URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 21:12:56 | 104.21.11.115 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2025-04-27 21:12:56 | 172.67.165.244 | Not listed | AS13335 CLOUDFLARENET | n/a | yes | |
| 2022-06-12 21:54:46 | 209.99.40.222 | 209-99-40-222.fwd.datafoundry.com | Not listed | AS23005 SWITCH-LTD | US | no |
| 2021-07-26 09:56:17 | 192.185.129.69 | 192-185-129-69.unifiedlayer.com | Not listed | AS46606 UNIFIEDLAYER-AS-1 | US | no |
| 2021-07-23 16:27:04 | 62.210.94.85 | mail.erasoft-eg.com | Not listed | AS12876 AS12876 | FR | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-07-23 16:27:04 | https://www.orbiia.com/dfdkndfpronnrgegirwgowwr... | Offline | GuLoader |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-07-23 22:06:54 | 88fc32a54543077e4f66df43eb5f41c908de966d843e5cc3b55298e8a12ed3f4 | exe | GuLoader | |
| 2021-07-23 19:29:27 | 9c20d2a4e22acfdf30c9b3cc30e5d5988454ac2eabaedfd4cbbc3b9bb5abdf27 | exe | GuLoader | |
| 2021-07-23 18:51:01 | fc55920200c36ee47942792a3be6e7f8b00e46fd83ae7bcd826fd32e547836ef | exe | GuLoader | |
| 2021-07-23 17:20:30 | 47f451a5c624a832017e0fe25c816bf5452b785920047d09b18f0896e6bd8ff5 | exe | GuLoader | |
| 2021-07-23 16:27:04 | 1fbf984271ffa5cf79c2e5e9be8d40198d2c6619ce96899844a9d4ab2ef5bffa | exe | GuLoader |
US
FR