URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: getactivators.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-15 08:47:03 UTC
Total malware sites :1
A record(s) observed :21

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-07 13:31:19 13.223.25.84ec2-13-223-25-84.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USyes
2025-08-07 13:31:19 54.243.117.197ec2-54-243-117-197.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USyes
2025-07-04 22:28:13 13.216.111.180ec2-13-216-111-180.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-23 08:46:12 44.213.46.149ec2-44-213-46-149.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-04-28 04:55:09 52.86.6.113ec2-52-86-6-113.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-04-28 04:55:09 3.94.41.167ec2-3-94-41-167.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2021-03-13 20:45:03 3.223.115.185ec2-3-223-115-185.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2020-12-31 11:15:21 91.195.240.94Not listedAS47846 SEDO-AS- DEno
2020-12-15 08:47:10 172.67.207.225Not listedAS13335 CLOUDFLARENETn/ano
2025-05-02 12:25:20 3.18.7.81ec2-3-18-7-81.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-15 08:47:10https://getactivators.com/getactivators.txtOfflineArkeiStealer ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-15 08:47:0902520a277c94450cc2f969e332af38eb0558c403191842030a9690f49951ec11exeArkeiStealer