URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: redlink.cl
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-06-09 11:51:06 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 00:23:45 192.248.191.135192.248.191.135.vultrusercontent.comNot listedAS20473 AS-VULTR- DEyes
2025-04-28 00:23:45 95.179.245.16295.179.245.162.vultrusercontent.comNot listedAS20473 AS-VULTR- DEyes
2025-07-23 20:15:21 136.243.106.228static.228.106.243.136.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno
2025-07-23 20:15:21 176.9.114.118static.118.114.9.176.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno
2025-06-29 01:53:41 157.90.154.114quic.cloudNot listedAS24940 HETZNER-AS- DEno
2020-07-01 00:15:27 35.209.108.119119.108.209.35.bc.googleusercontent.comNot listedAS15169 GOOGLE- USno
2020-06-09 11:51:08 192.185.48.212cookandcompanycpa.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno
2025-07-12 09:25:08 79.172.239.249server.visitme.huNot listedAS43359 tarhely- HUno
2025-09-08 19:53:06 92.118.205.75Not listedAS136258 ONEPROVIDER-AS- PLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-09 22:30:35https://redlink.cl/.well-known/pki-validation/D...Offlineexe Formbook ext zbetcheckin
2020-06-09 20:11:05https://redlink.cl//.well-known/pki-validation/...Offlineexe Formbook ext zbetcheckin
2020-06-09 19:21:20https://redlink.cl//.well-known/pki-validation/...Offlineencrypted GuLoader ext abuse_ch
2020-06-09 11:51:08https://redlink.cl//DetaCotizador/conect/DS.binOfflineencrypted GuLoader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-09 22:30:354ced146e8423d60d342aa74ae59b408eb7aa5cce235990e90b6c7162385bd769exe Formbook
2020-06-09 20:11:054ced146e8423d60d342aa74ae59b408eb7aa5cce235990e90b6c7162385bd769exe Formbook
2020-06-09 19:21:2051d7ed9eb808d004ca36df293c7dc9e5128c4e3d1402e30b29ed52da9f3db01aunknown  
2020-06-09 11:51:08dcc8bdaca62034198f6cccbb896a3706c86190713f96e99c50f36765e68b7bb3unknown