URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: codiumsecurity.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-09-27 07:00:04 UTC
Total malware sites :36
Online malware sites :0 (0%)
Offline Malware sites :36 (100%)
A record(s) observed :17

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-16 03:32:09 172.236.126.142172-236-126-142.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-16 03:32:09 172.236.126.145172-236-126-145.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-16 03:32:09 172.236.126.225172-236-126-225.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-16 03:32:09 172.236.126.234172-236-126-234.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-11-13 15:56:17 172.238.189.196k8s-lb-vip01.us-ord.parklogic.netNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-07 23:17:26 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-10-07 23:17:26 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-10-15 12:43:51 172.239.58.4172-239-58-4.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-15 12:43:52 172.239.62.246172-239-62-246.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-10-15 12:43:51 172.239.58.5172-239-58-5.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-01-06 20:28:11http://codiumsecurity.com/stubs/WqpXiaJmQH.exeOfflineexe abuse_ch
2023-01-06 15:09:23https://codiumsecurity.com/stubs/DCyvhvjOoZ.exeOfflineAnonymous
2023-01-06 15:09:22https://codiumsecurity.com/stubs/aLAFhIJavQ.exeOfflineAnonymous
2023-01-06 15:09:22https://codiumsecurity.com/stubs/CQtUbzlgdp.exeOfflineAnonymous
2023-01-06 15:09:18https://codiumsecurity.com/stubs/bmEZRjJsmn.exeOfflineAnonymous
2023-01-06 15:09:16https://codiumsecurity.com/stubs/BfRUleZGyl.exeOfflineAnonymous
2023-01-06 15:09:16https://codiumsecurity.com/stubs/WuyQxFYteA.exeOfflineAsyncRAT ext Anonymous
2023-01-06 15:09:15https://codiumsecurity.com/stubs/XUxkJnXtzy.exeOfflinebitrat ext Anonymous
2023-01-06 15:09:15https://codiumsecurity.com/stubs/cAOjfDDYmr.exeOfflineAgentTesla ext Anonymous
2023-01-06 15:09:14https://codiumsecurity.com/stubs/DmYRBIZvjn.exeOfflineAsyncRAT ext Anonymous
2023-01-06 15:09:14https://codiumsecurity.com/stubs/qLuIgyinYD.exeOfflinebitrat ext Anonymous
2023-01-06 15:09:11https://codiumsecurity.com/stubs/WjfNcMSaAw.exeOfflineCoinMiner Anonymous
2023-01-06 15:09:10https://codiumsecurity.com/stubs/yVLOfmgLmu.exeOfflineRedLineStealer ext Anonymous
2023-01-06 15:09:10https://codiumsecurity.com/stubs/AqGnguJoOq.exeOfflineAsyncRAT ext Anonymous
2023-01-06 15:09:10https://codiumsecurity.com/stubs/CLRxtmxqjo.exeOfflineAnonymous
2023-01-06 15:09:10https://codiumsecurity.com/stubs/zqGkiNJTQE.exeOfflineRedLineStealer ext Anonymous
2023-01-06 15:09:10https://codiumsecurity.com/stubs/doGFYtVSuv.exeOfflineQuasarRAT ext Anonymous
2023-01-06 15:09:09https://codiumsecurity.com/stubs/ubqoOQHnoG.exeOfflineRedLineStealer ext Anonymous
2023-01-06 15:09:09https://codiumsecurity.com/stubs/YthEmBzPQH.exeOfflineLimeRAT Anonymous
2023-01-06 15:09:09https://codiumsecurity.com/stubs/BpmUIwnKdl.exeOfflineAsyncRAT ext Anonymous
2022-11-07 18:46:24https://codiumsecurity.com/giovanni/VIAMTEB.exeOfflineCoinMiner exe RedLineStealer ext jstrosch
2022-11-07 18:46:24https://codiumsecurity.com/giovanni/NRYCJVR.exeOfflineexe RedLineStealer ext jstrosch
2022-11-07 18:46:20https://codiumsecurity.com/giovanni/KUFOYNC.exeOfflineexe RedLineStealer ext jstrosch
2022-11-07 18:46:19https://codiumsecurity.com/giovanni/YRGUVQI.exeOfflineCoinMiner exe jstrosch
2022-11-07 18:46:18https://codiumsecurity.com/giovanni/XGWXITR.exeOfflineCoinMiner exe jstrosch
2022-11-07 18:46:17https://codiumsecurity.com/giovanni/UKYNTSW.exeOfflineexe jstrosch
2022-11-07 18:46:15https://codiumsecurity.com/giovanni/SCHCCCM.exeOfflineCoinMiner exe jstrosch
2022-11-07 18:46:15https://codiumsecurity.com/giovanni/DWIWJWM.exeOfflineCoinMiner exe jstrosch
2022-11-06 07:32:13https://codiumsecurity.com/giovanni/GLTXCBV.exeOffline32 exe RedLineStealer ext zbetcheckin
2022-11-06 06:19:11https://codiumsecurity.com/giovanni/PMLAKJP.exeOffline32 exe RedLineStealer ext zbetcheckin
2022-11-05 16:36:05https://codiumsecurity.com/peoplesstubs/EMQDCOH...Offlineexe RemcosRAT ext jstrosch
2022-10-25 05:23:10https://codiumsecurity.com/peoplesstubs/ABBDUUX...Offlineexe xworm Anonymous
2022-09-27 10:08:05https://codiumsecurity.com/pranga.dllOffline abuse_ch
2022-09-27 10:08:05https://codiumsecurity.com/07jamesbond/RADRSXJ.vbnOfflineQuasarRAT ext abuse_ch
2022-09-27 07:01:04https://codiumsecurity.com/peoplesstubs/BTDBCDL...Offlineexe rat RemcosRAT ext abuse_ch
2022-09-27 07:00:06https://codiumsecurity.com/IZvPLPlcOQdnewd.dllOfflinedll abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-01-06 20:28:11d14fbb66e8b9e15badb6a729a5a0433f889606056ce14bdbc8330d0a0e6e5863exe 
2023-01-06 15:09:234d7de57abd009b6bc6e16e3a135d19788b576bc67c75d697ba77f297453fe1faexe 
2023-01-06 15:09:224d7de57abd009b6bc6e16e3a135d19788b576bc67c75d697ba77f297453fe1faexe 
2023-01-06 15:09:22c12bce788c90bc26370868f6a573d4259b2c5757388c30d21855201c31b9b9f0exe 
2023-01-06 15:09:179e72d0685742fc86f6c38fa58f0db00e16d09908cf03d528ed35be51eebe772bexe  
2023-01-06 15:09:154293a76767a4657c973bd39b07054adc0d3d790cbc2b9be6e14c81e1f9545b79exeAsyncRAT
2023-01-06 15:09:15ede0995d7a49ab0957acd96adb2ee238ddb27a950560f455498f52e64b1bb2c0exeAgentTesla
2023-01-06 15:09:159360554f2e28415c1060e32aed40757998e0b16db0905f4ae5e1d21676b00ec5exe 
2023-01-06 15:09:14b2f6f43c297769f8b5d5780f1342fe4a433a97955d8b76b7756bd9ceea2ca6e5exeBitRAT
2023-01-06 15:09:1497e731957d9935f4eab7c5ca098c096a5f6195b756769e44c34192dfa08b69d9exeAsyncRAT
2023-01-06 15:09:13b2f6f43c297769f8b5d5780f1342fe4a433a97955d8b76b7756bd9ceea2ca6e5exeBitRAT
2023-01-06 15:09:112d8f589bc107c0302e6ac15309bffb6e81e6865e45924f15b3d5ae60e21f3ea7exeCoinMiner
2023-01-06 15:09:10486a7709a844ef4a1770299b51b3bdd519c8881ea3190705ab7890780998e84aexeQuasarRAT
2023-01-06 15:09:10a44005cc0e701982ef1cf768585985f0211cdf6645cff1182f5a74fbba3e27f1exeRedLineStealer
2023-01-06 15:09:10391a5e59e59050d570570c0c5873289f18c1a2a1120ee19eaebdfb430fc8e5a3exe 
2023-01-06 15:09:1097e731957d9935f4eab7c5ca098c096a5f6195b756769e44c34192dfa08b69d9exeAsyncRAT
2023-01-06 15:09:107f13ee4c63bf16ea1840a9b9dceecfa6df4e7db800d6ca3a0b17a551e2331bb9exeRedLineStealer
2023-01-06 15:09:09ac38d60c3bc686a920af25a11756dbab6b34724fe70a53893ba087b36243f864exeAsyncRAT
2023-01-06 15:09:0952a19a9b1fc41e58aa0ffeda8e9711b1c424c58825b084a4a9a378854318920fexeLimeRAT
2023-01-06 15:09:09a44005cc0e701982ef1cf768585985f0211cdf6645cff1182f5a74fbba3e27f1exeRedLineStealer
2022-12-22 05:45:49c4446db72bd5a5bdde65d0011d749eb7ecbf1fe9352e6c1ea13ecbb612d9f0d9exe  
2022-11-27 04:00:57dcfee2d747d066f928c67b248ab019dc4ef5551da1d21ecd5d11351dc631de1dexe  
2022-11-23 17:39:54598e805f22db169d05c92dcdd8a7c15e38412316621dacd8b08b4d1194b87dfcexe  
2022-11-22 19:23:387263b1cbac7e7fa40b081b32a6e07e8b40114ef925deb9fdbe6687896936ccd0exe RedLineStealer
2022-11-16 22:43:39a9f5625ee6b3a6f6387f37b4fafbe4996dd4f80a1804fb55789e851406395ff2exe  
2022-11-09 05:25:12f75f5143be44e7d471dcc67c1689458c22f8977197145f78856fa324df0f4797exe RedLineStealer
2022-11-08 07:14:552af48e4cc18fefb1f706bf310662f8a79e9424b0feaae8510b3af540806d0d21exe  
2022-11-07 18:46:24c1d809b1d7897125aba049dca985ad240540379b3d75b6a7bbea320906f92343exe CoinMiner
2022-11-07 18:46:24b7ebcbc630b09e322514a2c30727d1eb4b60b4692af1b27e8ed533a83a18a08eexe RedLineStealer
2022-11-07 18:46:208c5861d3d2e516342a538b3dd5eb712ef80bb29af0882e62241d1986b3e477b1exe RedLineStealer
2022-11-07 18:46:1918d1b565e9b9a61ab7b34b1b03f2ed380f29b7697f8d643ca62c7a4ef5867eefexe CoinMiner
2022-11-07 18:46:17f13ac6b600e5e59bbd110b87bc39e8c69144d76dcb1ecf8ad84ff921c9bd751eexe CoinMiner
2022-11-07 18:46:1698e33deb74a9c4ef1008f983da38e5ba9bb2bb93110e335e89d4c2413a65a7dbexe  
2022-11-07 18:46:1581f4cb4d97f167605c7f47ab4af02a5a37bb2b9f162551b32f78b7b13cfa1e84exe CoinMiner
2022-11-07 18:46:1481f4cb4d97f167605c7f47ab4af02a5a37bb2b9f162551b32f78b7b13cfa1e84exe CoinMiner
2022-11-06 07:32:1346d04898d9b8bc0daeb3a8d726c25536eb7d17e8c448bf9bf9037a3cbdec8111exe RedLineStealer
2022-11-06 06:19:117aad0703fe6471edcbbb790aa161b0e86a4900b4133972707b572920f44a4c90exe RedLineStealer
2022-11-05 16:36:05ae86ff848167aff1ce842e1c0e77bea0a84dfcb0ec4f115086c99225775c80c4exe RemcosRAT
2022-10-25 05:23:1055a75580ff02a8fcb1220a95990c088e2fd122c9ab1f86c5a95bde5ad9104d1aexeXWorm
2022-09-27 10:08:05c3601953e768fe8fb343d90479b29b59d4c375a71cfd6b671a6435c685de63f9dll 
2022-09-27 10:08:04721628b23aa029fabaca8a6cd712e376a5f5499a0eeae35301b323b3bbea9fb7exe QuasarRAT
2022-09-27 07:01:040773f517b40992fd3e6291eb906558588f1de9e3887bb2433f95bb4ea9f5904aexeRemcosRAT
2022-09-27 07:00:053ca7481b35c8f684e7dc204b72866f0af9dd26cc526054d33e6e4a0ce9f89246dll