URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-19 14:50:28 | 3.5.148.163 | s3-r-w.ap-southeast-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | yes |
| 2025-09-27 06:34:24 | 3.5.149.72 | Not listed | AS16509 AMAZON-02 | SG | yes | |
| 2025-09-24 22:05:54 | 3.5.149.87 | Not listed | AS16509 AMAZON-02 | SG | yes | |
| 2021-01-16 20:02:37 | 52.219.124.187 | s3-ap-southeast-1-r-w.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | yes |
| 2020-11-05 03:08:21 | 52.219.124.207 | s3-ap-southeast-1-r-w.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | yes |
| 2020-10-24 00:29:23 | 52.219.128.71 | s3-ap-southeast-1-r-w.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | yes |
| 2025-08-06 03:27:15 | 52.219.164.126 | s3-ap-southeast-1-r-w.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | yes |
| 2025-08-21 08:36:07 | 3.5.146.153 | s3-r-w.ap-southeast-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2025-09-24 23:53:40 | 3.5.149.189 | Not listed | AS16509 AMAZON-02 | SG | no | |
| 2025-05-04 20:07:48 | 3.5.150.129 | s3-r-w.ap-southeast-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-09-30 11:45:07 | https://f-sec-mail-test.s3-ap-southeast-1.amazo... | Offline | Anonymous | |
| 2020-09-30 11:45:05 | https://f-sec-mail-test.s3-ap-southeast-1.amazo... | Offline | Anonymous | |
| 2020-09-29 08:40:07 | https://f-sec-mail-test.s3-ap-southeast-1.amazo... | Offline | Anonymous | |
| 2020-09-29 08:20:07 | https://f-sec-mail-test.s3-ap-southeast-1.amazo... | Offline | CobaltStrike | Anonymous |
| 2020-09-29 08:17:07 | https://f-sec-mail-test.s3-ap-southeast-1.amazo... | Offline | CobaltStrike | Anonymous |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-09-29 08:40:07 | 58e33ed37a9e700595445b77ca13b04be2409adcc983fe1bafc096f7e9a8fa97 | docx | ||
| 2020-09-29 08:20:07 | d44d718c247b1664861f987b1725314f152e43e7c1da80b163f812e1b7c3fdb7 | exe | CobaltStrike | |
| 2020-09-29 08:17:07 | 05815c1e6e37cf16bb24c456836069a7709df19505708d26f503ff46360001ba | exe | CobaltStrike |
SG