URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-27 20:18:03 | 104.21.67.182 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-09-27 20:18:03 | 172.67.179.83 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-09-19 23:35:54 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-09-19 23:35:54 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:25 | 104.21.112.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:25 | 104.21.16.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:25 | 104.21.32.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:24 | 104.21.48.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:24 | 104.21.64.1 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 19:24:25 | 104.21.80.1 | SBL681411 | AS13335 CLOUDFLARENET | n/a | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-10-13 13:15:12 | https://primesporthub.com/j7ve2y55.tar | Offline | Dridex |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-10-14 15:07:50 | 4f76c95a3b731708e546976a3e05ddd025cf3d056f48834db6960e28110464a5 | dll | Dridex | |
| 2021-10-14 07:28:05 | b942c301a692d8c1e7e7062feee0cf1aa6431a8b6552b4f2bd87761c4762c323 | dll | Dridex | |
| 2021-10-14 04:15:32 | ca19fc56501a752b6d06ff38e66a7f9c98984ee7cf7599e6140dfbf419f07a10 | dll | Dridex | |
| 2021-10-13 20:02:22 | d011f744db77348792e27a1d571306da6eb2c4098e99c421400d38ecd0478097 | dll | Dridex | |
| 2021-10-13 19:00:34 | e0ec9e2fc8fa51382c02913bf365b80fdbb5d57e694a6f8aa47b65ee50102b4f | dll | Dridex | |
| 2021-10-13 17:15:12 | 426b5c4332e09b331eeabd7a4338c58a275fc0a6d99547a27b4c3e5c47182c95 | dll | Dridex | |
| 2021-10-13 16:03:42 | f05e19ce66994f3dd024aa366f9272db1e7b6a1f3dfaa8b598fcf6a0391fb9fc | dll | Dridex | |
| 2021-10-13 15:13:03 | 7d938aefd1e3971b1b135badfae052ea71a3be5b0b9a74756717702fcc886e1d | dll | Dridex | |
| 2021-10-13 14:48:40 | 631522e561705d7b1e8943b61927aff2be4325cca41ee5458b6180793acb9de0 | dll | Dridex | |
| 2021-10-13 13:15:11 | 88a94091ec39cf0fcb60f326e81f2a12ac40c6f41072f04dd0088d9c435e2d31 | dll | Dridex |
