URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: byh.ajn322bb.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-12-07 05:35:10 UTC
Total malware sites :1
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-08 19:59:23 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-09-15 17:44:44 172.234.26.236pebble04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-08 12:20:54 172.232.4.89hickory05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-15 07:01:59 172.232.25.17pebble03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-12 08:30:39 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-09 04:08:16 172.232.30.16hickory04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-03-08 15:43:27 207.246.94.159bibledude.tempurl.hostNot listedAS20473 AS-VULTR- USno
2022-12-07 05:35:16 104.21.25.158Not listedAS13335 CLOUDFLARENETn/ano
2022-12-07 05:35:21 172.67.134.92Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-12-07 05:35:21https://byh.ajn322bb.com/files/pe/pb1109.exeOfflinedropped-by-amadey fabookie viql

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-02-27 10:54:15f3f4a20f4471c88df72a19a76e50142a151e16dc72198bded026c3ae419ba6bfexeFabookie
2023-02-26 22:55:17c050c02a2fd775a9125ab9e0367ff5e89cbbbc40384814243aa77441cc4a718bexe 
2023-02-20 03:51:11c6c5a6dd55da221e7269b2af1627026fc5256ac9091c6ccd2f4e0d4869c50dd3exe Fabookie
2023-02-16 07:02:48eb965b9e400f2b30b4099f869266b20a880e6cc8c2fe2709144f19325c7ff1bfexeFabookie
2023-02-11 23:56:117ddef240da75c36d17a3eacf16873d767ab23a30d8369f10f1dbbe88573b0a2bexe 
2023-02-11 08:09:41049cd9c4000ae59133dc94683891e83f48cb427d34552b4da2a4de0b0970a7f4exe Fabookie
2023-02-05 06:05:08dd4d73a7dea669a1218471a8a1f6871e3a6de5017d26606fa20100bba119e89bexe Fabookie
2023-02-02 12:24:44be9cc0a55e0f3bfb41b3dbf9fc944751606e3ce2aba29bc6f984150ee9e8d250exe Fabookie
2023-01-30 05:32:14ff7e57585d400320dbd916fa6adc150df75714bd17c5f51f8cd446f65c24dd7aexe Fabookie
2023-01-24 16:48:12d2e91f316762cebcf4cf3e2fc64ce488c75d7707491f79e4ad20f3301ab07d46exe Fabookie
2023-01-18 06:12:3655d48f81aa6e29e7ef2a380c5d1efd05fd71754a87a5af9138208f9eb96bf99cexe Fabookie
2023-01-17 09:01:039cfe0a73fbe0198ed123b0e909b7c8aeda2a2ce41925455ab98184e69d13aab0exeFabookie
2023-01-16 08:21:27a906a6e0334673a89ff44f6aa2b8662dd70ee3e4af943ecefb2546c17363608bexeFabookie
2023-01-10 08:09:07b2e8ebd666613954ad32def91756ca93dfd258e889fef76dc7eb7b76e5349d8eexe Fabookie
2022-12-26 07:51:1526345f5a92c20d902b02815e42ac9eda5299f4647eaeddc3eea5b68c940a9547exe Fabookie
2022-12-20 11:22:59eb620b00119bb7123b15c5d276a6534d310ff563122b963460b3ad19aa6003a2exe  
2022-12-18 09:51:57aa552c88f04e9dae3adb94bce48cf51c05d962bcbfa45eefc85fa05ca261fe0cexe  
2022-12-12 13:06:0634bef535c27f1f019e0043b2a5613ef7698b0639b3eaa8240155c0d439b759d2exeFabookie
2022-12-07 07:56:33cc65124164f81d4c678d7b4d4bb7a1f9fb09bfbd5da3ff6e481f07fa9bcac023exeFabookie
2022-12-07 05:52:55ed9ef547b26d9501c67479d225d44a8fe29ab122c22426b3d9620b6eef8b6dbdexeFabookie