URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-27 10:48:15 | 41.185.8.76 | srv78.hostserv.co.za | Not listed | AS36943 ZA-1-Grid | ZA | yes |
| 2019-07-30 09:25:00 | 160.119.100.63 | lnxsr13.webr.net.za | Not listed | AS328170 DataKeepers | ZA | no |
| 2019-05-09 09:53:09 | 41.203.18.3 | www3.jnb2.host-h.net | Not listed | AS37153 xneelo | ZA | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2019-05-10 15:44:15 | https://www.refugeetents.co.za/wp-content/Oj/Oj... | Offline | Trickbot | |
| 2019-05-10 15:44:11 | https://www.refugeetents.co.za/wp-content/Oj1/O... | Offline | ||
| 2019-05-09 16:57:17 | https://www.refugeetents.co.za/wp-content/If1/i... | Offline | RTF | |
| 2019-05-09 11:19:16 | https://www.refugeetents.co.za/wp-content/ba1/b... | Offline | ||
| 2019-05-09 10:33:11 | https://www.refugeetents.co.za/wp-content/ba/ba... | Offline | Loki | |
| 2019-05-09 09:53:11 | https://www.refugeetents.co.za/wp-content/chi/c... | Offline | exe Loki | |
| 2019-05-09 09:53:09 | https://www.refugeetents.co.za/wp-content/chi1/... | Offline | CVE-2017-11882 doc downloader Loki |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2019-05-10 15:44:15 | 6d01ee99d5c720b96cc5d8d468305ad87fd0cb0e3730fd907f74a27d13239a06 | exe | TrickBot | |
| 2019-05-10 15:44:11 | 540a08dfe14cc84db73fa353e9bcf10a51909a6707d321ebb5d8d9c56ee19a0e | rtf | ||
| 2019-05-09 16:57:17 | f96bf4dbaeb4735968637a3666c25fa3df0234695b90d65aabb07f38248bb3ac | rtf | ||
| 2019-05-09 11:19:16 | a81fec166f21ec173c4aae58c5c7d042a2097de298b56d6b9a897395e5e256f0 | rtf | ||
| 2019-05-09 10:33:11 | ee5ce848044843cd0ceeeab61270c15a35f571a9faca4daa9cc17b212dc753d9 | exe | Loki | |
| 2019-05-09 09:53:11 | 6b811dfaca8c616317f2cc9dfddaf026d98dd7e5725be5e614c47d9e55ae9083 | exe | Loki | |
| 2019-05-09 09:53:08 | 849633f5a2386ec8a970f6abae03a96e55a78e7b2b1afe6940919a5acac61a11 | rtf | Loki |
ZA