URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-06-19 06:16:18 | 188.114.96.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-06-19 06:16:19 | 188.114.97.3 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-07-06 10:54:18 | 104.21.80.148 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-07-06 10:54:18 | 172.67.186.20 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2025-04-27 09:26:16 | 46.17.172.95 | cpl108.main-hosting.eu | Not listed | AS47583 AS-HOSTINGER | SG | no |
| 2023-06-08 11:48:19 | 109.106.254.196 | cpl15.main-hosting.eu | Not listed | AS47583 AS-HOSTINGER | SG | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2023-06-12 06:24:09 | http://talentpro.global/netTime.exe | Offline | dropped-by-PrivateLoader xmrig | |
| 2023-06-08 11:48:19 | https://talentpro.global/netTime.exe | Offline | CoinMiner dropped-by-PrivateLoader Phonk xmrig |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2023-06-13 08:59:21 | f356fdd6ed63b91e35d6f80b717f180d2ba46774a996e9431a2206c08e54f167 | exe | Zyklon | |
| 2023-06-12 21:29:36 | 20b8cab517dc9505522b4b29beeda0356d63624cc7dbe943a8bc6f320ed27a54 | exe | ||
| 2023-06-12 10:45:08 | 81d47000a56c7921d9d666a8a9cc5416bb7a39f64dea6b635ee55023d41627a2 | exe | Zyklon | |
| 2023-06-11 09:58:54 | b5ab9b79a5f5b9b2d94942173223bb4aec4e9fc321b8a245ce8f5b654e65ff35 | exe | CoinMiner | |
| 2023-06-10 09:14:34 | d224dfde2a5b1d9d11cf216aadcc86cf33364aa44d8b76d8528d14183900e221 | exe | Phonk | |
| 2023-06-09 08:28:29 | f9ba2e82794ae19e33d2a66898cbf0d95d8a8cac24be9ceee834339ba6a92b8e | exe | CoinMiner | |
| 2023-06-08 20:41:07 | 7c11ba68d9d7b0136e240ce53a14fdec989e270c95274516e0b7e2f60e66d484 | exe | CoinMiner | |
| 2023-06-08 11:48:13 | 586b231234bce80c4148b43a6c253486f961e182de06acf495337d044e2acfff | exe | CoinMiner |

SG