URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 11:19:09 | 75.2.93.215 | a2f0217e53607214b.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2025-04-27 11:19:09 | 99.83.145.119 | a2f0217e53607214b.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | yes |
| 2019-01-22 16:28:06 | 69.90.66.40 | hp255.hostpapa.com | Not listed | AS13768 COGECO-PEER1 | CA | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2019-01-22 17:39:02 | http://tekacars.com/wp-content/themes/twentysev... | Offline | zip | |
| 2019-01-22 17:07:04 | http://tekacars.com/wp-admin/css/colors/blue/ss... | Offline | zip | |
| 2019-01-22 16:59:04 | https://tekacars.com/wp-content/themes/oceanwp/... | Offline | exe Troldesh | |
| 2019-01-22 16:37:03 | http://tekacars.com/wp/wp-admin/css/colors/blue... | Offline | exe Troldesh | |
| 2019-01-22 16:35:11 | http://tekacars.com/wp-content/themes/twentysev... | Offline | zip | |
| 2019-01-22 16:28:06 | http://tekacars.com/wp-content/themes/oceanwp/a... | Offline | exe Troldesh |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2019-03-28 20:18:31 | 8d67ea09ba51e8ae458e0c878eb3041470b4fce26fae9874f384c2d3dee1501d | exe | ||
| 2019-01-22 16:59:04 | e43fb62c12fcf1be9f9982e81a59350a8f9dd2389198c0b332cef832a63aac0f | exe | Ransomware.Troldesh | |
| 2019-01-22 16:37:03 | 7701170304fdd48b184aac032391ae3a1f880be6160812d0089049834b3ec828 | exe | Ransomware.Troldesh | |
| 2019-01-22 16:28:06 | 0ddcd4073c567f011477e54c4632e3ae44ed41608c109e01b7f829b82701c694 | exe | Ransomware.Troldesh |
US
CA