URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host cache.windowsdefenderhost.com.

Database Entry

Spamhaus DBL:Abused domain (malware)
Firstseen:2019-01-09 10:15:01

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-01-09 10:15:16111.90.159.149ns102.bigdomaincloud.comNot listedAS45839 SHINJIRU-MY-AS-AP Shinjiru Technology Sdn Bhd- MYyes

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-01-09 10:26:08http://cache.windowsdefenderhost.com/windows/tor.exeOnlineexe Clean@zbetcheckin
2019-01-09 10:26:07http://cache.windowsdefenderhost.com/windows/w_download.exeOnlineCoinMiner exe Clean@zbetcheckin
2019-01-09 10:26:06http://cache.windowsdefenderhost.com/windows/res.exeOnlineexe Clean@zbetcheckin
2019-01-09 10:15:16http://cache.windowsdefenderhost.com/windows/RecentFilePr...Onlineexe Clean@zbetcheckin