URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2020-02-08 21:01:53 | 51.15.124.132 | 132-124-15-51.instances.scw.cloud | Not listed | AS12876 AS12876 | NL | no |
| 2020-02-08 01:25:32 | 72.5.65.111 | Not listed | AS12182 INTERNAP-2BLK | US | no | |
| 2020-01-29 18:02:05 | 5.135.179.143 | ns3086704.ip-5-135-179.eu | Not listed | AS16276 OVH | FR | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-02-04 09:23:03 | http://www.fgstand.it/wp-content/FQdwqQwYu/ | Offline | doc emotet | |
| 2020-01-31 21:45:06 | http://www.fgstand.it/wp-content/protected_o9ya... | Offline | doc emotet | |
| 2020-01-29 18:02:05 | http://www.fgstand.it/wp-content/public/i7vs3lf... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
NL
US
FR