URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-05-01 00:36:17 | 34.149.87.45 | 45.87.149.34.bc.googleusercontent.com | Not listed | AS396982 GOOGLE-CLOUD-PLATFORM | US | yes |
| 2025-08-17 13:16:01 | 199.15.163.138 | unalocated.163.wixsite.com | Not listed | AS58182 wix_com | US | no |
| 2025-07-24 11:57:40 | 13.248.213.45 | a67c48129651a0940.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2025-07-24 11:57:40 | 76.223.67.189 | a67c48129651a0940.awsglobalaccelerator.com | Not listed | AS16509 AMAZON-02 | US | no |
| 2020-12-23 16:27:08 | 103.50.162.127 | cp-in-13.webhostbox.net | Not listed | AS394695 PUBLIC-DOMAIN-REGISTRY | IN | no |
| 2021-01-06 08:13:13 | 50.63.92.110 | p3nwvpweb231.shr.prod.phx3.secureserver.net | Not listed | AS26496 AS-26496-GO-DADDY-COM-LLC | US | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-12-23 16:27:08 | http://www.kelam.co.in/payU/nGdil3TzbxGSBfGI0NO... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2020-12-23 18:37:16 | 768f3c029cc79ae21d7c732487da93f0e8c7d19a83737f9ce7e107e3adc9054c | doc | Heodo | |
| 2020-12-23 18:13:47 | 66e2a898e0b029a13f3091ffd91aa453888cf996011f8ecaf3b4a4439b68d413 | doc | Heodo | |
| 2020-12-23 17:48:28 | 6ed5539e92f43fcde23dc6343c4f41a93050576180fad637adc5014a49ed38aa | doc | Heodo | |
| 2020-12-23 17:34:57 | 2baa7224260f2947c16ecfa457d8a36e37774ad2b29d341616d9e1f2a6d4b561 | doc | Heodo | |
| 2020-12-23 17:23:22 | eb7cf5978cb5fad16c2d882814f893891ca689483719bebe706f3f3a5a87d33d | doc | Heodo | |
| 2020-12-23 16:59:05 | 0694e34c9b65631f74351ab2bb680c7d1ac6726bc4948a8897bc8bd62fd073a9 | doc | Heodo | |
| 2020-12-23 16:41:51 | 0339f21444ef1ad35fc320d6879ea93b08d3aea53e25aaf3c5b841a2cdad855c | doc | Heodo | |
| 2020-12-23 16:27:08 | 4cc044495efb4f3eb56cb74a8745ee272e83b730e162b661bc796c36df26f849 | doc | Heodo |
US
IN