URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: topv.xyz
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-07-22 11:47:03 UTC
Total malware sites :12
Online malware sites :0 (0%)
Offline Malware sites :12 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-06-24 19:31:06 104.21.31.100Not listedAS13335 CLOUDFLARENETn/ayes
2025-06-24 19:31:06 172.67.176.50Not listedAS13335 CLOUDFLARENETn/ayes
2025-06-23 15:17:50 44.227.65.245ec2-44-227-65-245.us-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-06-23 15:17:50 44.227.76.166ec2-44-227-76-166.us-west-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2021-07-22 11:47:04 185.239.243.112ns1.20mb.nlNot listedAS212238 CDNEXT- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-07-28 14:51:09http://topv.xyz/kdotzx.exeOfflineexe NanoCore ext rat abuse_ch
2021-07-28 13:12:09http://topv.xyz/ahsleyzx.exeOfflineAgentTesla ext James_inthe_box
2021-07-27 07:58:04http://topv.xyz/odogwux.exeOfflineAgentTesla ext exe abuse_ch
2021-07-27 07:58:03http://topv.xyz/whesilox.exeOfflineexe SnakeKeylogger ext abuse_ch
2021-07-27 07:48:04http://topv.xyz/arinzex.exeOfflineSnakeKeylogger ext AndreGironda
2021-07-26 14:14:04http://topv.xyz/wealthzx.exeOfflineAgentTesla ext exe abuse_ch
2021-07-23 09:44:04http://topv.xyz/nzezx.exeOfflineAgentTesla ext exe abuse_ch
2021-07-22 21:16:03http://topv.xyz/bobbyzx.exeOffline32 exe Loki ext zbetcheckin
2021-07-22 17:19:04http://topv.xyz/aguerox.exeOfflineexe Formbook ext abuse_ch
2021-07-22 17:17:03http://topv.xyz/ambinx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-07-22 11:47:05http://topv.xyz/princedanx.exeOfflineFormbook ext edelahozuah
2021-07-22 11:47:04http://topv.xyz/templezx.exeOfflineAgentTesla ext Formbook ext SnakeKeylogger ext edelahozuah

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-01 21:33:15b443cbfa77fe3d3afd8d84d92d1f0afecd829520768238400ddbd91a834c8848exeSnakeKeylogger
2021-07-29 01:47:19c19f16f127fcb44f20f2d94b7b876b1e41287e1ec12cbe6d0052cf416d805b1dexeAgentTesla
2021-07-29 01:43:304578c32120731e26e084a3cfd4c2e1819e41de86e1b13cbb417cb70c3dbf6932exeSnakeKeylogger
2021-07-29 01:43:02788d470ce27a2f12ebe54247835927928da9d95a3cf409672afb5c87fb5f7c9fexeSnakeKeylogger
2021-07-28 14:51:098a0b3ba6dec891704a1ed2e31cae766491fa7e1acb5007a7acfcad32f9834a96exeNanoCore
2021-07-28 13:12:08d2ac9d14c748cb3068f47fb3b8e0c30466f14a706eb17737b9122a8f8a023f0cexeAgentTesla
2021-07-27 23:11:4874f9d0543c52f4e3cc068134a69edaea6af7d715874efc4acd643991f28f3de3exeSnakeKeylogger
2021-07-27 23:09:18488dbfa48c791c50bf830131e7e7c50f36f8409de7271ae9540c7b92b43e15f9exeSnakeKeylogger
2021-07-27 22:30:189cd5d3427554617b492c00e5f251794e66684e57b6350ceda2156ffb76b95f73exeAgentTesla
2021-07-27 15:08:15640be6f81d11c620516ffa238f5bd69490074acc89286dbbb1f8a1e2727ecff4exeAgentTesla
2021-07-27 07:58:048b987ac35e194eb8c98666431ac30a66c4daae15e605679390dea2e72d9199ebexeAgentTesla
2021-07-27 07:58:031e2785c94e1501731c09b13b6f8156548704a36dd5b220efab73c06ed4fd6bfcexeSnakeKeylogger
2021-07-27 07:48:03b0cc2b05abaf593a784bb9d83cd0a61bf5b218605f61dba802df21c8ea54c7c6exeSnakeKeylogger
2021-07-26 23:20:2570351038cf49fc5bf127e4f7df1c563ec036293cbc00010ade2364e0ee311a27exeSnakeKeylogger
2021-07-26 14:14:04c1aa3996fb100371e8d443417f1c90f959306af345dc4436d5382e49bb205ac7exeAgentTesla
2021-07-26 01:52:3456d324b70dec3c259864216d918929470e10dc5582ae70f238aaad4887358d7bexeFormbook
2021-07-23 09:44:04d2566bc7abe2eb0b168c9a951d8fb545bb156beeeeb04dec7ccecd6a647a3c75exeAgentTesla
2021-07-22 21:16:03e2665788c67fe4f9ecf963e7894858a519d40b5416d1e57fc3249f34c4316942exeLoki
2021-07-22 17:19:04004068094b6adb0e6548b6334afd2dad79312f09e94e04a1d1206874028bdda0exeFormbook
2021-07-22 17:17:03e5805ba9f9119986eb49be00972cb30d5249f8c19c872c4daacb2ad67a157bb5exeAgentTesla
2021-07-22 11:47:0453189c032edd0ef379751c569b7dcff388fa59a66b4e3094728a431d80ef3b3eexeAgentTesla
2021-07-22 11:47:044dc8cb12314311a3bf1b1afa5cc5483284fda573f18c15ab0fef18b7b9ef9f98exeFormbook