URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: theipgenerators.com
Domain registrar:1&1 IONOS -
Domain registration date:2025-05-07 04:26:42 UTC
Abuse complaint sent to registrar: Yes (2025-05-12 06:31:02 UTC to abuse{at}ionos[dot]com)
Domain registry:VeriSign Global Registry Services -
Abuse complaint sent to registry: Yes (2025-05-12 06:31:02 UTC to info{at}verisign-grs[dot]com)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-05-09 15:50:01 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-07 06:22:06 217.154.201.107ip217.154.201-107.pbiaas.comNot listedAS8560 IONOS-AS- DEyes
2019-11-08 11:37:04 74.220.199.6parking.bluehost.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2019-01-25 01:23:53 162.241.235.118server.kimo002.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno
2018-05-09 15:50:45 162.241.234.99server.gad33.orgNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-06-24 12:50:05https://theipgenerators.com/uploads/uptownwealt...Offlinerev-base64-loader xworm abuse_ch
2025-05-26 15:20:11https://theipgenerators.com/uploads/onedrives.jpgOfflinerat RemcosRAT ext rev-base64-loader abuse_ch
2025-05-23 05:53:11https://theipgenerators.com/uploads/onedriverse...Offlinerat RemcosRAT ext rev-base64-loader abuse_ch
2025-05-12 06:28:08https://theipgenerators.com/uploads/onlineboss.txtOfflineascii AsyncRAT ext Encoded rev-base64-loader xworm abuse_ch
2018-05-23 06:08:29http://theipgenerators.com/svchost.exeOfflineHawkEye ext RemcosRAT ext JAMESWT_MHT
2018-05-23 06:07:42http://theipgenerators.com/Adobe.exeOffline JAMESWT_MHT
2018-05-22 21:17:45http://theipgenerators.com/smss.exeOffline JayTHL
2018-05-22 21:16:36http://theipgenerators.com/winlogonn.exeOfflineNetWire ext JayTHL
2018-05-22 21:16:21http://theipgenerators.com/dwm.exeOfflineNetWire ext JayTHL
2018-05-22 21:16:06http://theipgenerators.com/POS.exeOffline JayTHL
2018-05-22 21:15:37http://theipgenerators.com/PC.exeOfflineRemcosRAT ext JayTHL
2018-05-22 21:14:37http://theipgenerators.com/Orders.exeOffline JayTHL
2018-05-22 21:13:44http://theipgenerators.com/INVOICE.exeOffline JayTHL
2018-05-22 21:13:22http://theipgenerators.com/App.exeOffline JayTHL
2018-05-22 21:12:32http://theipgenerators.com/0.msiOffline JayTHL
2018-05-21 16:47:45http://theipgenerators.com/winlogon.exeOfflineexe NetWire ext Pony ext lovemalware
2018-05-09 15:50:45http://theipgenerators.com/apps.exeOfflineexe RemcosRAT ext abuse_ch