URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: xleetaz.xyz
Domain registrar:Namecheap -
Domain registration date:2021-08-30 06:54:41 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-09-22 12:17:03 UTC
Total malware sites :27
Online malware sites :0 (0%)
Offline Malware sites :27 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-09-22 12:17:05 185.239.243.112ns1.20mb.nlNot listedAS212238 CDNEXT- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-10-06 13:37:07http://xleetaz.xyz/benx/obn.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-06 13:15:04http://xleetaz.xyz/timberland/documentk.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-06 08:40:09http://xleetaz.xyz/timberland/palingo.exeOfflineAgentTesla ext exe abuse_ch
2021-10-05 16:44:08http://xleetaz.xyz/benx/bde.exeOfflineAgentTesla ext exe abuse_ch
2021-10-05 12:50:04http://xleetaz.xyz/benx/syz.exeOfflineAveMariaRAT ext exe rat abuse_ch
2021-10-04 12:54:02http://xleetaz.xyz/benx/abx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-04 12:45:06http://xleetaz.xyz/benx/bbd.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-04 12:38:08http://xleetaz.xyz/benx/mbc.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-04 12:38:03http://xleetaz.xyz/benx/mexz.exeOffline32 AgentTesla ext exe zbetcheckin
2021-10-04 09:33:06http://xleetaz.xyz/peoples/donelll.exeOfflineAgentTesla ext exe opendir abuse_ch
2021-09-28 01:21:03http://xleetaz.xyz/benx/sya.exeOffline32 AveMariaRAT ext exe zbetcheckin
2021-09-28 01:16:03http://xleetaz.xyz/prison/bobo.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-27 19:05:05http://xleetaz.xyz/benx/mbn.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-27 10:55:04http://xleetaz.xyz/santorini/vals.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-27 10:48:03http://xleetaz.xyz/benx/bd.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-27 08:56:03http://xleetaz.xyz/prison/ikk.exeOfflineAgentTesla ext exe abuse_ch
2021-09-27 08:56:03http://xleetaz.xyz/prison/sam.exeOfflineAgentTesla ext exe abuse_ch
2021-09-27 08:49:03http://xleetaz.xyz/prison/deck.exeOfflineAgentTesla ext exe abuse_ch
2021-09-27 08:49:03http://xleetaz.xyz/prison/okb.exeOfflineAgentTesla ext exe abuse_ch
2021-09-27 08:49:03http://xleetaz.xyz/prison/wzii.exeOfflineAgentTesla ext exe abuse_ch
2021-09-22 16:57:03http://xleetaz.xyz/stockers/valman.exeOfflineAgentTesla ext exe de_aviation
2021-09-22 14:48:03http://xleetaz.xyz/benx/sy.exeOffline32 AveMariaRAT ext exe zbetcheckin
2021-09-22 14:47:12http://xleetaz.xyz/benx/ob.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-22 14:47:11http://xleetaz.xyz/benx/mbx.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-22 14:47:10http://xleetaz.xyz/benx/nd.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-22 12:17:07http://xleetaz.xyz/stockers/effot.exeOfflineAgentTesla ext exe abuse_ch
2021-09-22 12:17:06http://xleetaz.xyz/stockers/okito.exeOfflineAgentTesla ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-10-12 16:10:38de70a20871646affb197b600a832ab403fcf59b72ee48b3573b6b88ce130e29cexe AgentTesla
2021-10-06 13:37:077f8c1b6dd74eecc02125618d05841c13509c7d34d28490518513fb37d5f6a697exeAgentTesla
2021-10-06 13:15:0488e65282d425f78b3d5d501cc04b50411fdeec8d2c03ecfe9ae1c0fab9cba7bfexeAgentTesla
2021-10-06 09:03:52a0940b4fc077c18fe05d3b52458591383f22504a963e1f7c88c3ef7e07920fb9exeAgentTesla
2021-10-05 17:03:2093a82b7810eabe49c667f08aed2575bde3d3d536538031622aa9e2566b81ffe9exeAgentTesla
2021-10-05 13:40:40f06627f772053390f4b66021128ac0c2c1c2be48db2acf9a265d435bcfe0aaa6exeAgentTesla
2021-10-05 12:50:031142c903a0559833481d199320d433f99a4599db90d4ba0db736a39a8729c7bfexeAveMariaRAT
2021-10-05 08:14:3298322921da15414408a9acb44044642427eaa025426c138b479fddb6aaa8d680exe  
2021-10-04 13:04:437fd3d9d611f69b2a54329cabc7c5000e65f54a733b52ec771a382f63fa820617exeAgentTesla
2021-10-04 12:49:31ef0e7b943e7baf777538a3b2b83c30ed0e4f8282a014a9d6a73aac1e4b08d2b9exeAgentTesla
2021-10-04 12:45:06f74641b6679a070fdc646ba59e70ceca780fac09cd4b9188c97f16218d65b8f4exeAgentTesla
2021-10-04 12:38:08cf555797a5639992a7c068712007937cd78925a3367928f6824e3fc71248717cexeAgentTesla
2021-10-04 09:33:06e1cb0ef94431eeabc054fda95fda916ccc564f5d05c808fdf54e573e40f043f8exeAgentTesla
2021-09-28 02:08:38cc0ba16fbcd21a2585f713a0abe2afdb9383eade2e282909e19101e0347b6c14exeAgentTesla
2021-09-28 01:21:03e050e0df13b22fc9810a06e1c405d8ead485bbe951aba4f5f5b9003f8f7a223fexeAveMariaRAT
2021-09-27 19:05:05b8b83c8fa34bebce9f1b0e9b38d6ae55a7158e05efac7b0f2ca9dc48a6047dc4exeAgentTesla
2021-09-27 10:55:0449078f4920c2d5140271444e1a5f8baced6c85ae2073c4483673ac1fef223a62exeAgentTesla
2021-09-27 10:48:038f381df44c7ec3215922b124616148b7cddccb2a0399e7bf366849650114d25fexeAgentTesla
2021-09-27 10:10:1633a142ce0fb9e1ba99c5f73671f1e02236400878e6e0f893c06ee6f2bcb78127exeAgentTesla
2021-09-27 09:59:15250ea14406704ab30bf00c4be58d2db7066c586d623ad6a46d7a147469bea6d6exeAgentTesla
2021-09-27 09:47:450e62b91dc3b45ba9c37f61bc8cafdb61f992be2b77c1cf35498e93797a1c5b24exeAgentTesla
2021-09-27 08:56:03c2555ee80b31617cd115cafd993c50541c949c8f0168f213277180ca055e4944exeAgentTesla
2021-09-27 08:56:03f863520fc90873d113c676de404b9eb190545e8e412873404ef3461e3a163234exeAgentTesla
2021-09-27 08:49:031363563f842fe38170c46b16edcaa81fba87597a4127cb0f343842f3650e98a0exeAgentTesla
2021-09-27 08:49:03e0974f42b8ec273159278e2ba6f2d9aa4121e96a919d2bd12ef27718a4520d61exeAgentTesla
2021-09-23 13:20:4248cabdddbe0f55b7d1404df89774de3d6cea65d29a11cea00b3d41e795bbbf91exeAveMariaRAT
2021-09-23 12:50:572581f09549b3b3a23abf0a5f9779ebb5e15136a4234310a5bfb69781362cd67eexe AgentTesla
2021-09-23 08:45:198710401b25a9d959cfd4012cdfca45f4916c8dd92245d34ee64549f87e7c0cc3exe AgentTesla
2021-09-22 17:57:18f98725c30be4a2a4ed46717b9da9b888b38d5ec1c686d1285eb1852c99817275exeAgentTesla
2021-09-22 16:57:0373b2856d219ac1a904bf652d2e6a9104c3974c014a1c5d2c91863f3c3679af03exeAgentTesla
2021-09-22 14:48:03b3ee51fa4b40aa36a221f4bdd554dd3b0557185a6f9e8a4d45823431d734c839exeAveMariaRAT
2021-09-22 14:47:1065dab97ed496ddf1b43a44e95c687805150d92a97bcc9b1b28600ad6a20c1547exeAgentTesla
2021-09-22 14:47:106dbb6d26dc71f0e54e1164cbb7c338cc264c82b3bfc9ebd79ead61ef0a9b4abbexeAgentTesla
2021-09-22 12:17:0554a5fb0e74b745f705a71f8a0627043125c983b56b685fbb7036877cb424fa66exeAgentTesla
2021-09-22 12:17:051c681cf76b6e98ac26dd63ae611b0457a3e5226676bdf8f311d8e040c303874dexeAgentTesla