URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: preconcert.pw
Domain registrar:Public Domain Registry -
Domain registration date:2023-08-27 16:32:26 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-10-04 10:07:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-10-04 10:07:05 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2023-10-04 10:07:05 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-10-04 10:07:05https://preconcert.pw/setup294.exeOfflinedropped-by-PrivateLoader andretavare5

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-10-04 14:09:11a59528011b961a3fd1c9f363425178acf169ca84ecf5b4c4803459de55322d19exe  
2023-10-04 13:59:47523e0b67eafd7308a03240b1eba839f2f9dcc2b026fb63fed9c14b39961d0d7aexe 
2023-10-04 12:42:360c8dd9fe4da682d661b748e2fa1cc69abe604b30652bc6a9f3aa757864736269exe  
2023-10-04 11:22:40eba06c3f9929f4c7faf7781e2eb438ceffa9836f7241606900eb6815ee46ff06exe 
2023-10-04 10:07:05dab14b76fee0692f60331ed4cdc8600c1f5b0c0f9acc4d041ef0cd67b2487124exe