URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: readwrite26.nl
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-03-09 18:58:05 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-04-05 18:10:22 176.123.0.55hosting2.alexhost.mdSBL648235AS200019 AlexHost- MDno
2021-03-09 18:58:09 51.178.232.167Not listedAS16276 OVH- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-03-09 18:58:12http://readwrite26.nl/write.exeOfflineAmadey bitrat ext Anonymous
2021-03-09 18:58:11http://readwrite26.nl/for.exeOfflinebitrat ext Anonymous
2021-03-09 18:58:09http://readwrite26.nl/read.exeOfflineNetWire ext Anonymous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-04-25 14:22:444f4c33ff9f025a53a5c4f89fb7630b0b9f0af81ed51884c26033cb4d3520540eexe NetWire
2021-04-25 14:02:40c0793e854c30020d29cb0def923afbfabf2bd9be384b21b02489e42ccb534528exe NetWire
2021-04-25 13:51:2009fca7615c3a077da0f8302e4675a71cb889ac1ab5c201a05593546a2a425111exeNetWire
2021-04-22 18:35:338ab6edf67b90c3a7dee2674be1a28bfdab79a6bad05cec53b344aec3ac69113bexeNetWire
2021-04-19 06:50:285cf88fd0b092517f27703199fab5cea2a4adc40a01f3c20c2f914f3122e42e1dexeNetWire
2021-04-18 08:21:31b3cebd99f2caecbc4f1c1d8a3c383517cccc417dcdb86c58e844d8955e74a1a8exe 
2021-04-14 01:49:4837ad471d4b3ea1644bb111bacdf6306189214c900ee8882c3b85cab7d5a67351exeAmadey
2021-04-14 01:06:14019d25696a8fac4686b760ea3390a9b640b626c2c355cad43d6349b9b91410a8exe NetWire
2021-04-12 12:17:27c9b8ec8ccbe3b0ab195d0c472e3f8d6b6a00dc66eb8ab0bff71eb44ad4abd39dexeNetWire
2021-04-12 12:13:052ca400a06037c9a9ea1e60c1cb577aad185efe8e184f6d44482c480b616d54d7exeAmadey
2021-04-07 22:22:17462874360a3b4cff7c9fab2448ae25bca022253e71af71b128af502136e8b2e6exeAmadey
2021-04-07 22:17:02d218d3e24c6485d480b2be1dce00a764aa403a5f2caf58708020f9d231d2c8d2exe NetWire
2021-04-07 09:52:00978d1d6690e83f0508a551f8b469159f3d6ac908e081a33f6c9b632e8ab5e433exeAmadey
2021-04-07 00:25:017c0d31bca17487efc3f743bb9cb5cf56b5f2fae638cf3681fdc692a5809c94beexeNetWire
2021-03-09 18:58:10e1a8761ba16923f88226875d5d304261769f9677f38d1718b202585adb37796dexe BitRAT
2021-03-09 18:58:10e1a8761ba16923f88226875d5d304261769f9677f38d1718b202585adb37796dexe BitRAT
2021-03-09 18:58:0705de3c90179fa8836171ce2ab6c38caaf8c6eb20b1bc47100573c7207cedf7efexe NetWire