URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2021-11-21 04:08:43 | 198.54.116.248 | server64-5.web-hosting.com | Not listed | AS22612 NAMECHEAP-NET | US | no |
| 2021-07-31 11:31:40 | 20.106.130.57 | Not listed | AS8075 MICROSOFT-CORP-MSN-AS-BLOCK | US | no | |
| 2021-06-05 19:57:15 | 40.114.107.52 | Not listed | AS8075 MICROSOFT-CORP-MSN-AS-BLOCK | US | no | |
| 2021-02-17 21:45:46 | 198.187.31.103 | premium10-5.web-hosting.com | Not listed | AS22612 NAMECHEAP-NET | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-02-17 21:45:46 | http://nikhorizon.com/xcitam.zip | Offline | Dridex |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-02-20 07:29:50 | 2fd6474fd5dcea634cf2b02fc841e8914a6a00a2fca535b11a4f663f1c5e67e6 | dll | Dridex | |
| 2021-02-18 21:05:21 | 005ff8ba451f9d980209dbaf03e72a2733652d2ed4b6f74c54a2e238a543d88c | dll | Dridex | |
| 2021-02-18 19:55:57 | e1eed391c34bb63dece80451870e1fac33183d60ebcc971317e9912a0a4ec020 | dll | Dridex | |
| 2021-02-18 09:00:53 | 6860b23431c03b24449bf266854150b9a1afe5978b84f53803d446696a0e3621 | dll | Dridex | |
| 2021-02-18 04:02:25 | 582f062af319c7e2f23be49d321125334f497b9eebe9ac997bbd00d883020e68 | dll | Dridex | |
| 2021-02-18 02:27:36 | 2c3669a8c76524c2c1eb1f17a16a0612d884410b1de65b9283d3e4e753d14272 | dll | Dridex | |
| 2021-02-18 01:15:04 | 9f9d731d4f372b884f32bd62da392e75eba0cec44a0045465bb830269ecbe12b | dll | Dridex | |
| 2021-02-17 21:45:45 | 3391f266ecea6f5fe101269bb944ab7a4d79be9f3d2da0823b839ca485ff984f | dll | Dridex |
US