URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gitcdn.link
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-10-25 09:04:09 UTC
Total malware sites :20
Online malware sites :0 (0%)
Offline Malware sites :20 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-29 19:04:57 185.53.178.99Not listedAS61969 TEAMINTERNET-AS- DEyes
2025-10-29 22:32:48 104.247.81.99Not listedAS206834 TEAMINTERNET-CA-AS- CAno
2025-04-27 09:00:16 185.53.178.50Not listedAS61969 TEAMINTERNET-AS- DEno
2025-10-17 23:42:10 104.247.82.50Not listedAS206834 TEAMINTERNET-CA-AS- CAno
2022-10-25 09:04:10 104.21.234.84Not listedAS13335 CLOUDFLARENETn/ano
2022-10-25 09:04:11 104.21.234.85Not listedAS13335 CLOUDFLARENETn/ano
2025-08-28 03:07:14 54.72.9.51ec2-54-72-9-51.eu-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- IEno
2025-09-26 03:32:24 99.83.175.80a2e6b661ca0e4c4c4.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-06 18:15:10http://gitcdn.link/cdn/gta11113/fgjhfh/main/chr...Offline32 exe zbetcheckin
2022-11-06 17:07:24http://gitcdn.link/cdn/gta11113/fgjhfh/main/dmi...OfflineCoinMiner abuse_ch
2022-11-06 17:06:20http://gitcdn.link/cdn/gta11113/fgjhfh/main/ofg...OfflineLaplasClipper abuse_ch
2022-11-06 17:06:17http://gitcdn.link/cdn/gta11113/fgjhfh/main/sdf...Offline abuse_ch
2022-11-06 17:06:16http://gitcdn.link/cdn/gta11113/fgjhfh/main/chr...Offline abuse_ch
2022-11-06 17:06:15http://gitcdn.link/cdn/gta11113/fgjhfh/main/ofg...OfflineLaplasClipper abuse_ch
2022-11-06 17:06:14http://gitcdn.link/cdn/gta11113/fgjhfh/main/dmi...OfflineCoinMiner abuse_ch
2022-11-06 17:06:12http://gitcdn.link/cdn/gta11113/fgjhfh/main/dmi...OfflineCoinMiner abuse_ch
2022-11-05 18:59:12http://gitcdn.link/cdn/gta11113/fgjhfh/main/P2P...Offline abuse_ch
2022-11-01 09:54:09http://gitcdn.link/cdn/gta11113/fgjhfh/main/ofg...Offlineexe LaplasClipper vxvault
2022-11-01 06:33:12http://gitcdn.link/cdn/gta11113/fgjhfh/main/chr...Offlineexe abuse_ch
2022-10-29 18:51:12http://gitcdn.link/cdn/gta11113/fgjhfh/main/min...Offlineexe abuse_ch
2022-10-29 18:51:09http://gitcdn.link/cdn/gta11113/fgjhfh/main/chr...Offlineexe abuse_ch
2022-10-29 18:51:08http://gitcdn.link/cdn/gta11113/fgjhfh/main/ofg...Offlineexe LaplasClipper abuse_ch
2022-10-28 07:17:10http://gitcdn.link/cdn/gta11113/fgjhfh/main/jof...OfflineArkeiStealer ext exe abuse_ch
2022-10-27 09:34:10http://gitcdn.link/cdn/gta11113/fgjhfh/main/ofg...Offlineexe LaplasClipper vxvault
2022-10-27 09:28:05http://gitcdn.link/cdn/gta11113/fgjhfh/main/ro5...OfflineArkeiStealer ext exe vxvault
2022-10-27 08:24:10http://gitcdn.link/cdn/gta11113/fgjhfh/main/Tje...OfflineCoinMiner exe abuse_ch
2022-10-26 09:43:09http://gitcdn.link/cdn/dima11113fg/erty/main/of...Offlineexe LaplasClipper vxvault
2022-10-25 09:04:11http://gitcdn.link/cdn/prostoprosto/sdgdfsg/mai...Offlineexe LaplasClipper vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-02-08 02:07:462755e497b848f9ea371eecd5b577100a4db1d386175c882bbff195dd1621a2e7exe  
2023-02-03 14:04:166748d6e787f74616e885dabef03fe347e24a3c23e2a1353b508ee1ffad68d2e5exe  
2023-01-29 07:50:48923c27b4a9e148d4a396c4f99775f0dde86dd1646a92b178f5f43cbf8c097de3exe 
2023-01-12 11:25:488159ffe3bd2b8ab295c47067e1262a2878658e57c7ba32ff1ddc254343a5281bexe  
2023-01-10 23:44:326e8e68da18737671a66ebb06cceef1252491cd901dfd5b83755c1a6a48e1ac03exe  
2023-01-10 05:21:09b67419fa7945c2ce50dcd5ef80626d7e6b86b0c8df932a08e165fa16a7fa75efexe  
2023-01-10 01:40:3292ccd5dc7dcb5b9e14b5e199522dde02839ae0ab03a34804d040effbf3a43f1aexe  
2022-12-20 09:21:5342e2a823590f3aeded0535f4f01f679e13ecf76e191a392d03de9ac96ff484e4exe  
2022-12-02 10:24:228ae3946afd2bbef2c3f995ac81f68e54475177fafb0b4c3a5979f1c4f67f09ffexe  
2022-12-01 08:56:552331faa6a5222afb3439d62dbd954cf3d060d75b929904b61ecf9fa46e7b4118exe  
2022-11-30 04:31:439e8dd10edcfd7ac529e3c927e80ea57632021bd0eda9cc4867b12c464b261b21exe  
2022-11-29 01:11:05bd1bbda6f6404a1e107f3bd6ee3827c853a3155519b215aac5217457b039840bexe  
2022-11-28 09:24:199c79d8775d8890a0f4606066a1fdca1edc1d00f1a53745d9ab5d912150e7a0b0exe  
2022-11-27 04:00:57e793a14db4636465602b4a2175b43aec9745fe1d76a3de2c52c5a8f9a7b5eaceexe  
2022-11-26 22:50:068846374e647850e01a6ea28a209200a353095ed65ad0116b607c830c56419235exe  
2022-11-25 16:45:2690c7f51dd7e2a99af8d94fe5953289f08472de216c710642ab9b6f57310f4872exe  
2022-11-23 08:50:480e93767c3a7d5303e0e29b12d40eb414efc87cf398c02603e9d377239838c6c7exe  
2022-11-18 14:55:1547fc8f57fe798f4ec9fbee90e6828e0d7839155010eed2ff8a6df6d78b90bc09exe  
2022-11-17 10:32:29a6f2c78d1f76699dcff483a7fae1b34334cc9e7d3ba53bd38804048ea5bd7474exe  
2022-11-16 20:44:5756e4765bbd31dd07c34d6f1538d5c47dcaac7d79854c2fde0a1dde11533f639cexe  
2022-11-15 20:02:18ac5ba0767c13851c796de781b9258d2030ca444804ec8a306346d3a428b83b3fexe  
2022-11-13 02:57:448e8f4bb8eedf878858e182d2c5a84da27bba30b8d709e9abaf4f109b01f5c943exe  
2022-11-13 02:13:0762014ab3b40185b58cfa311254570f0a56ff803f081c8523b2d980afca08b6f3exe 
2022-11-06 17:07:2478e0a8309bc850037e12c2d72a5b0843dcd8b412a0a597c2a3dcbd44e9f3c859exe CoinMiner
2022-11-06 17:06:20fc8db07536652808292ddca99645f2e64431baf7f72ba1a8d358229e16fafbd8exe LaplasClipper
2022-11-06 17:06:1755af8940100b432c2873c1b4ec0068516ec9459ae313fd1d3ac2957ef7abe033exe  
2022-11-06 17:06:16206e04e76f1cc2b2c7eac810aecb4df3dd697878fc37321aad2a01a7bd7534d5exe  
2022-11-06 17:06:15fc8db07536652808292ddca99645f2e64431baf7f72ba1a8d358229e16fafbd8exe LaplasClipper
2022-11-06 17:06:1478e0a8309bc850037e12c2d72a5b0843dcd8b412a0a597c2a3dcbd44e9f3c859exe CoinMiner
2022-11-06 17:06:1278e0a8309bc850037e12c2d72a5b0843dcd8b412a0a597c2a3dcbd44e9f3c859exe CoinMiner
2022-11-05 18:59:12cffe6e5ff4988a9aa30fcce3f005db402986bf5689516976fca483310265a2a4exe  
2022-11-01 15:19:027885afbde6a591dea50db82dd9d125e1ea2cd66c827916f8fc3991a81cd82cc4exe  
2022-11-01 09:54:0997ed6b5f63eabd5b09e6a8355673a34ade88b42ddb04d5d56219aa5d660f4e04exeLaplasClipper
2022-11-01 06:33:12b4a3efe944f33e75925e2d131097bbe1228b5eb34d6c24ec02bc58834443e5a7exe 
2022-10-29 18:51:1207f6ef50cbbd99c567ad8dcdc807e17ecd558004f7fd41dd7b70271239902258exe  
2022-10-29 18:51:099ad3953feab6501e2fa2fc73704a67f4d7ea06ee0516dadd3e2b032f7a4d3406exe 
2022-10-29 18:51:0897ed6b5f63eabd5b09e6a8355673a34ade88b42ddb04d5d56219aa5d660f4e04exeLaplasClipper
2022-10-28 07:17:101eccbdefba2e01b0f5b470d3881f7dc3b3c488d42f5ddbb7c72474dd11a011cbexeArkeiStealer
2022-10-27 09:34:10453755b23c6df8cb1b2955135fe5aa8295eb0ce984f946967847b59cd87239e2exeLaplasClipper
2022-10-27 09:28:05f4d0518740e6b904a853dc465dc28b7d07b8960af83347dad891795fa36b1866exeArkeiStealer
2022-10-27 08:24:10cd71732fc0073cf2dd0af243f6b10b3ec0d2cd19e9ba6b2e7e9b82d08f313a7dexeCoinMiner
2022-10-26 09:43:09453755b23c6df8cb1b2955135fe5aa8295eb0ce984f946967847b59cd87239e2exeLaplasClipper
2022-10-25 09:04:10453755b23c6df8cb1b2955135fe5aa8295eb0ce984f946967847b59cd87239e2exeLaplasClipper