URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-10-25 15:01:02 | 31.97.128.168 | srv989917.hstgr.cloud | Not listed | AS47583 AS-HOSTINGER | US | yes |
| 2020-04-13 13:33:10 | 160.153.131.199 | 199.131.153.160.host.secureserver.net | Not listed | AS21499 GODADDY-SXB | US | no |
| 2020-04-28 18:09:57 | 192.124.249.2 | cloudproxy10002.sucuri.net | Not listed | AS30148 SUCURI-SEC | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-04-13 13:33:10 | http://mobile-fueldrain.co.uk/sport/rockstar.php | Offline | exe Trickbot |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-04-13 16:23:32 | d979a633b4c59b416997f1e3926273e31f56b68c217813a56ae5d3deff3814bf | exe | TrickBot | |
| 2020-04-13 15:52:31 | 31374c09ed2fd78785e6e82850b4ab3cde011244f32aa98f238238df1584cda7 | exe | TrickBot | |
| 2020-04-13 15:26:51 | 5b42929b3ea6e3671d336309a35adff6767c66efb1aa2ff162d9daf1154f4119 | exe | ||
| 2020-04-13 14:49:40 | 37d4f63c73dfbcdb5bb9795c2980a05231d35c27d17a2dd7a0b8215ade98ab45 | exe | TrickBot | |
| 2020-04-13 14:35:24 | 9294524378bba310b2bf22cd2ced2601c05e4fd2debe3a65e6d2e900fb0e89c5 | exe | TrickBot | |
| 2020-04-13 14:10:32 | 9ba7c20ab046437d4918c104c232bda87308b5c5e2b0d9f658870994105f72c2 | exe | TrickBot | |
| 2020-04-13 13:33:10 | 33c7be4a31ebdc3d483fa21f032c4ccef1037a83f9f3034343fc149ef86a341e | exe | TrickBot |
US