URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ghost00710.ddns.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-11-18 20:16:03 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-22 02:47:46 107.150.19.240107.150.19.240.static.quadranet.comNot listedAS36352 AS-COLOCROSSING- USno
2020-11-24 00:50:22 35.223.59.207207.59.223.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-11-18 20:16:17 154.127.53.127Not listedAS396073 MAJESTIC-HOSTING-01- USno
2021-05-08 15:46:35 91.46.144.52p5b2e9034.dip0.t-ipconnect.deNot listedAS3320 DTAG- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-11-19 05:38:06http://ghost00710.ddns.net/2/mcaceres.exeOfflineAgentTesla ext exe Jouliok
2020-11-18 20:16:20http://ghost00710.ddns.net/1/formbook.exeOfflineexe Formbook ext jstrosch
2020-11-18 20:16:17http://ghost00710.ddns.net/1/xgarnica.exeOfflineAgentTesla ext exe jstrosch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-11-19 05:38:06e0cb1fe1256cbf26178ffac07b55cdbd9ed9e9cd53d1d2642f8ba43db84cf8b4exeAgentTesla
2020-11-18 20:16:1686a499bef345b155ab8111717c6ebb408b3cbbade895b9a8fd1c700180e528e4exeAgentTesla
2020-11-18 20:16:168abe9e652522b04474493b15bb017c89b5f295000d363fd94b0961874fc1c4ddexeFormbook