URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-08-10 16:28:49 | 13.223.25.84 | ec2-13-223-25-84.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | yes |
| 2025-08-10 16:28:49 | 54.243.117.197 | ec2-54-243-117-197.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-05-25 20:35:17 | 13.216.111.180 | ec2-13-216-111-180.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | no |
| 2025-04-29 03:31:39 | 52.71.57.184 | ec2-52-71-57-184.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-04-29 03:31:39 | 54.209.32.212 | ec2-54-209-32-212.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-04-28 06:28:25 | 3.94.41.167 | ec2-3-94-41-167.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | no |
| 2025-04-28 06:28:25 | 52.86.6.113 | ec2-52-86-6-113.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | no |
| 2025-05-06 08:15:11 | 34.205.242.146 | ec2-34-205-242-146.compute-1.amazonaws.com | Not listed | AS14618 AMAZON-AES | US | no |
| 2025-05-06 08:15:11 | 54.161.222.85 | ec2-54-161-222-85.compute-1.amazonaws.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2020-11-18 12:14:27 | 200.58.98.122 | vps-3219024-x.dattaweb.com | Not listed | AS27823 Dattatec.com | AR | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-11-18 12:14:27 | http://originador.com/iuwgjwxr.rar | Offline | dll Dridex |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-11-19 08:01:23 | 6be8b6682317689d5f502805f34c96fa9487400df1c69bdc377837c3b90ee37c | dll | Dridex | |
| 2020-11-19 07:11:24 | 69b8edabcaa280d39bfab15c7d12e8aef75d94090ece29a9b074bdef2906fa25 | dll | Dridex | |
| 2020-11-19 03:42:37 | 083a0a9224164d091360e1888a7cd2baa0f496b28be420ffdcfa293530c445cd | dll | Dridex | |
| 2020-11-18 18:14:24 | 83c390d82e19beec14d007b7350f4296c23ce9b3d131a3670ebb7424ad917410 | dll | Dridex | |
| 2020-11-18 15:26:07 | a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798 | dll | Dridex | |
| 2020-11-18 14:53:32 | 1fbb0c8ee6525007d9a4daef511a4d24f4b49cac18746a7a0cd3c20689c8c61c | dll | ||
| 2020-11-18 14:11:23 | 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2b | dll | Dridex | |
| 2020-11-18 13:21:18 | c209236632e40ebb907a7d288bf879bf81542cbdc4b2046ae45280c305fdc980 | dll | Dridex | |
| 2020-11-18 12:14:26 | 1fd19222df72ea875613e81a37e94c30a25cb2d69d857159ee1d7fdfc8848348 | dll | Dridex |
US
AR