URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ndddb.world
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-03-16 15:51:09 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-03-16 15:52:16 104.21.20.155Not listedAS13335 CLOUDFLARENETn/ano
2023-03-16 15:52:21 172.67.193.43Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-03-16 15:52:21https://ndddb.world/gallery/photo_004.exeOfflineAmadey dropped-by-PrivateLoader RedLineStealer ext andretavare5

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-03-20 06:38:217bcaeb136bf2225f28ae991de867aa2199ff31d94c2f12c6e6c8e01393eb253aexe RedLineStealer
2023-03-20 04:00:431201ecc3683863fbe00a4801453b9569f11fc66e047c59c91777ef8c8c9dd3bfexe Amadey
2023-03-20 03:36:25fd8d15c9c3f0432e4db41c4acbeeb496d94f95498b2c8c82a519a6482c578c30exe RedLineStealer
2023-03-20 01:18:427b492dd3c4e6928a35fd17405b5f93899976603af83c53fecd0337ed3e682faeexe RedLineStealer
2023-03-19 23:53:5816dfd4473796b1b44e505e2002b439a071b2b24f7248377d5607f8f5f34d2102exe RedLineStealer
2023-03-19 21:38:20c252fbe29c318d2d55f46f8ed72affabc34ac6b24fac4d8ac1a133bbe22fbb13exe RedLineStealer
2023-03-19 20:56:503378f1c92e188a51a447f623d025f694d3622be5d1bd0426d78e0f1fc5b1c7a6exe RedLineStealer
2023-03-19 19:06:046eea404c0d4a7f9275142d61ba08d679ce1efdf020662a5a31a531945f6d0ac9exe RedLineStealer
2023-03-19 19:04:26e6d1e84a896042511fe40a7bfaaa1d04694c410bb98e5a3868b71c13ff3a6122exe Amadey
2023-03-19 17:52:2812fa295986b5a41b8bb496009e1508a4b521f27a33e233657e1602f61d58ba89exe RedLineStealer
2023-03-19 16:50:03e1be3985f0706b94bb55591aa14a0d5c252f8685ca31c174e3241e88b6bd67dcexe RedLineStealer
2023-03-19 14:30:1175c3df3f8e08131d26fa272865bcc115a1a7ca4105b5166c670f33eba8907c90exe RedLineStealer
2023-03-19 13:23:35902f8d2ceffb7da91ea584ea0ca53616377cda152d184c85c4bd66e6bb6cfd50exe Amadey
2023-03-19 10:37:05cb9ddff1daa05e888682cda741056028296a3c82ac48f1ffa4f9228a39aefdbaexeRedLineStealer
2023-03-19 08:58:245d276ec8415933f4a88bfcf54cba14b9352c09f7343d8149d70f1a0fad784962exeRedLineStealer
2023-03-19 06:09:24c21baf813837da9edaa04bf813f01338f9159f8e349e90764067607728723813exeRedLineStealer
2023-03-19 04:03:12693c37a1a0442fb8d8141d447a92da619f077ecb4d6bbf14d0697bca2f17a9c7exeRedLineStealer
2023-03-19 01:34:11da3001e0f32a2b6215fa1a76a5cb9c6aba29312f3199999c58de3d1dcaa23355exeRedLineStealer
2023-03-18 23:38:282bab0d267c652080d420cf7e6733d45fa27507d2abf7369c27cb4671c3fd7b01exeRedLineStealer
2023-03-18 22:39:23595828d15dcdbc852e32486b78048bef6ba0fd65bd20326f4a391f4f78d4f281exeRedLineStealer
2023-03-18 20:20:44e4bb034ae47776c7c1553e74541aae6a674efe94c9850992802798dba34bc092exeRedLineStealer
2023-03-18 18:53:08585f7ca66d86edcf3abead7ab1d5e27fde65fbc3a340d2c4956d32f019398d56exeRedLineStealer
2023-03-18 16:29:46a460f28077b388b7191a1fabbc759d4c242c46336a3cd94d62d9d6a12a5d791fexeAmadey
2023-03-18 13:52:0121d124aa8f6847289416f557bcb821499219f86201b9057861dee1ca0a151c79exeAmadey
2023-03-18 11:14:582866c0db33e8cb0a6e0d596370bcb3d79ac5be45a14bf26564fdf96810ac4489exe RedLineStealer
2023-03-18 10:56:17ac63e0491cf31a60d507f9dffe4b5f402f9047d5f68763ccdc0d64580395433fexe RedLineStealer
2023-03-18 07:39:155e0a4220b0f05b7699b2e3d26aa0c1f99f34909f616e2a4d1cbda59d9608bc6eexe Amadey
2023-03-18 05:16:05de543b46ec02b2a12f027e19fe72269445fe28adc5c8f60c909861742be9fab2exe RedLineStealer
2023-03-18 02:59:49bd4275e2ed036d82ad1607a306e1c85ecd343fe57c70b4788a59e06678a7ef06exe RedLineStealer
2023-03-18 02:34:02208e7706c5c61d1f17ec1b6aaa6284079e010d003f2e20d9c8437cc0f619c86fexe Amadey
2023-03-17 23:15:162094742f947cb130c87d1b63f464671297d2c2169cd8dc95038fabf171dc80bfexe RedLineStealer
2023-03-17 22:32:00433a636ac3d86cf391a333b88508c29907dc89f2f2f27ab8ad4ed18d336399ecexe RedLineStealer
2023-03-17 20:47:00f77fc5f71d18fc906e33f7e105c6a43ae0480b2e3272f1ffd4edb1c421979f43exe RedLineStealer
2023-03-17 20:15:51fa99588104ac3ce6ff68f26fda86ff717d8003747bf85216d095360ec4c675dcexe RedLineStealer
2023-03-17 17:51:07b258debdbe723197136b34009aeecd93697b22bd7537f167e04de9b054776ce7exe Amadey
2023-03-17 17:47:55eb072d4f5379ae0411209c612ac3f0ff670ec433a0289fb57624f6c5a6b8fff3exe RedLineStealer
2023-03-17 15:24:4327939e7d62ea8bb1c3e9f1216dd4b7ce5a9e8e8b264f3ac6038468a484ffc2beexe Amadey
2023-03-17 13:51:13f6bd22d371a64327831853fa6bbd9a57c8da0cf2d15b8af45dd41290b512d411exe RedLineStealer
2023-03-16 19:53:426a5df5b84e44bbe5ce5cce5ccd6c82a26ebd34b14dd530b4ec9a5a7115a28927exe RedLineStealer
2023-03-16 18:32:4325d21e4fc131a2fc482ad5257402e435f9679e6037797884e5d1ab13a8890d0aexeRedLineStealer
2023-03-16 15:52:10c6ce5c681f8dc1c98524c0f691e9dc783a5e6ff70355f61513e705dd532e67a9exe Amadey