URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: buyer-remindment.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-14 17:42:03 UTC
Total malware sites :41
Online malware sites :0 (0%)
Offline Malware sites :41 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-07-13 23:12:09 99.83.154.118a51062ecadbb5a26e.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2021-07-14 17:49:20 208.83.69.35ignignokt.mudkips.netNot listedAS22438 CLEAR-RATE-COMMUNICATIONS- USno
2021-07-14 17:49:19 128.199.243.169Not listedAS14061 DIGITALOCEAN-ASN- SGno
2021-07-14 17:49:20 163.172.213.69163-172-213-69.rev.poneytelecom.euNot listedAS12876 AS12876- NLno
2021-07-14 17:49:19 185.21.216.153thisis.feralhosting.comNot listedAS200052 FERAL- GBno
2021-07-14 17:42:06 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-07-28 16:40:53http://buyer-remindment.com:8088/templates/file...OfflineDridex ext Cryptolaemus1
2021-07-28 16:40:47http://buyer-remindment.com:8088/scripts/file12...OfflineDridex ext Cryptolaemus1
2021-07-15 13:20:06http://buyer-remindment.com:8088/img/file4.binOffline32 CobaltStrike ext exe zbetcheckin
2021-07-15 09:59:06http://buyer-remindment.com:8088/vendors/detail...Offline32 CobaltStrike ext exe zbetcheckin
2021-07-15 09:43:08http://buyer-remindment.com:8088/css/Invoice%20...OfflineDridex ext excel zbetcheckin
2021-07-15 04:09:03http://buyer-remindment.com:8088/js/Invoice%203...OfflineDridex ext excel zbetcheckin
2021-07-15 02:04:07http://buyer-remindment.com:8088/plugins/Invoic...OfflineDridex ext excel zbetcheckin
2021-07-14 21:46:04http://buyer-remindment.com:8088/fonts/file9.binOffline32 CobaltStrike ext exe zbetcheckin
2021-07-14 20:59:13http://buyer-remindment.com:8088/styles/file2.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:59:13http://buyer-remindment.com:8088/templates/file...OfflineDridex ext Cryptolaemus1
2021-07-14 20:59:10http://buyer-remindment.com:8088/css/details.binOfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 20:59:06http://buyer-remindment.com:8088/vendors/file11...OfflineDridex ext Cryptolaemus1
2021-07-14 20:58:50http://buyer-remindment.com:8088/bundle/file5.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:58:45http://buyer-remindment.com:8088/templates/file...OfflineDridex ext Cryptolaemus1
2021-07-14 20:58:42http://buyer-remindment.com:8088/wp-content/fil...OfflineDridex ext Cryptolaemus1
2021-07-14 20:58:39http://buyer-remindment.com:8088/tpls/file4.binOfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 20:58:32http://buyer-remindment.com:8088/plugins/file11...OfflineDridex ext Cryptolaemus1
2021-07-14 20:58:21http://buyer-remindment.com:8088/plugins/file2.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:58:07http://buyer-remindment.com:8088/fonts/file8.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:58:03http://buyer-remindment.com:8088/themes/file2.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:50http://buyer-remindment.com:8088/plugins/file4.binOfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 20:57:40http://buyer-remindment.com:8088/images/file6.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:28http://buyer-remindment.com:8088/wp-content/fil...OfflineDridex ext Cryptolaemus1
2021-07-14 20:57:26http://buyer-remindment.com:8088/css/file7.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:26http://buyer-remindment.com:8088/css/file10.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:26http://buyer-remindment.com:8088/styles/details...OfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 20:57:17http://buyer-remindment.com:8088/css/file4.binOfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 20:57:15http://buyer-remindment.com:8088/styles/file5.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:10http://buyer-remindment.com:8088/img/file10.binOfflineDridex ext Cryptolaemus1
2021-07-14 20:57:06http://buyer-remindment.com:8088/vendors/file12...OfflineDridex ext Cryptolaemus1
2021-07-14 20:57:04http://buyer-remindment.com:8088/fonts/details.binOfflineCobaltStrike ext Dridex ext Cryptolaemus1
2021-07-14 19:08:06http://buyer-remindment.com:8088/wp-theme/file1...Offline32 Dridex ext exe zbetcheckin
2021-07-14 19:08:06http://buyer-remindment.com:8088/css/file13.binOffline32 Dridex ext exe zbetcheckin
2021-07-14 19:08:04http://buyer-remindment.com:8088/styles/Invoice...OfflineDridex ext excel zbetcheckin
2021-07-14 19:03:05http://buyer-remindment.com:8088/vendors/file5.binOffline32 Dridex ext exe zbetcheckin
2021-07-14 19:03:04http://buyer-remindment.com:8088/bundle/file13.binOffline32 Dridex ext exe zbetcheckin
2021-07-14 18:59:05http://buyer-remindment.com:8088/js/file13.binOffline32 Dridex ext exe zbetcheckin
2021-07-14 18:59:04http://buyer-remindment.com:8088/templates/file...Offline32 Dridex ext exe zbetcheckin
2021-07-14 17:50:05http://buyer-remindment.com:8088/tpls/file5.binOffline32 Dridex ext exe zbetcheckin
2021-07-14 17:42:08http://buyer-remindment.com:8088/js/Invoice%202...OfflineDridex ext excel zbetcheckin
2021-07-14 17:42:06http://buyer-remindment.com:8088/wp-theme/file1...Offline32 Dridex ext exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-07-16 11:45:38ce8a5404350faadc0fef24de9edff0927127fed654d46a244d9fffbbc6d6cffcexe Dridex
2021-07-16 11:45:244cf1cdc97ae9748f0af6bd2d0d15d859212612f173ec0efc51c6eb6734285d31doc  
2021-07-16 10:39:500867acb1c7483b02d7c0d8bc2a966080568eff6608e809d838c6dba8c3985e47exe Dridex
2021-07-16 10:35:52e014e08b3b3749548f721bd78d8a56f1a92a874205a4a3ed06cf1eb4f432ef87exeDridex
2021-07-16 09:51:362655a466008a70990df3c46c465eea5762441722c15f868bcd277db72c8146dcdoc  
2021-07-16 08:33:1033ff3532b12ee29ab8c8dff15329182a7745522d3d61cdb67193bde3182cea6eexe  
2021-07-16 08:21:33e014e08b3b3749548f721bd78d8a56f1a92a874205a4a3ed06cf1eb4f432ef87exeDridex
2021-07-16 07:12:2563eb7da4efa232f3d2ee6507192cb76f67dfa3525680218d7cea5f9ef5c8d56fdoc Dridex
2021-07-16 07:11:1221b34b931adac1438a006381816ad2c967738d871af10f89d839aef6ee374ec7doc Dridex
2021-07-16 07:07:24f1773be5744d843a2de3d2cae3fcc71d6ab418f72324f50a7ac390985d17c70bdoc Dridex
2021-07-16 06:42:41c4c688772846728b5b14cf538dddb16c7cae33f5783d10a2705e73f7ce27dc68doc  
2021-07-16 06:41:5111db56301be944b71f4c09e6905a65986b8f70ce4eecdd580122ac1409a5e7e4doc Dridex
2021-07-16 06:08:02adaf0a36aa753f631da5b356d433bfb4705cfd8d95acca5d0bcd11429ffcd44cdoc Dridex
2021-07-16 06:02:157663168e34c1bbc927044397aaba9027f96c0a54ba1706a8be66bab5c5df0fbfdoc Dridex
2021-07-16 06:02:095fa8c564b319580384899e6f4b2b545055270265186f6344a13d784a0e456659exe  
2021-07-16 05:44:4515a6a90d556485c10d39a38009b66f14482a7bd818f900bed985420d48a516e7doc Dridex
2021-07-16 05:34:01f154a5d6eaae76a00e7853041ceba4e0c05a59d10a1d198c957a887cfadb806fdoc  
2021-07-16 05:30:45b111c49dafb85fda1e71b21473b16730cded0dbd4dbfc23f4f3f3e112a55ff1adoc Dridex
2021-07-16 04:29:43d81d6d4bea65a63ec5c34c131ee6ec4795a85cdc19a61068f76f191ec11f26a0doc  
2021-07-16 04:12:33e014e08b3b3749548f721bd78d8a56f1a92a874205a4a3ed06cf1eb4f432ef87exeDridex
2021-07-16 04:12:23fac026c2e5e2237834896769ba36fd7e8a74ca9b3ce2e1f6eae20a22ff7685faexe Dridex
2021-07-16 03:42:17d69ca0088bcb715e3b411c25f161c145524b526a63a985f09db73fcf402264fedoc Dridex
2021-07-16 03:01:52e000e2ddcbf3fe37b2bc8a40cab8528432a3bd0c48a15c940cebf7f86f803d85exe Dridex
2021-07-16 02:45:304be5e26f11d41ee5d2b924556ff1b6e21c8c4c6a89ec882b19e1f112895b9a27exe Dridex
2021-07-16 01:12:239932b29e5dfad72fdd161a74938a1dfca822490306e94c7ed0ddaa4f14e7124fexe Dridex
2021-07-16 00:58:46539cfc7f9e6dceb57b47cc763d866b943eec546e1408ae9a732b77a7212274acdoc Dridex
2021-07-15 23:51:4234ad4cb8018a854d14719fbd2bcac2dee8ca51b74d12fc6d13f3a58160a850ddexe Dridex
2021-07-15 23:02:19ce784f2fef4d07238199eca01a76bb91d6dcddd7fa008815da3643e753557c10doc  
2021-07-15 22:58:431650ced30cfb68451bb432b44f72fa93687d95d83f70fa039658d8cb665508c5exe 
2021-07-15 22:52:4618f80c86e170d054a068c39a7f9489d05ec4bbcaa77f2ccbc9597ad91fc83ea6doc Dridex
2021-07-15 19:46:02e616bd67316696be374f9fb1f09fcf1797df550462b56dbdd89733a16c90601eexe Dridex
2021-07-15 16:00:5470cc7f8c4428a11730f9f55e4c39147bc1bab75f21d3401694339318686ba476exe Dridex
2021-07-15 16:00:513f3560fe4507055f619324e91810447f5a615790575210785af839940638e1c4exe Dridex
2021-07-15 13:20:067c4ec96ba82e79cb37c6829a595dc09b76568a5dadd82c743c3f9a69c985ad83exeCobaltStrike
2021-07-15 09:59:069af4b3b8c67d21fef69dee132cb686d1cb9e34e2d5e807b05c2a92e48f08dd39exeCobaltStrike
2021-07-15 09:43:08925dbf95054df732ae3e22d9549cc9b8f9eee2fd0d05f9cc59091c197b6be637xlsDridex
2021-07-15 04:09:030e1667c84a5a53153c9abe4eaafbea3dac07a49ebeb59c79c1e0f830edfea28cxlsDridex
2021-07-15 02:04:07228e051424a84ac778873e25df5c5a2f37402988e95a40cd9e0befa2d2234ba8xlsDridex
2021-07-15 00:23:058bbe6cac8a0cce9a3e58cdcbf58f31f91b348ee5c0451bab0595cc61a94a4abfexe Dridex
2021-07-14 21:46:03923de5fc24a860522375e93ea09e4298e5a1dfaa6a17c61754162aa3d4339bceexeCobaltStrike
2021-07-14 21:10:57277089cb78a9c493cecd8f5fbe70df0577d4f9557fb8b55ff5f7c2505308ca3aexeDridex
2021-07-14 20:59:137bc8e2b75d876bfbd12297c6eb01d2a09f0694242ad22559e1be6736dc237a37exeDridex
2021-07-14 20:59:131e7cff422cd9fda456283527e027500af16f9ceceeb23467d55839286b14a8eaexeDridex
2021-07-14 20:59:109af4b3b8c67d21fef69dee132cb686d1cb9e34e2d5e807b05c2a92e48f08dd39exeCobaltStrike
2021-07-14 20:59:06f00e60f5f094abfe9448d10cb84194e73c0e0f2cb52f00d474d6420cb001c579exeDridex
2021-07-14 20:58:50f1da83287dc71efd8d39d03f2c349830826b9c8698b0a7bb6cc6e7eb959428daexeDridex
2021-07-14 20:58:459ffe349bfcaac3ceffbbb5accf85814b0e08d204a02b63a9df9681235a464eccexeDridex
2021-07-14 20:58:42f1da83287dc71efd8d39d03f2c349830826b9c8698b0a7bb6cc6e7eb959428daexeDridex
2021-07-14 20:58:407c4ec96ba82e79cb37c6829a595dc09b76568a5dadd82c743c3f9a69c985ad83exeCobaltStrike
2021-07-14 20:58:397c4ec96ba82e79cb37c6829a595dc09b76568a5dadd82c743c3f9a69c985ad83exeCobaltStrike
2021-07-14 20:58:32f00e60f5f094abfe9448d10cb84194e73c0e0f2cb52f00d474d6420cb001c579exeDridex
2021-07-14 20:58:217bc8e2b75d876bfbd12297c6eb01d2a09f0694242ad22559e1be6736dc237a37exeDridex
2021-07-14 20:58:027bc8e2b75d876bfbd12297c6eb01d2a09f0694242ad22559e1be6736dc237a37exeDridex
2021-07-14 20:57:408e2d3f6bc5f7b639638d2f5ec751bc2985f1636005131623c5d2c448885c5d89exeDridex
2021-07-14 20:57:28277089cb78a9c493cecd8f5fbe70df0577d4f9557fb8b55ff5f7c2505308ca3aexeDridex
2021-07-14 20:57:26d93210076662115315a8713a18a86f22051c45ab7216129daa9b5638a76dac43exeDridex
2021-07-14 20:57:261e7cff422cd9fda456283527e027500af16f9ceceeb23467d55839286b14a8eaexeDridex
2021-07-14 20:57:269af4b3b8c67d21fef69dee132cb686d1cb9e34e2d5e807b05c2a92e48f08dd39exeCobaltStrike
2021-07-14 20:57:177c4ec96ba82e79cb37c6829a595dc09b76568a5dadd82c743c3f9a69c985ad83exeCobaltStrike
2021-07-14 20:57:15f1da83287dc71efd8d39d03f2c349830826b9c8698b0a7bb6cc6e7eb959428daexeDridex
2021-07-14 20:57:101e7cff422cd9fda456283527e027500af16f9ceceeb23467d55839286b14a8eaexeDridex
2021-07-14 20:57:064600e7951a48232623a4c9eaae2209d2a56e6d174d9a5da837fcc4be143f67faexeDridex
2021-07-14 20:57:049af4b3b8c67d21fef69dee132cb686d1cb9e34e2d5e807b05c2a92e48f08dd39exeCobaltStrike
2021-07-14 19:08:06672ace07423b11c65be0e0cfcdea8e8a17517b033324b418a1b92d6139daa18dexeDridex
2021-07-14 19:08:06672ace07423b11c65be0e0cfcdea8e8a17517b033324b418a1b92d6139daa18dexeDridex
2021-07-14 19:08:041082724aab36b71b4dc71685776a7c8f5069dd4c269e514eed362af80e1e1450xlsDridex
2021-07-14 19:03:05f1da83287dc71efd8d39d03f2c349830826b9c8698b0a7bb6cc6e7eb959428daexeDridex
2021-07-14 19:03:04672ace07423b11c65be0e0cfcdea8e8a17517b033324b418a1b92d6139daa18dexeDridex
2021-07-14 18:59:05672ace07423b11c65be0e0cfcdea8e8a17517b033324b418a1b92d6139daa18dexeDridex
2021-07-14 18:59:048e2d3f6bc5f7b639638d2f5ec751bc2985f1636005131623c5d2c448885c5d89exeDridex
2021-07-14 17:50:05f1da83287dc71efd8d39d03f2c349830826b9c8698b0a7bb6cc6e7eb959428daexeDridex
2021-07-14 17:42:08925dbf95054df732ae3e22d9549cc9b8f9eee2fd0d05f9cc59091c197b6be637xlsDridex
2021-07-14 17:42:05f00e60f5f094abfe9448d10cb84194e73c0e0f2cb52f00d474d6420cb001c579exeDridex