URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: nhaider.com
Domain registrar:Namecheap -
Domain registration date:2020-08-13 15:59:05 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-11-24 18:00:04 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-11-24 18:00:05 68.66.248.52nl1-ss17.a2hosting.comNot listedAS55293 A2HOSTING- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-11-24 18:00:05http://nhaider.com/aloe.exeOfflineAgentTesla ext AsyncRAT ext exe rat abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-12-09 22:17:51c8316fc3f2645d367608caf4a93687819bb27258285dadc9ba20d9ea0fb9386eexeAsyncRAT
2021-12-09 09:14:260bd4aa36cf9aa255822ad523b07c55d66fbaddbfff978e22160b875655f84766exeAsyncRAT
2021-12-08 23:48:05b6719cebb1dab3d8a2fd2cc2abb58cd733f3d0348ef7997ac9e49103dd1dbd7aexe AsyncRAT
2021-12-08 08:24:14f7c10a4fe6b865a1107d02bbafa70404bd4eb1c5defcfd309621fd706d02d914exe  
2021-12-07 20:08:1742447e681c1f1219cf74cf99c6f5e54d8dd7fe739582a10fed4977cdcf3e41daexeAsyncRAT
2021-12-07 03:06:48ea5f4670002af8c3383f591d38b2ed912d1d2e144df8bf59d849e5c77e9c7de8exeAsyncRAT
2021-12-06 14:15:13f05cde9f4e88822acaeda030013c839ba2b46ee74dda0849ad83fb455552e446exeAsyncRAT
2021-12-06 12:42:071ca98eb48f6147f3e441d882595aee97b98d450375e0c0df14fc61d6b115d732exeAgentTesla
2021-12-06 03:12:117b6b38daac33765205fa376e53eda45dedf102d39365208a083bfd324c5a13c0exeAsyncRAT
2021-12-03 00:29:0601df9831c3b7a6bd02057cef4c876c556052a5b0bdd40f9ffb20ae263ec31683exe AsyncRAT
2021-12-02 08:02:247af23fc8bba3b13cf0f9e89156a922b4c1689aff2c2e3a156bf59d8bdfe1b075exe AsyncRAT
2021-12-01 23:21:564b0daee330f56dd0578f2a7fdd845e6d4cd51153af10c1495b371f6b1647410aexeAsyncRAT
2021-12-01 23:07:01a4613ade02fe531898edecde3047f46589d57743420d4344cf98743a71b5b107exeAsyncRAT
2021-12-01 13:30:20ca843c4f194a6ab981f19d9670d0c85143bd9c910a8e598261a5373bcbd6401dexe AsyncRAT
2021-12-01 05:53:286c9cf7ef2549a5e8ebc230ef871041eb8664a8a338782298fb1f7473664be0a0exe AsyncRAT
2021-12-01 05:18:25cc200d12da2b566432b8956a0d3a7117e23ba18de7df395932b58d083e3aca23exe AsyncRAT
2021-11-30 07:06:330726de584e13e8ca142681b7c6c3949415e00213425b6c57e57fe499d8fe275aexeAsyncRAT
2021-11-24 18:00:04e2fceae16b2385a8e596aea841a593482101741ab8f1a3344b95d001dd9ea0e6exeAsyncRAT