URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.ftpbuzau.hi2.ro
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-02-11 11:16:17 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-03-08 07:44:52 89.42.39.81Not listedAS215014 Deniro- ROno
2020-02-13 12:26:17 89.42.39.87Not listedAS215014 Deniro- ROno
2020-03-14 12:51:04 89.42.39.75Not listedAS215014 Deniro- ROno
2020-02-28 22:07:01 89.42.39.89Not listedAS215014 Deniro- ROno
2020-02-11 11:16:18 89.42.39.67Not listedAS215014 Deniro- ROno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-02-11 11:37:11http://www.ftpbuzau.hi2.ro/resurse/cris/main.exeOfflineexe zbetcheckin
2020-02-11 11:37:06http://www.ftpbuzau.hi2.ro/resurse/cris/cristi.exeOfflineexe zbetcheckin
2020-02-11 11:37:03http://www.ftpbuzau.hi2.ro/resurse/cris/OPFV.exeOfflineexe zbetcheckin
2020-02-11 11:31:09http://www.ftpbuzau.hi2.ro/resurse/cris/CT-Setu...Offlineexe zbetcheckin
2020-02-11 11:31:04http://www.ftpbuzau.hi2.ro/resurse/cris/EroriCT...Offlineexe zbetcheckin
2020-02-11 11:16:18http://www.ftpbuzau.hi2.ro/resurse/cris/appct.exeOfflineexe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-03-25 07:19:32e41610bd130ab11868c9992eb14110d6b5b2ee8b2f33b7ff9f8753f72e32b109exe  
2020-03-25 07:19:31e3d193d687686bb96349c956b5b9d92143f63b2b0e6d43c45f31aaa23edcafa2exe  
2020-03-20 08:46:56dd51026aa0e38d8f9aa8b1ad39e7ab70681b80e18c3709e7e9a5dd47e9e5d142exe  
2020-03-17 07:10:23b52e75b7fb1ddc597ef67f2e54dd13555679b5f155b5286a69fc441b680e5e27exe  
2020-03-14 16:02:24daddcb061e3aa46af87d743ca796beb4ccb83b099bc616d7233dcc324092fa6bexe  
2020-03-14 16:02:245f683e4282e6e483b84e5d4e93ce0fae74abcb8b2858e5cccdadb2850de51c1bexe  
2020-03-14 00:58:178231e7c26d31a3b3f5a8e65783a1a9a15807a30eeb0de16cf9f81b875385fa88exe  
2020-03-13 12:07:1537f6b9bd7f584adffb8aa2678ca0a40dcecb4ee98d370909a20bfdbd85684a98exe  
2020-03-03 07:46:5190828c851701a226844d463be5c0a8a13055869a448fe88bfca42a90137452b3exe  
2020-02-27 15:11:22990989554f97d177cf20a4291f9cba7c1842c0bad4f15b0883b1aaede4055333exe  
2020-02-12 11:39:56ad3fbb8b409889100269b91b3407c3f67803abe05fc34b49595cd40a368a8ce7exe  
2020-02-12 11:39:50d53b59fa0b1b4f658ffa2cdb034f695a1fc4e87270b8fe4c73f833b3d012e20bexe  
2020-02-11 11:37:1119a5484510fc3226bb7230e6ee3c5e5b760721391b115aa95bf877492e7a4ea5exe  
2020-02-11 11:37:065b9b1f6abe400321785776efb32d8c4f5604106259feeab1832aa063e77d6f0fexe  
2020-02-11 11:37:03fa1ec1a4b51338e5703a96159072af71ab6b01c41afa8b0cb9b50b1f04caaf5bexe  
2020-02-11 11:31:0907d34ae6bb632f04345eb39f5b4221f9a7e37145c55350222fcf191778a28d5eexe 
2020-02-11 11:31:0405a8800b05cf0c4293f9dcc297873f36691161746aec7b65e31b0e32c8f0bebbexe 
2020-02-11 11:16:185ee56cc6b8fc9118909aa63bb763c0b3cf8a4c6ea45dfae9fad092cacb61a4cdexe