URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: iklangratissurabaya.skom.id
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-04-20 09:49:03 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-05-03 19:17:42 178.18.253.214vmi1075528.contaboserver.netNot listedAS51167 CONTABO- FRno
2021-04-20 09:49:05 95.217.50.185static.185.50.217.95.clients.your-server.deNot listedAS24940 HETZNER-AS- FIno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-04-21 17:07:03http://iklangratissurabaya.skom.id/zx/DLI_0251_...Offlineexe opendir abuse_ch
2021-04-21 17:07:03http://iklangratissurabaya.skom.id/zx/DFI_078_4...Offlineexe opendir OskiStealer ext abuse_ch
2021-04-21 17:07:03http://iklangratissurabaya.skom.id/zx/Mkqhnnyzd...OfflineAgentTesla ext exe opendir abuse_ch
2021-04-20 09:49:07http://iklangratissurabaya.skom.id/zx/Uekonhzz.pdfOfflineexe opendir SnakeKeylogger ext abuse_ch
2021-04-20 09:49:07http://iklangratissurabaya.skom.id/zx/Zzsvkpq.pdfOfflineArkeiStealer ext exe opendir abuse_ch
2021-04-20 09:49:07http://iklangratissurabaya.skom.id/zx/Zyxtp.pdfOfflineexe Formbook ext opendir abuse_ch
2021-04-20 09:49:06http://iklangratissurabaya.skom.id/zx/IMG_503_7...Offlineexe opendir abuse_ch
2021-04-20 09:49:06http://iklangratissurabaya.skom.id/zx/Hyjgyn.pdfOfflineAgentTesla ext exe opendir abuse_ch
2021-04-20 09:49:06http://iklangratissurabaya.skom.id/zx/Ddsfrkgc.pdfOfflineexe opendir SnakeKeylogger ext abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Dmdckvjtg...OfflineArkeiStealer ext exe opendir abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Dtiqyjksq...Offlineexe opendir SnakeKeylogger ext abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Famtf.pdfOfflineexe opendir abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Fsbey.exeOfflineexe Formbook ext opendir abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Zeqenylvg...Offlineexe opendir OskiStealer ext abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Nnojr.exeOfflineexe opendir SnakeKeylogger ext abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/bin.pdfOfflineexe Formbook ext opendir abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Mwjhem.pdfOfflineexe Formbook ext opendir abuse_ch
2021-04-20 09:49:05http://iklangratissurabaya.skom.id/zx/Wvlvhrl.pdfOfflineexe opendir OskiStealer ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-04-24 04:44:100ea9c850f9981c98f384cf8c76999a9b3353f50ab8e9e0e222f76e755662b8d2exeAgentTesla
2021-04-24 04:04:4807902223a62c9a0ba72a06bac36299aee04dbeab397d74a28b238d12d8ea0a25rar  
2021-04-21 17:07:03bfd1362c47a94878d60ba84b1a3c2b31459c6faf736ebde42658a54291a77510exe  
2021-04-21 17:07:032b5a82318d126c8d7f49bfcf1a093d349da46924c7bdae0ed0428ddd4549feb3exe OskiStealer
2021-04-21 17:07:03fb91f67073fef8d391ccb08c31183ff2ff00e8a8ca0f71fb5bfce17fb0ddbd26exeAgentTesla
2021-04-21 10:56:0917d2d37f37ecfe23a8e8205c14ade7ee8371cf5c0c407dfbb80113e4c89ee1c8exeFormbook
2021-04-20 09:49:07a77a3638d5c7d0c986f01af3db3f8e92b0acb6c8311c9c20bcca49658c09c975exeSnakeKeylogger
2021-04-20 09:49:06fa8828738a42bd72a2a3862e24c55df073ed80faa4bb813bac3f64efc2f91927rar  
2021-04-20 09:49:06614ea8187654128fc27a51455ab3c8fdbb6d398382cd4d825cf795dbbf5d7966exeArkeiStealer
2021-04-20 09:49:06398e6661f5ca757d0d7c777a0ed8ca1481b5c2df810008164e1f51deefc2ab48exeFormbook
2021-04-20 09:49:069406ad52a87d220e0eae7b7a65a1870a72df536649d9600aca18ddce2263001fexeAgentTesla
2021-04-20 09:49:0656556e830447f0c2c6093cf975f23d275ad7fa9b88d468550a23ccd24b431a45exeSnakeKeylogger
2021-04-20 09:49:053163e680a9b1c5c3b4e64b0fe808b79c5090a69bb3a359fbe18bbf9064dc4517exeArkeiStealer
2021-04-20 09:49:05376fb5dbb339a77640a9ebc77162ab11c63186c48fa6f7c0a1717caacb9b70b6exeSnakeKeylogger
2021-04-20 09:49:050299ed3db28516997c3a162def5ee464a25485241b4eb8cf2a0d3f21fd498f72exe 
2021-04-20 09:49:05b9ecf814b7f31a8ee1445d0256ba7a74f46d3e8f0bb588d10c54cd7f7f0fc202exeFormbook
2021-04-20 09:49:055069de588ac1f23d1cfa14c3ee61e5bc351d0314a5bbac248a5210a9db7e5a8cexeOskiStealer
2021-04-20 09:49:05edc06b40f56182a3097a869414dd97ae1f7d14d6ba5698ae29f1ced7c5c659ecexeSnakeKeylogger
2021-04-20 09:49:05852d3890ed7348734c5f18da1141075129468263b43f82cec8ac7b3e4b9145acexeFormbook
2021-04-20 09:49:056733d0ce3ad0c63755f82e7c05a815f2420cccd7f7775dd9227732f59e7fafffexeFormbook
2021-04-20 09:49:04d5825a48b525fa8f664ff98a98aec5164bbccab0a1bad2d17bb2aafebd148ffaexeOskiStealer