URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tacticohosting.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-27 14:22:25 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-12-14 11:41:40 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2022-07-12 03:15:42 104.206.136.1010-136-206-104.staticrdns.eonix.netNot listedAS62904 AS62904- USno
2022-04-29 20:23:22 85.208.118.101101.118-208-85.rdns.scalabledns.comNot listedAS18978 ENZUINC-US- USno
2022-02-09 08:50:21 85.208.118.1313.118-208-85.rdns.scalabledns.comNot listedAS18978 ENZUINC-US- USno
2021-12-15 04:25:49 45.136.119.178nswaf.comNot listedAS18978 ENZUINC-US- USno
2021-09-25 21:37:47 209.99.40.222209-99-40-222.fwd.datafoundry.comNot listedAS23005 SWITCH-LTD- USno
2021-01-27 14:22:29 208.91.199.159bh-6.webhostbox.netNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-27 14:22:29http://tacticohosting.com/j1da592.zipOfflineDridex ext stoerchl