URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ch1.spacermodem.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-01 11:28:07 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-14 03:14:15 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-07-27 18:29:59 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-06-25 07:12:57 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-06-25 07:12:57 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-07-01 20:59:14 45.79.244.20945-79-244-209.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-06-25 05:59:15 199.59.243.223Not listedAS16509 AMAZON-02- USno
2021-07-01 11:28:13 195.181.169.92unn-169-181-195-92.datapacket.comNot listedAS60068 CDN77- USno
2022-06-25 05:41:42 99.83.154.118a51062ecadbb5a26e.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-07-01 13:06:04http://ch1.spacermodem.com/umbr.exeOffline32 exe RaccoonStealer ext zbetcheckin
2021-07-01 11:28:13http://ch1.spacermodem.com/DvDUsSet.exeOfflineRaccoonStealer ext RedLineStealer ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-13 06:01:49e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855unknown  
2021-11-09 22:13:22a6b214e82fb75228b4a29c7c996ffdfc0a19852b9f5fab2ae611343534e4112cexe  
2021-07-21 03:47:15336f9668baec97cabdf9bbcef93c92242f3614f52b21baa9c36971fe489ad828exeRedLineStealer
2021-07-19 10:22:56417df8f56483afbbd8e7f2f00a314eb4f287e9152890aa150e47deeef5302bf8exe RedLineStealer
2021-07-18 10:11:00d127c94fb3395723485817c8c760145e7515019e00758bad9eb387a31d1208f0exe RaccoonStealer
2021-07-17 10:43:08bab138d9ed6e47d6939f9448af09ebb835573470f5369142f2336343b347f9b1exe RaccoonStealer
2021-07-16 10:55:316e17e31c474ffd268861bd1ae737e097ab5355bad1e5e26843b521ede9419a1fexe RedLineStealer
2021-07-15 13:19:051c4240600fc7bdc37ee84a11cee2908e8138bb01abe3d9d2af95741c0ddf593bexeRedLineStealer
2021-07-14 10:08:331a99996ecc9b2309766eb3532f213549824ea5cd0cad73131c160dd414006079exe RedLineStealer
2021-07-13 09:26:224f0f79ed4115f930e5f67354d90801965b71a2d8ab86847fc656afe6aed566b7exeRedLineStealer
2021-07-13 06:52:470a0101a2b0df24effbb4265898076d01113e9d3d158b70f77e1d9c591e9e6445exeRedLineStealer
2021-07-12 01:29:21e777e5c14eeafa7819e5645f2916146c2190ee87034ba9ff6c41994cceb6979eexe RedLineStealer
2021-07-10 09:26:27dcf77b800bc489c9ca8dec46a1c3605631d8aca4f7eef98c5f3782ba6788113eexe RedLineStealer
2021-07-09 10:35:3082d1152742332bd3d4e435398847d48dc837d37ec86776ee788fda751b623e30exe RedLineStealer
2021-07-08 13:08:37cd7496bfd23a5f72df3c69241b2125f62e85b7ae58bd73dccd2cffad19048a4aexe RedLineStealer
2021-07-08 12:08:3851cccd76728af130f90be2083bbc0208ebce405b38fa857c2bb3a7e8c09e1b4cexe RedLineStealer
2021-07-07 16:30:143b62c720362e58fbed01f4123c22f2b65c42b32ec28624d22bc1906f93e95977exe RedLineStealer
2021-07-07 09:07:10419dbec500b45dcb0aca32df66ed6107975ae346cea116494e7f36445746aa27exeRedLineStealer
2021-07-06 09:47:47b3d44791e7743dadf2df24932d4338e6fcf096d4ce770aa9d5ed71f1bf4a154dexe RedLineStealer
2021-07-05 09:04:015dabbd4d9ea68f24721c70a4935e1ef8ed9e51c963eba41c9af4731c0e57ecc4exe RedLineStealer
2021-07-04 08:19:36b1298f0877eba17945d3468c06927f6cfc2b52f413bcc2b995f75436e0b7e7ddexeRedLineStealer
2021-07-03 08:10:52ec11a9a7bf03deb50fa611022456d347bc43a3de267bdbe227a7a5b18d9cb5cfexe RedLineStealer
2021-07-02 10:40:239bd52703dba9fde3dda64118f9404ed8c3aab6cd3c6b6924f173fcbd5d83fd96exeRedLineStealer
2021-07-01 13:06:04e220d3ad9c8d7eb0c65fb77c962dfec00c1f3eebc92aee35e8a7e75ca87509c5exeRaccoonStealer
2021-07-01 11:28:13ebd46183b53aca011bbd1c430296089477faf2e2130e8d9da3c633f9a38e3488exeRedLineStealer