URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2024-11-19 04:01:36 | 3.5.128.185 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2024-12-20 20:52:54 | 3.5.129.118 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-11-20 01:55:17 | 3.5.130.38 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2024-11-20 21:59:19 | 3.5.132.192 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-10-22 11:09:51 | 3.5.133.173 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-02-21 13:04:46 | 52.219.229.114 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2024-11-19 23:47:01 | 3.5.128.18 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-11-21 07:50:40 | 3.5.132.187 | s3.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-01-12 13:57:21 | 52.219.105.26 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2024-12-12 16:41:02 | 52.219.178.242 | s3-r-w.us-east-2.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2024-11-17 10:04:11 | https://gersgaming.s3.us-east-2.amazonaws.com/S... | Offline | RemcosRAT |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2024-11-17 10:04:09 | e483ca3bc78e49f0ceef3406ea963101fe1d2b08b4bace6945ac9298222b8c37 | msi | RemcosRAT |
