URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: paste.c-net.org
Domain registrar:Key-Systems -
Domain registration date:2019-02-13 11:46:12 UTC
Abuse complaint sent?: Yes (2025-09-29 16:31:02 UTC to ops{at}pir[dot]org)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Blocked
Firstseen:2021-11-03 11:26:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 13:44:13 20.100.184.134Not listedAS8075 MICROSOFT-CORP-MSN-AS-BLOCK- NOyes
2021-11-03 11:26:05 51.13.70.48Not listedAS8075 MICROSOFT-CORP-MSN-AS-BLOCK- NOno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-29 16:31:12https://paste.c-net.org/LeatherBlendingOfflineexe abuse_ch
2025-09-29 16:30:22https://paste.c-net.org/PasadenaDeepestOfflineascii powershell ps1 abuse_ch
2022-09-15 11:01:34http://paste.c-net.org/RefuseFreezeOfflineAnonymous
2021-11-03 11:26:05http://paste.c-net.org/BitsyPlatformOfflineAnonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-29 16:31:11e1a30af4a39403cc11aee5ac9a787c4172e1b75ebc68a1b494e875bf5a10ff50exe  
2025-09-29 16:30:22faaadf20ba302f8f93cbd8c017b03a4c107eceebf862f1a4d692dfa947c057cbtxt