URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: shly.fsygroup.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-01-24 19:08:50 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-09-11 13:46:48 120.133.239.160Not listedAS4811 CHINANET-SHANGHAI-MAN- CNyes
2019-01-24 19:09:04 101.132.113.16Not listedAS37963 ALIBABA-CN-NET- CNno

Malware URLs


The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-02-28 14:37:1777977d0faba8fee497284611c6756812d12a4f3e3c9dd0ce9118d03f5ebbee1cexe  
2019-01-25 00:48:06f6c3a6ed241e86647c3532bf92594fc3828d0c1be2f50fa97f668d31318eabafexe  
2019-01-25 00:45:207701170304fdd48b184aac032391ae3a1f880be6160812d0089049834b3ec828exe Ransomware.Troldesh
2019-01-25 00:24:08f140cab283c35c92dc74db53b6d9964706538554d4151a637a406b093746692bexe Ransomware.Troldesh
2019-01-25 00:18:0950119da56e84ae4baa207a9391a0143fe5aa66c212aeba08e2d6d864af0a0d83exeRansomware.Troldesh
2019-01-25 00:18:0553e3bb561c54df00565fba06ddf477f9980e734e543c85103d8c073cb13a5107exe  
2019-01-24 23:56:0950119da56e84ae4baa207a9391a0143fe5aa66c212aeba08e2d6d864af0a0d83exeRansomware.Troldesh
2019-01-24 23:41:124748eb93e8bf41f68800bca52f31b31e8f67f186ff9d2f7e7ab01b5a9f298059exe  
2019-01-24 23:37:22414bb1af4fbb618c4889d69144c7f66591c6e5294d0ab3b7ea8b774946977cf2exe 
2019-01-24 23:21:119fd59ba40c26b3161642d5ebb85796b4262e5d5aa5d1e5eceb919b52a8f9b00eexe Ransomware.Troldesh
2019-01-24 23:12:10414bb1af4fbb618c4889d69144c7f66591c6e5294d0ab3b7ea8b774946977cf2exe 
2019-01-24 19:12:07952b440c75edb45c524fd6ddda4395563caf80a0949ee445f2a089c520087ff0exe Ransomware.Troldesh
2019-01-24 19:09:40c0c4b90379ef98aa9a6d4f62106a17e4492ef7bfbe4446270f11c713c2b76da9exe Ransomware.Shade
2019-01-24 19:09:03fb142143b7efdbb03e23a1c366208ffa4cba9131e674fb196e6611f7f76f7c8eexe Ransomware.Troldesh