URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | datamicrotransfer.com |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Blocked |
| Cloudflare : | Not blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2021-02-03 09:18:03 UTC |
| Total malware sites : | 8 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 8 (100%) |
| A record(s) observed : | 1 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2021-02-03 09:18:13 | 190.97.162.108 | hiranews.com | Not listed | AS27956 Cyber_Cast_International_S.A. | PA | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-02-04 05:34:11 | https://datamicrotransfer.com/Terminator.msi | Offline | ||
| 2021-02-04 05:34:08 | https://datamicrotransfer.com/rx.exe | Offline | CoinMiner | |
| 2021-02-04 05:34:08 | https://datamicrotransfer.com/r1.exe | Offline | RemcosRAT | |
| 2021-02-03 11:45:11 | https://datamicrotransfer.com/ProductDiagnostic... | Offline | bitrat | |
| 2021-02-03 11:42:04 | http://datamicrotransfer.com/rx.exe | Offline | CoinMiner exe | |
| 2021-02-03 11:40:08 | http://datamicrotransfer.com/3333.exe | Offline | exe | |
| 2021-02-03 11:40:05 | http://datamicrotransfer.com/hh.exe | Offline | exe | |
| 2021-02-03 09:18:13 | https://datamicrotransfer.com/test06.exe | Offline | RemcosRAT |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-02-04 05:34:11 | fc0eee220cef0c364edb4cb6ff45e12b2d3c035b2be1072c627e40c4a298ea72 | msi | ||
| 2021-02-04 05:34:08 | f213aa18c565dfcb1b7637901b57b6baa6f0d3515b3c601797b418d3d8ff5e2e | exe | CoinMiner | |
| 2021-02-04 05:34:08 | 6cef436fd5577158e43bd7cc85ea84cdac90044d8e9f93c254ee7ed119fa7aed | exe | RemcosRAT | |
| 2021-02-03 11:45:11 | 83665f8cf0fc798b6dbeca777554aeaeb9d9cc53e27674c36e67294729d118f0 | msi | BitRAT | |
| 2021-02-03 11:42:04 | f213aa18c565dfcb1b7637901b57b6baa6f0d3515b3c601797b418d3d8ff5e2e | exe | CoinMiner | |
| 2021-02-03 11:40:08 | 8bd870b9116237c020ff8c59786435119f9706ccc0b05ef8d2ed47e48ceaab43 | exe | ||
| 2021-02-03 11:40:05 | efaccd50c621975a532edd0c867952e241c0409de012be1e73d20980c99260ed | exe | ||
| 2021-02-03 09:18:12 | df2b517d9777fb1b734d1f25e7eac6f5217988596427086c7821a272f1fd9abb | exe | RemcosRAT |
PA