URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ytbticket.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-02-26 02:42:10 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-02-26 02:42:11 185.130.215.130Not listedAS50867 ORG-LVA15-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-03-07 17:04:09http://ytbticket.com/pdf1023/readerpdf3.exeOfflineexe zbetcheckin
2020-02-26 02:58:05http://ytbticket.com/64.datOfflineexe zbetcheckin
2020-02-26 02:53:06http://ytbticket.com/ytb1039/1.exeOfflineexe zbetcheckin
2020-02-26 02:47:12http://ytbticket.com/86.datOfflineexe zbetcheckin
2020-02-26 02:47:07http://ytbticket.com/readerpdf3.exeOfflineexe zbetcheckin
2020-02-26 02:42:13http://ytbticket.com/ytb.exeOfflineexe zbetcheckin
2020-02-26 02:42:11http://ytbticket.com/pdf1012/readerpdf.exeOfflineexe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-03-03 03:54:292c86b3b16d28b6cd36e4d9845125d6d183b344d0b8ffb4e945a8a69d3eface3fexe  
2020-03-03 03:54:288e526e63c8e320f3aed12997b5a33207d465e73aea90877b32f8231f726b010cexe  
2020-03-03 03:54:28d5f25be15ba5d4728fdcb90a041ef5fb520ed5b0b797cb4a5df049aed707f8fdexe  
2020-02-26 02:58:05370f797ed3edf51fb9a424f4781826cb77519f08c7ffdadc43ef91d42332216cexe  
2020-02-26 02:47:12ac79e1fd6b6f1825179082e82dc6209ba435af566e40c5cef412272a26934ce4exe  
2020-02-26 02:47:0789b6341763b7e43e9616702513b7261434ce1042652403cddf2195bce2000c1bexe 
2020-02-26 02:42:1319e7031e4261aa48d9d977f81bcbcd1e0628602940757a6bf73357477b4f3467exe