URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | ntk-indo.com |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Blocked |
| AdGuard : | Blocked |
| Cloudflare : | Not blocked |
| ProtonDNS : | Blocked |
| OpenBLD : | Blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2021-05-06 13:36:03 UTC |
| Total malware sites : | 3 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 3 (100%) |
| A record(s) observed : | 3 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 18:09:45 | 120.89.93.83 | ip-83-93-static.layerspeed.co.id | Not listed | AS24207 EXPRESSNET-AS-ID | ID | yes |
| 2022-04-15 01:10:58 | 54.254.127.206 | ec2-54-254-127-206.ap-southeast-1.compute.amazonaws.com | Not listed | AS16509 AMAZON-02 | SG | no |
| 2021-05-06 13:36:12 | 52.74.11.221 | jasmine-ses.webpacific.com | Not listed | AS16509 AMAZON-02 | SG | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-05-07 04:21:08 | http://ntk-indo.com/ok/7UKtv01ZdPSbdAD.exe | Offline | AgentTesla | |
| 2021-05-06 13:36:13 | http://ntk-indo.com/ok/gjfUcq8ScvVw2L9.exe | Offline | AgentTesla | |
| 2021-05-06 13:36:12 | http://ntk-indo.com/ok/pCt29lTpXMToITU.exe | Offline | AgentTesla |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-05-07 04:21:08 | f7936247eafae0bac645ae23aca25aa4c64d5ba7434d7f57daedccd0d8f8324c | exe | AgentTesla | |
| 2021-05-06 13:36:13 | 3d623f12fae326524e0e1c798644d024e90e62622c0ea9479d43003662add5f5 | exe | AgentTesla | |
| 2021-05-06 13:36:12 | e6dc8362966f08fdd6a8d2e818ae605c6c242a3218a5b9e95d9a0f795d9b377c | exe | AgentTesla |
ID
SG