URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mkwxstarserver17km.xyz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-19 09:39:07 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-19 09:39:08http://mkwxstarserver17km.xyz/atx777.exeOfflineexe Vidar ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-19 13:39:12666a5a0354a5f37b2de59a69f8dab856b9f7bb478bbdd2a996e040fe2b839650exe 
2020-07-19 13:03:124f12921b7658d61199feebfe7d677fedfdf309fcdc668852e805970ec78fb125exe  
2020-07-19 12:17:58ddbfe639566c486d1a6d726efc636c1ec115e66e6d767f1813856e2e26ea8020exe  
2020-07-19 11:15:29290980462cb21d689c20276b2aac1aa8dc704b237235723e847199a109218e1eexeVidar
2020-07-19 09:39:08e02cba19974fd2907cf6bcc094d59fa67fc42a01a6804bbede6e6460206f4019exe