URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: esetnode32-antiviru.ydns.eu
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-09-20 12:13:03 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-10-25 06:48:38 192.3.140.204192-3-140-204-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USno
2021-09-20 12:13:08 192.3.194.242192-3-194-242-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USno
2021-09-28 11:30:22 193.3.194.242amatdir3-242.amat.dkNot listedAS58282 STATENSIT- DKno
2021-09-27 16:56:46 185.212.128.74free.ns1.sitesblog.comNot listedAS200313 internet-it- VGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-20 13:57:33http://esetnode32-antiviru.ydns.eu/dwn.exeOffline32 exe zbetcheckin
2021-09-20 12:13:19http://esetnode32-antiviru.ydns.eu/WORD.exeOfflineexe NanoCore ext rat abuse_ch
2021-09-20 12:13:08http://esetnode32-antiviru.ydns.eu/EXCEL.exeOfflineexe rat RedLineStealer ext Xpertrat abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-10-25 09:21:3236e7deadeeb8b242b2cdbf3b561899ed1ac51bbdbc194ab046ae961c76e0086aexeXpertRAT
2021-10-25 08:32:47c2324c29e30aede7644a6773fe77604525c936ea658073e1d9e323c5691bc5e8exe  
2021-10-18 22:55:35f605ba8fe94eb367829b61cd05eb5b07f4702b55f2a0faf51589cb46dd6f89a9exeNanoCore
2021-10-18 22:32:069eea9caa338a673c1d88240839b08fe021ff9264620e7935ba5cb5bd3d00ebf6exeXpertRAT
2021-10-14 23:18:108bac59b258ea8ea81eccb35b6e2a4bb78e415c84ea9a7c24a46727d5be8c3023exeNanoCore
2021-10-14 23:16:40f2926aaea4603961e15c9ac92eb599ddd51bd6e19bd7fded285a1db16753db87exeXpertRAT
2021-10-13 15:33:41259dbea8ad36ca1f502f7eba9257bf7111313f4ef76c34922cd34dd5808b5181exeXpertRAT
2021-10-13 15:22:42799a0831a87f80ddced683cf26c082c58c936a1bb868dd0e97552a9f035ba4eeexeNanoCore
2021-10-11 00:12:3634acd51df743b093c9eda93ebf46db0095fe2bdd4ee58d18c65e8914790f337dexeNanoCore
2021-10-11 00:12:00bd5c24761ed0f7e6b1741abc9812e18794dd98524a7f4d3a8998d9a71af071adexeXpertRAT
2021-10-07 09:58:393e77ec2e0bbc394a1841bfb8f9b004f93fcbc35b401580abd01c92c41b6635aaexeXpertRAT
2021-10-06 08:08:44124293d19cb354c1060067ae0be884092e21905b90329eca9da037dc4a49733dexeNanoCore
2021-10-06 08:07:381a55b87ef779fe996b8aef3e98ea9252a5ce3a02d3a0a87000554bd41033a215exeXpertRAT
2021-10-04 14:56:27d627f3774ca71311d578cab84cdabf89605f5d63ffbd0dbd6543e0986151c79dexeNanoCore
2021-10-04 14:55:509bd273556358606717f3d0e7d4a2521dba396d6838d8dfccb78bfc5c98590b84exeXpertRAT
2021-10-04 08:02:106ad6f24871ddeedb5dd1fd49abec8faae3a0809b3211c7ecce5fbce40dd28a75exeNanoCore
2021-10-04 07:58:115bdc764598795f4afcb70f6ff95f29114f61ea24a1d836838125c08268e13de9exeXpertRAT
2021-10-01 10:18:539443d3d69b5e62fb2c944c1bc14b4d4ad21f3e0c70826b0d800e09eb9fb82d3fexe RedLineStealer
2021-10-01 09:48:41eb18477393a3c4c69415149f289cc36823f5d0c1fa9026a0d8b03b69ccd17248exeNanoCore
2021-09-30 15:59:18cd2d0691d61c23c61e776ae39485ac798a3305272eb55be31f0c02dd1f4d9663exeNanoCore
2021-09-24 08:49:17070e90b07cec3c978e33cb74a1848ba503d7ec1fd512a703c34fc5fa1a133ba3exeNanoCore
2021-09-24 08:44:40515fbf67c103e796658acaf24ae3762943a56ebf14337ab46bf9e140f61da0f4exeXpertRAT
2021-09-21 19:17:12bc2a5e452669de43c4f4533c995b515bace2941ea5b45bb537085b204ee5d54bexeXpertRAT
2021-09-21 19:12:512212f465e99a24acc6c23e12a7fd2e02cc8a26a004d05199562b28ecd66e175eexeNanoCore
2021-09-20 13:57:330374ead74fa807fb1737d8829fdb5bad6c93779f6b9eb7162eddabff7a64acffexe 
2021-09-20 12:13:19e8839f74c28c0f7288eac3f8295da3c06f5399752e18e0291188276fd27d3cf1exeNanoCore
2021-09-20 12:13:0885f0af15d708b6a2ea67a30f2a858efc9f32af678a5633289c297f588443cd7aexeXpertRAT