eexeAgentTesla
2021-04-24 21:03:4629a4c9380a91012be5a2b3659f9a4c46d0eca15c689a95707f78ccde9cd11f02exeXpertRAT
2021-04-24 21:03:164fc3343a611a3a6d5ae4347412d0d462733d2eb3f5236b5b2451a1d0d4076bc1exe RemcosRAT
2021-04-24 06:48:48af0249150bee4fec74c124f89019cd260c9aacd7b7a7715192b5097f1948eb82exeRemcosRAT
2021-04-24 06:39:445c32fd3de4bce60a2529cebc5f47b8a1562ea9bd22549f829b22b0533b32f79bexeXpertRAT
2021-04-24 06:37:035168c572e69b3f0a5742e12e645eeefedf6c00b377540fc9ce5cff38169ccb19exeAgentTesla
2021-04-23 14:07:56f5bbb2d019dbf6d8c23bf6e8346e2079c08c8c1e7329586bad691c07519f382bexe RemcosRAT
2021-04-23 14:03:251ca3cfc63c029b0d6a0d312cac86c5dc77e9efe86dd711a08e1f25d0ec62c366exeXpertRAT
2021-04-23 13:55:122a8c3b6a34d1a2d98c0a243555716f43f752e69eaf9a48b3cfbbc2cfc75e8dadexe AgentTesla
2021-04-23 12:03:05c9717d2b9c4eb9e99cfabeca61561f4fa1cd91c19a76f97a104010cb601f3553exe XpertRAT
2021-04-23 00:51:32fdd612b437c5f368d3293ff331c6fbe12cfcbbf03d8d31ba37b105aa42942997exeAgentTesla
2021-04-23 00:42:40974b3b9247ead5b640b495a96efba657ebee885fd25374e294ce55d7472ee402exeRemcosRAT
2021-04-22 23:26:19b9c52eaf3c179a2c71888b2809122e76e62af52803579f1859426c1c5a591e11exeAgentTesla
2021-04-22 23:08:1893e3956f268d38726acd19958a181d02feaea3e166b7e7d24d7a0c908141a4b2exeRemcosRAT
2021-04-22 07:08:2578a73a670179f73167eeb8cbef50159acabaafb10b3816e83b82096a80207342exeAgentTesla
2021-04-22 06:41:38980b7e35e43b7589eb7dec6571e43fb6d3589c17559ac14d80115f6b575fc60aexeRemcosRAT
2021-04-21 14:09:45001706c59174b47d3adb36f4d33ec09088af0f5899807e418a46d8747b07bab7exeAgentTesla
2021-04-21 14:00:12ad7352ddb27f165faa309916430d17aead69a6359f74d163c0c488bb551b3fb0exeXpertRAT
2021-04-21 07:36:10587eded992067de0dd280d6f85001be0956623bb0a4228b1893fa3cb52e58c49exeAgentTesla
2021-04-21 06:51:3059c441437848b229ccf0ea69598b83e3be1664779a9c7a71142e69fc73a005fcexeXpertRAT
2021-04-21 00:43:521bc32420315bf439659c6ca7426e068cb1acab9d5320006a40aeff025318893fexeXpertRAT
2021-04-21 00:43:3077e35466946687d1e8d68f36c5f321bf4f7cfc8571aca3fd3d0663844e304da6exe AgentTesla
2021-04-20 18:33:05b714625a4d4ac619a24cf3f88840c082ddccc7a2dd73a21b5c14936fc5b63d79exe AgentTesla
2021-04-20 17:09:059190802aebd14316ced550d2102f2650a2b4e3d08ec32e4c95ab722db7206e1fexeRemcosRAT