URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cdn.pixelbin.io
Domain registrar:Gandi -
Domain registration date:2021-09-16 01:32:35 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-07-25 18:08:06 UTC
Total malware sites :6
Online malware sites :3 (50%)
Offline Malware sites :3 (50%)
Newest active malware site :2024-12-05 16:57:25 UTC
Oldest active malware site :2023-07-30 08:15:08 UTC (Age: 2 years, 10 months, 12 days, 11 hours, 0 minutes)
A record(s) observed :189

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-12-05 16:57:24 104.18.36.19Not listedAS13335 CLOUDFLARENETn/ayes
2024-12-05 16:57:24 172.64.151.237Not listedAS13335 CLOUDFLARENETn/ayes
2023-09-21 21:58:21 104.18.4.145Not listedAS13335 CLOUDFLARENETn/ano
2023-09-21 21:58:21 104.18.5.145Not listedAS13335 CLOUDFLARENETn/ano
2023-10-31 21:02:31 34.160.55.240240.55.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-07-30 07:19:49 3.160.196.28server-3-160-196-28.mrs52.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2023-07-30 07:19:47 3.160.196.31server-3-160-196-31.mrs52.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2023-07-30 07:19:48 3.160.196.52server-3-160-196-52.mrs52.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2023-07-30 07:19:48 3.160.196.73server-3-160-196-73.mrs52.r.cloudfront.netNot listedAS16509 AMAZON-02- USno
2023-07-25 20:25:46 65.9.25.28server-65-9-25-28.zag50.r.cloudfront.netNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-04-10 07:57:31d0786911c4e713976113d1007902ed58860a2111d614a95cef7504ae35b20bebunknown  
2026-03-16 21:32:12a38205f35bb10fe7c8315ef564543db1bf06ed728c58112c14f4c50fdd1be673unknown  
2026-03-16 21:31:13a38205f35bb10fe7c8315ef564543db1bf06ed728c58112c14f4c50fdd1be673unknown  
2025-12-15 05:13:4419a47122b15f2fc09bce219df222101d53d9521dea43ade011fcdf7c6e40d443unknown  
2024-12-05 16:57:2473e01ce8db8f5055c0b626d17070ad20ac81e0f27ec4c43f3341da57bce28434jpg  
2023-09-04 12:45:48f9d64053bacb9d820812b5988b274580f88504e65dc9338f1cb89d1e1c525a66unknown  
2023-09-03 23:43:2913cdbf3ebcd297823dac07608abc7e8b67457f0546cfc48fabcf800d6b9cacabunknown  
2023-09-03 11:07:187666ddeb18ec06c1a8653ddb809e98ee512799d0b561b46e619460e7f562dfa4unknown  
2023-08-16 15:09:0839ca6210ad19166ffd0b0a831da93535b1c2d5bc62ad735d3361036f1aa68164txt  
2023-08-10 07:56:006d9ca869f5c3aebae55b20a867b60d8efac6115843918b878610ec1516ac0d10unknown  
2023-08-10 06:52:546557b9a8909c4c28ee19ac629c3d790664718e03dbbecc79f37b634b76671b28unknown  
2023-08-01 12:24:087df965c066fa8df601b7d74aaa7879c7a21fe8f3ca7ba0e46e48a83c0fe2338ctxt  
2023-08-01 06:25:14f7114bfc2804994501012f15cc8306955b54bd70af70bec6f4d9c4ea012a1324unknown  
2023-07-30 08:15:0873e01ce8db8f5055c0b626d17070ad20ac81e0f27ec4c43f3341da57bce28434unknown  
2023-07-25 18:08:08b0c79c0f087b28e30cf4126ad4766ac21723ef5c41cb3aba8e04eb4c68e88558unknown