URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | smkn3depok.com |
|---|---|
| Domain registrar: | CV. Jogjacamp ![]() |
| Domain registration date: | 2022-08-02 04:49:53 UTC |
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Not blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2022-08-28 06:31:04 UTC |
| Total malware sites : | 4 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 4 (100%) |
| A record(s) observed : | 1 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2022-08-28 06:31:07 | 103.147.154.154 | articuno.id.domainesia.com | Not listed | AS138115 IDNIC-DENEVA-AS-ID | ID | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2022-08-28 06:31:28 | http://smkn3depok.com/10/data64_6.exe | Offline | CryptOne exe | |
| 2022-08-28 06:31:07 | http://smkn3depok.com/10/data64_4.exe | Offline | exe RedLineStealer | |
| 2022-08-28 06:31:07 | http://smkn3depok.com/10/data64_1.exe | Offline | exe RedLineStealer | |
| 2022-08-28 06:31:07 | http://smkn3depok.com/10/data64_5.exe | Offline | exe MassLogger |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2022-08-28 09:26:28 | cdb76aad4d878df40e2bee3b44414c6dab8d62b6f6622e51227a01975a345345 | exe | ||
| 2022-08-28 08:46:35 | b6f39cc063683b87b281bd27cd4b421e2d5925f8bd6f3a5b0355a3f92532111d | exe | RedLineStealer | |
| 2022-08-28 07:08:44 | b160d96699180b3b72a5547b36f2fa70bd584c449d0ba82953ee00692dfa6aa5 | exe | CryptOne | |
| 2022-08-28 06:31:28 | 8475c81e86089c88cae0c2f9265c8153fc55db32be44192db0eef79ab023c57c | exe | ||
| 2022-08-28 06:31:07 | 0a4a454bd691f089af4256378bc86d93347edcf7480c068d9c2e8d917feccd8b | exe | RedLineStealer | |
| 2022-08-28 06:31:06 | e31a2b90a578c99620c219e435ab77c036eb869acbdcd54fcc5ec8f529d4afd1 | exe | RedLineStealer | |
| 2022-08-28 06:31:06 | 2e3c4c902e0c0aba837d352a7ca093a9384b958fd15bdbf2d7cc80b7a8524ef3 | exe | MassLogger |
