URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.gastronauts.asia
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-20 13:26:51 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 03:09:39 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-28 03:09:39 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2021-01-20 13:26:54 132.148.96.144144.96.148.132.host.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-20 13:26:54http://www.gastronauts.asia/ylztwx.rarOfflinedll Dridex ext reecdeep

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-21 17:11:02642ab82c74a436b00f64a17174e23f40a64b721b6128e80a70e3cbffc7d3424aexeDridex
2021-01-21 14:37:08534191424f4e45a18582afb268f931ff3a603aebdf80b09ae9f452f3965083d0dll Dridex
2021-01-21 09:50:3131c6759d37f3ed690b2bb1daf76b2adf643a1e7f120332759231818f41e8a3c3dll Dridex
2021-01-21 08:14:1690bd41b029a4618b84125ea9b16256f07d8a29ca4a11e6a902bbe336c2386f52dll Dridex
2021-01-21 02:17:32fcddcf6dedd8f2bd69e1007831e397e243d4994bfe6d90b5840c1cf91eacf245dllDridex
2021-01-20 20:47:263459d30b5d2e6c58ddb8dcd9f45f5141f8d15c55fff16f9cc76ec621e6d829fbdll Dridex
2021-01-20 20:06:142bfa88a5c855f4d24139d5d9c556cfbdb05a5a68b23a528ae53226d526dc4e7dexeDridex
2021-01-20 19:03:24b553789ab78bdf72ecaec67917b7fabbcd485bbd2d1b1baa03802cf01147927ddll Dridex
2021-01-20 18:34:277872f401516f88967a064039f38f20de144e76dcc3a5a26413312dff29041e26dll Dridex
2021-01-20 17:59:00f7c8f98516cab79befde56567a6c5023ffb9e096ebff140d96dcf6e77583d9b9dll Dridex
2021-01-20 17:13:50d160b47e8ef2f76e25caee95595893d3f55986de9216ee247e7e48fcb90edf99dll Dridex
2021-01-20 16:42:52e4191288a595ba5a8af0d6bf081d0963fbeb553c0667a343c7d217f2b65ddf4bdll Dridex
2021-01-20 16:00:249cdc32b5cd2fb375072d681b488fe5b40789e2c87d36044033579b0281ee35f6dll Dridex
2021-01-20 14:10:06791252fc4def3c4c3bdb270633ffc88c0e2cd8e8e8ba299825a83841a273e7dddllDridex
2021-01-20 13:26:54b9bb671587f2dad8a3df83d6bd0b7b8327edf93fadbefe8b6aa7eabe6698ae88dllDridex