URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 09:28:51 | 76.76.21.21 | SBL688052 | AS16509 AMAZON-02 | US | yes | |
| 2021-02-10 00:49:45 | 13.248.216.40 | afdda383cf24ec8c3.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2021-01-18 06:22:03 | 34.206.12.234 | ec2-34-206-12-234.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2021-01-18 06:22:03 | 54.208.77.124 | ec2-54-208-77-124.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | no |
| 2021-02-10 00:49:45 | 76.223.65.111 | afdda383cf24ec8c3.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2021-01-18 06:22:03 | 35.169.58.188 | ec2-35-169-58-188.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2020-09-23 09:53:04 | 160.153.210.198 | 198.210.153.160.host.secureserver.net | Not listed | AS20773 GODADDY | US | no |
| 2020-09-15 18:24:34 | 104.18.52.194 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2020-09-15 18:24:34 | 104.18.53.194 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2020-09-15 18:24:34 | 172.67.174.143 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-09-15 18:24:34 | https://btqonline.com/websiteguide/swift/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-09-15 19:14:13 | ae651bbc1bb9cb216ddeae09b03346aa86c991c00d59ad680a83343eac0d4da2 | doc | Heodo | |
| 2020-09-15 19:10:13 | 81834b464c9d4cf11ffc357df7e18071f8e5d8f62d182e997059da665294a8b2 | doc | Heodo | |
| 2020-09-15 18:41:48 | c8410c8dd820bc1e8805ba93260cd2fb0f7707d75573915bdb97ea2a01b66ea8 | doc | Heodo | |
| 2020-09-15 18:24:34 | 567b914c19e54fb78b9c487868550a0ead98ccc21e1f640d571b7d98ad1e13b1 | doc | Heodo |
US