URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2022-01-21 23:50:43 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2022-01-21 23:50:43 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2022-02-14 12:05:24 | 188.114.97.12 | SBL687666 | AS13335 CLOUDFLARENET | n/a | no | |
| 2022-02-14 12:05:24 | 188.114.96.12 | SBL687667 | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.16.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.112.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.96.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.80.1 | SBL681411 | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.64.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 18:20:29 | 104.21.48.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-10-13 13:14:15 | https://hkszcorporatesolutions.com/j99zauz.jpg | Offline | Dridex |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-10-24 21:42:07 | e901ff5a1322eada6df81174d4c5fe7b03fd933dce9a24c83d25e1d1042e6724 | dll | Dridex | |
| 2021-10-13 20:33:14 | 6f8610fc635355d0fb40184e38102c5ce90b18a0074ec60a64e7fda68f62cee8 | dll | Dridex | |
| 2021-10-13 18:02:05 | b585a54184f3c933f4e0e38cadec4ada8950278bbdf69970b6f1539865772e36 | dll | Dridex | |
| 2021-10-13 15:15:11 | fcf66789fa10b16d768adfb11af92bb98f37fa22d28dd591c56b4628acd4951a | dll | Dridex | |
| 2021-10-13 14:35:03 | 5c3838607d36367564b0a9e46973f7d95b1d13862657d552feabbf31cd9f7549 | dll | Dridex | |
| 2021-10-13 13:38:36 | ccc3dbe6e59089f3f31ceca66125cf024ae13c583275474e50af07788eafd89d | dll | Dridex | |
| 2021-10-13 13:14:13 | f183231649f6afa787e8876c902d6d51b354fff0f2e9f218ffce0f469ad37599 | dll | Dridex |
