URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: live.goatgame.live
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-26 11:57:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-22 02:15:19 172.234.24.211k8s-svc-lander-02.us-ord.parklogic.netNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-11-22 02:15:19 172.239.57.117k8s-svc-lander-01.us-ord.parklogic.netNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-11-20 04:21:36 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-11-20 04:21:36 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-11-06 18:07:17 172.236.126.142172-236-126-142.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-11-06 18:07:17 172.236.126.145172-236-126-145.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-11-06 18:07:17 172.236.126.225172-236-126-225.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-11-06 18:07:17 172.236.126.234172-236-126-234.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2021-07-26 11:57:05 104.21.70.98Not listedAS13335 CLOUDFLARENETn/ano
2021-07-26 11:57:05 172.67.222.125Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-07-28 17:05:05http://live.goatgame.live/userf/2202.exeOffline32 clipbanker exe zbetcheckin
2021-07-27 17:48:04http://live.goatgame.live/userf/29.exeOffline32 exe zbetcheckin
2021-07-26 23:12:11https://live.goatgame.live/userf/3003.exeOffline32 exe zbetcheckin
2021-07-26 11:57:05https://live.goatgame.live/userf/2201.exeOffline32 exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-07-28 17:05:054aadef23f11dd8fdc214bea41b6f7819bf723f20f581fec84d38e3ab1d08ad94exeClipBanker
2021-07-27 17:48:04ae23b1d2d4ab785d755af246d6d82fca9fab091dbb4f886ac136812805354efdexe 
2021-07-26 23:12:099df54d4e8faccc9aff9d8ea76a8aaf9e1f64ef0e32dbe9904b4654cee4884e1eexe 
2021-07-26 11:57:0493dcedb1435aa44a336b407c0044da614a3a15336995c5547abe70c5e741a35fexe