URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-06-17 05:04:28 | 13.248.213.45 | a67c48129651a0940.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-06-17 05:04:28 | 76.223.67.189 | a67c48129651a0940.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2022-01-11 21:21:04 | 151.101.2.159 | Not listed | AS54113 FASTLY | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2022-01-11 21:21:04 | https://dragonfly-cbd.us/ctap/hySFzOvCSHU/?i=1 | Offline | doc emotet | |
| 2022-01-11 21:21:04 | https://dragonfly-cbd.us/ctap/hySFzOvCSHU/ | Offline | emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2022-01-28 16:43:18 | aa65a34067b0c50e89c1078d0c7ff08de43e5036241404574f846265de6ff6bd | xls | Heodo | |
| 2022-01-12 04:09:41 | 228b8793653662088991f7cfa3b368bce32931a7516a2f8c7188a437eb03a856 | xls | SilentBuilder | |
| 2022-01-12 03:12:50 | 2c8664d029f07581d91dfdf94de270580b998fbf62b88287101aab42304156b4 | xls | SilentBuilder | |
| 2022-01-12 02:21:45 | 29bd3f3218b35ec402cc8c174823b00c2f26b30556c45f2158d175895f9d40c0 | xls | Heodo | |
| 2022-01-12 00:54:21 | 1b7581c8be4bf9197005067c42e581bcc1c41b10d6d9768daa8c4642f6e3ef7b | xls | SilentBuilder | |
| 2022-01-11 23:47:32 | 5dd8cf32347063a7b6b80c824526d1f58a3b8c99344eaea74dad15d687395f64 | xls | SilentBuilder | |
| 2022-01-11 22:47:15 | e48f10cc12e08a32f523982c024f49dca076b06c6bd47b5cdf3d43aee5097091 | xls | Heodo | |
| 2022-01-11 21:21:04 | dc1a568534305e8dd82443bd62f3fefe364de2073558c8237bbe099593714259 | xls | SilentBuilder | |
| 2022-01-11 21:21:04 | 5a8cbffdac4d54e39718d42027c7fb16fc4de3965cc0e8a4aa69425c99ae145e | html |
