URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | vms.h4ck0ps.cc |
|---|---|
| Domain registrar: | Cloudflare ![]() |
| Domain registration date: | 2022-09-12 06:45:42 UTC |
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Status unknown |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Not blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2023-08-20 11:32:06 UTC |
| Total malware sites : | 18 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 18 (100%) |
| A record(s) observed : | 3 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2023-10-12 19:03:39 | 104.21.73.124 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2023-10-12 19:03:39 | 172.67.190.7 | Not listed | AS13335 CLOUDFLARENET | n/a | no | |
| 2023-08-20 11:32:07 | 103.145.13.69 | Not listed | AS60528 MYWEBLTD | NL | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2023-08-20 11:34:05 | 21be3e6673249b8ab22552083dd46bbb6908a6c4e1ea0a745484ed3a3d95480b | exe | ||
| 2023-08-20 11:34:04 | 2e135a0e299d004e5ba2ba7fcbf79e6cbf1666367e020a7341dd2255c4b8cf57 | exe | Meterpreter | |
| 2023-08-20 11:34:04 | 310559f3a073de15f8b5c66bea1152c9bf0cdc4f0f2f41325fbee132bb0cf76d | exe | ShikataGaNai | |
| 2023-08-20 11:34:04 | b7e19c16fdbcec60263c3394b820fb7df20a0a157a8c44433111612f700a5b67 | unknown | ||
| 2023-08-20 11:34:04 | b71a19618582e3820d4c6f184180eca70e097fbd4b35bae3615e99651d97d9e2 | exe | Metasploit | |
| 2023-08-20 11:33:05 | ccf2d01eb06884e1f7e840cc81bb4ca6091ec79ac16a864f4b5b473236d47c0b | txt | ||
| 2023-08-20 11:33:05 | f2fa5148c0bfd8c037ee8f5b43c29cf23aa3d003d7a2e76513e6884c086c1c47 | ps | ||
| 2023-08-20 11:33:05 | 598d47d604b7c249fcceea9b10136238bc9e8c6fee864817f82254194a6d8631 | txt | ||
| 2023-08-20 11:33:05 | baa54ec1abbfaa1609d939bc969ec5a601c5fd62236ef625514aa3365de100b5 | ps |

NL