URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-19 23:22:20 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-09-19 23:22:20 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-10-14 03:17:26 | 104.21.94.207 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-10-14 03:17:26 | 172.67.140.12 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-09-13 10:22:54 | 103.157.97.54 | mail.newton.co.id | Not listed | AS55688 BEON-AS-ID | ID | no |
| 2025-04-27 11:58:51 | 104.21.112.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 11:58:51 | 104.21.16.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 11:58:51 | 104.21.32.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 11:58:51 | 104.21.48.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 11:58:51 | 104.21.64.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-09-16 10:23:51 | https://newton.co.id/nextcloud.newton.co.id/par... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-09-16 12:05:27 | 723ad8fff1ad9fbb63972923c3e1ea2c49e11db23f74c5ae3acb860016b03853 | doc | Heodo | |
| 2020-09-16 11:27:28 | 370530ab4dc609acab76596c874f60ec5b1969fe7db26584a036286572a7e0a4 | doc | Heodo | |
| 2020-09-16 11:13:38 | 7e68cc88e523c58c4a815deaad7fd55963185aa1874434451f6f5f216f489e43 | doc | Heodo | |
| 2020-09-16 10:58:39 | ed6a09b946bf2d0e165e127338627c31a14251c59de261af19869571edab0ae5 | doc | Heodo | |
| 2020-09-16 10:47:55 | d8e2fd3919df4b2bd8dc7d2910719e451244b8b4cb85280567eda7ca8dc755d8 | doc | Heodo | |
| 2020-09-16 10:23:51 | cad02354c378e66ee28f1f256b75d0f535a9194e63a01964d3d11be1b791ae2f | doc | Heodo |
ID