URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.51-159-29-96.cprapid.com
Domain registrar:Tucows -
Domain registration date:2019-05-16 21:16:20 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2024-09-16 17:01:06 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-09-16 17:01:31 51.159.29.9651-159-29-96.rev.poneytelecom.euNot listedAS12876 AS12876- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-09-16 17:01:39http://www.51-159-29-96.cprapid.com/ssl/soon.exeOfflineSocks5Systemz ext abus3reports
2024-09-16 17:01:39http://www.51-159-29-96.cprapid.com/ssl/job.exeOfflineSocks5Systemz ext abus3reports
2024-09-16 17:01:39http://www.51-159-29-96.cprapid.com/ssl/online.exeOfflineSocks5Systemz ext abus3reports
2024-09-16 17:01:38http://www.51-159-29-96.cprapid.com/ssl/crt.exeOfflineSocks5Systemz ext abus3reports
2024-09-16 17:01:31http://www.51-159-29-96.cprapid.com/ssl/off.exeOfflineSocks5Systemz ext abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-09-17 06:21:3495d0d6577a03fae5fe0dbf14d291e2bac81b5261e411dc8f02cc98b4fefe8c3cexe Socks5Systemz
2024-09-17 05:58:32d5cd9f0cc1ae08c701f55a8d865bccb581a1a0ac2287636fde2875d3293c8ae6exeSocks5Systemz
2024-09-17 05:56:2940ebbc3d987f29d50750d7036c64fe83a687fdcb2016db394494dba41e027e85exe Socks5Systemz
2024-09-17 05:21:01da8ccd10a7e94f0ee8b0ddc00d2e2ddd9748ea811ea572c9ac5fb6126e372c41exe Socks5Systemz
2024-09-17 02:52:38c3832360cf0e265a05ac93f97a526ea60c2aca7f142fb214a52df77e58fbfa0eexe Socks5Systemz
2024-09-17 02:11:56c3832360cf0e265a05ac93f97a526ea60c2aca7f142fb214a52df77e58fbfa0eexe Socks5Systemz
2024-09-17 01:44:338872fd7ee88335e2304847f2d036a0b3db14f1fc6f4f9cc6b8886ea16027388fexe Socks5Systemz
2024-09-17 00:14:38ff6da84f75c2fb82bc4e51829e046dc4d24c4e578c406272bf39401668c1dad7exe Socks5Systemz
2024-09-16 22:38:57fc57a119f7c177505c6daef89eaa87a00c222e7d6088af49f3ee3ddfea1d4718exe Socks5Systemz
2024-09-16 22:22:439cf065b7a31efaea26086ea21228c4d5f48ff31804c04c49b15acec9c1e5c0b8exe Socks5Systemz
2024-09-16 21:59:51897749f4a6a4ed218f2837bdfd8992fd86a290578609a4d15dc516533beeb6e8exe Socks5Systemz
2024-09-16 20:04:355d702d85714478fb139601bbe45cbba01f65ced1e3fdbb9a88e156728c0ff13cexe Socks5Systemz
2024-09-16 19:20:4616a360a185a4821633231e553888714530a368157d75024e8e54bb5be6d8ee35exeSocks5Systemz
2024-09-16 19:19:054936051baa4b55c3430f7f79873b904daf24672b69bbffecad6e248744cf1b23exe Socks5Systemz
2024-09-16 17:01:3989a8a732170648b1483a76ca2f198187822ada8bd41ee9ead0befb6fa9a87025exe Socks5Systemz
2024-09-16 17:01:39ba9aa6dffbda1d7dca62d8df94b5240a504df1f54fc7f4f5c027a745ecf24453exe Socks5Systemz
2024-09-16 17:01:39e5e757a3389143c54aa241eb003a92c6817b7b49fe421138791eadfe4ae8b433exe Socks5Systemz
2024-09-16 17:01:37e5e757a3389143c54aa241eb003a92c6817b7b49fe421138791eadfe4ae8b433exe Socks5Systemz
2024-09-16 17:01:291bb62d5b5dae6d83dc677ad6fe1c24ac9d399579ced7213ef144c7adce15dfc2exe Socks5Systemz