URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dreamwatchevent.com
Domain registrar:Public Domain Registry -
Domain registration date:2019-06-03 11:21:49 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-01 07:52:03 UTC
Total malware sites :10
Online malware sites :1 (10%)
Offline Malware sites :9 (90%)
Newest active malware site :2022-02-22 18:41:04 UTC
Oldest active malware site :2022-02-22 18:41:04 UTC (Age: 3 years, 9 months, 18 days, 2 hours, 6 minutes)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-07-01 07:52:06 144.208.125.220nj-s5.serverpanel.netNot listedAS395092 SHOCK-1- USyes
2025-06-03 18:24:55 15.197.240.20acf3b736b777428f5.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-04-09 12:40:50 144.208.125.254nj-s5.serverpanel.netNot listedAS395092 SHOCK-1- USno

Malware URLs


The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-13 04:43:4706b810185547623c1cc0bc2cb7f1c4cdfb2240bdaf748b6c33f54591ef3116efjs  
2025-06-04 09:58:236dc9c7fc93bb488bb0520a6c780a8d3c0fb5486a4711aca49b4c53fac7393023js  
2025-06-03 22:36:316dc9c7fc93bb488bb0520a6c780a8d3c0fb5486a4711aca49b4c53fac7393023js  
2025-04-27 19:25:4306b810185547623c1cc0bc2cb7f1c4cdfb2240bdaf748b6c33f54591ef3116efjs  
2022-03-02 18:39:126dad5a950b1eb9aca99fd971e0109e242b22195348d8cf95e7938a32069ea242txt  
2022-02-23 20:41:3923708a7031053715fd8e725b8f42fef57cc96d62c7954e4a388af8628253b01ftxt  
2022-02-22 18:36:4537d7dd2221afdd758658207dcfc1e56005c59d0000de06db47be757a5c2085c6txt  
2022-02-18 19:06:52dbd942eb8cf071c2ac47675a8449ed69ca251c7e54007cd17f0bf54ae1acfd54txt  
2022-01-27 14:57:07863e1e698feb9c3cef80d5073bdce80728694248701b980fc002e9391183f667js RemcosRAT
2021-09-27 14:18:019eb159196ac82f2a4c21fa5706bb214450688b54e900d6bb8d621bcf2880b1actxt  
2021-09-09 05:56:06532eb8c8303586ae92fc97dee660bdf2b432cd4ff0f3bed880cc9b41021901b8txt  
2021-09-09 05:56:0460de5bef1efff151b9db261a3dd6a9d36ac722d9ed1cd099530a20ec8a6025bbjsRemcosRAT
2021-08-13 17:15:080c45d5136cf647188a56ee0fcf9732f7d4f9fb0cda882cc026cbae5eb02b0ef1txt  
2021-07-01 07:56:0510c58df72a83689d06a1562b349fa195f853465e14cdab38f7dc8ae77fe52d4bexeRemcosRAT
2021-07-01 07:56:04219fc775299b765c2a1626b602f478d3642139dc243a46120281843bdb5bd5e9exeRemcosRAT
2021-07-01 07:52:052dd7a0f3a8c01338b500b88c023560f468c8d3c61e13fb5a6e55eab69087e7bcexeRemcosRAT