URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: fgggrttload04.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-01 15:05:08 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-12-01 15:05:11 185.252.146.49stimulcom.comNot listedAS204997 FIRSTBYTE-AS- RUno
2020-12-04 07:23:20 195.123.209.144vps.hostry.comNot listedAS50979 ITL-LV- LVno
2020-12-01 15:05:11 92.242.40.244Not listedAS49063 DTLN- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-01 15:05:11http://fgggrttload04.top/downfiles/file.exeOfflineCoinMiner cryptbot exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-04 08:25:2901daa53b7ed02c52d05f5d2e6eb149f8627a2710cffb76db8660d7abcbf3d0afexe  
2020-12-04 07:23:18c75dff34b5bd8dfb80231d26c438d7a90ddddb488b5f75257b45e262c83be829exe  
2020-12-03 21:45:546cd0f7d63aed60b74d6a674b2b5def20a6f17e64c2956f2fa43d977c92ac99e5exe  
2020-12-03 19:33:1893e06c74c2bf72afa35b46a93573ac2f72aeb1624843fe64463c530b355edc7fexe  
2020-12-03 17:58:474423139cbf5043925e71fe7e8734483602a901a9d003c8efacf959975c6e4c7dexe  
2020-12-03 15:34:59dfed5355cc51264ce10b2cca0c7b1631c67931021ea3d0eae22e7bfdd4dc8371exe  
2020-12-03 12:10:35ada1c5359c35e6b70c5a2d5533f9d725f86a1e155c8486bfd2941c9b40478ea2exeCoinMiner
2020-12-03 10:55:02b2a73ee5a9848746da4187766c0137788a5b74a0980d376d152414f69c10b779exe  
2020-12-03 09:52:2336eaf4259bc87d681197d4ded7da1b5ca1e5fb55056cc77002d18ff5525f6027exe  
2020-12-03 05:52:3169057a29d94d0ae3e51c435df396178b093d057db5addcdb273dcd5aedc6e1efexeCryptBot
2020-12-02 16:20:501ddcd6fa1bbbcac7e5ce606f6880e07f83cf366f9035972becc4dae47c62ed4aexe CryptBot
2020-12-02 14:22:0937cb831726dc1877ea59cf5618e4fa224368bbd64a7047dec6fb554a6a17d4c2exeCoinMiner
2020-12-02 12:41:0507cf6baf41520d0e97f2010bf76c2ed10509fbf599209ae4bc250eb375515114exeCryptBot
2020-12-02 11:10:16b87a93613d0004b0d07eb302e75cd7030cb2a4bf466e92cec234e0abd8e6e727exeCoinMiner
2020-12-02 05:36:25e3df9e60142d41ca9b4b585b10b09c0e94c11111219bc4592a35efa3233eeaa1exe  
2020-12-01 19:19:53490a21e6c601a106f4182298a0d595413a0fa92aa27fa8f38213c997e0b858ccexe  
2020-12-01 15:53:55b2803a668ae5609cc458ed4dfb12319c9916713fcca2978934b7fced263a78e8exe  
2020-12-01 15:05:11173f822b40e4ec762c0f94eecc65f044a4a1f25911076b5970f4b04b1e2f98c0exe