URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 158.94.208.168
Firstseen:2026-03-22 17:45:06 UTC
Total malware sites :24
Online malware sites :20 (83%)
Offline Malware sites :4 (17%)
Newest active malware site :2026-03-23 06:35:14 UTC
Oldest active malware site :2026-03-22 17:45:08 UTC (Age: 13 hours, 9 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-03-22 17:45:08 158.94.208.168SBL686264AS202412 OMEGATECH-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-03-23 06:35:14http://158.94.208.168/files/1032264266/l8iybfv.exeOnlinec2-monitor-auto dropped-by-amadey rustystealer c2hunter
2026-03-23 01:43:07http://158.94.208.168/files/8012574236/ZMxUkZd.exeOnlinedropped-by-amadey fbf543 njRAT ext Bitsight
2026-03-22 21:30:11http://158.94.208.168/files/1103068177/8WTjrO1.exeOnlinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 18:06:04http://158.94.208.168/files/7268244560/PHl2Bgd.exeOfflinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 18:03:07http://158.94.208.168/files/7850695435/gpaMBVQ.msiOnlinec2-monitor-auto dropped-by-amadey EternalRocks c2hunter
2026-03-22 18:03:07http://158.94.208.168/files/7341834371/BgAtGH0.exeOnlinec2-monitor-auto dropped-by-amadey Stealc c2hunter
2026-03-22 18:03:06http://158.94.208.168/files/7453936223/KAQ8PQ5.exeOnlinec2-monitor-auto dropped-by-amadey Vidar ext c2hunter
2026-03-22 18:03:05http://158.94.208.168/files/7782139129/1fz7hzL.batOfflinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 18:01:05http://158.94.208.168/files/5900855435/eNLe4nm.exeOnlinedropped-by-amadey fbf543 Vidar ext Bitsight
2026-03-22 18:00:08http://158.94.208.168/files/8036065901/ggGms6j.exeOnlinec2-monitor-auto dropped-by-amadey OffLoader c2hunter
2026-03-22 18:00:06http://158.94.208.168/files/7535437325/hyYzXsC.batOfflinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 18:00:06http://158.94.208.168/files/8531638373/QWFfVk7.exeOnlinec2-monitor-auto dropped-by-amadey Vidar ext c2hunter
2026-03-22 17:59:11http://158.94.208.168/files/7782139129/S6xWuZ1.exeOnlinec2-monitor-auto dropped-by-amadey Vidar ext c2hunter
2026-03-22 17:59:06http://158.94.208.168/files/7782139129/ZSZfFtn.exeOfflinec2-monitor-auto dropped-by-amadey SalatStealer c2hunter
2026-03-22 17:59:06http://158.94.208.168/files/8574065846/HPlEReH.exeOnlinedropped-by-amadey fbf543 Vidar ext Bitsight
2026-03-22 17:59:06http://158.94.208.168/files/8717422379/VMa1dJb.exeOnlinedropped-by-amadey fbf543 Bitsight
2026-03-22 17:58:06http://158.94.208.168/files/5848981546/hRw1yLa.exeOnlinec2-monitor-auto dropped-by-amadey Smoke Loader ext c2hunter
2026-03-22 17:58:06http://158.94.208.168/files/8434554557/X8cqVrA.exeOnlinec2-monitor-auto dropped-by-amadey rustystealer Vidar ext c2hunter
2026-03-22 17:52:09http://158.94.208.168/files/neo/random.exeOnlinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 17:51:04http://158.94.208.168/test/random.exeOnlinec2-monitor-auto dropped-by-amadey c2hunter
2026-03-22 17:50:07http://158.94.208.168/final/random.exeOnlinec2-monitor-auto dropped-by-amadey NirCmd c2hunter
2026-03-22 17:50:06http://158.94.208.168/files/unique5/random.exeOnlinedropped-by-amadey fbf543 Vidar ext Bitsight
2026-03-22 17:50:06http://158.94.208.168/files/gop/random.exeOnlinec2-monitor-auto dropped-by-amadey Vidar ext c2hunter
2026-03-22 17:45:08http://158.94.208.168/vidar/random.exeOnlinec2-monitor-auto connectwise dropped-by-amadey Vidar ext c2hunter

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-03-23 06:39:258973953da22ae576d3391b47b7b117c8cb833a34970699561594cca7e8b2797aexe  
2026-03-23 06:35:14691c051d878de73423b43e45c09d5935879cb9c5234d9ec9ebfcd2b091a6c387exeRustyStealer
2026-03-23 06:33:550257f7a632a3f3e167eb208b7a9c582d849735263092d94fe3b12e9e673ab8baexe Vidar
2026-03-23 04:07:13e87e5ca94e55ddc0e3d98d17384ecf273780e423c65933b7d8fcb35d3414ca4aexe  
2026-03-23 03:10:03679e5732eabf7d38ade383b543dbeca330503d26d40609132e34706ff4dcb3efexenjrat
2026-03-23 03:04:31cb1ae636d14106d5558c5eee0c4a87ba4f9863a8112a75c5714dfe2ed28d0140exe RustyStealer
2026-03-23 02:57:288428d2db1f70caaa79934f30068fb4eddd4874ca5702ad53c5c8c12c46513f24exe 
2026-03-23 01:43:073363d6303e76b785f58f2a2f3366af0a0094f742aed46448a3f3a97b300c404eexenjrat
2026-03-22 21:56:38844aa9ac5bd2d5d9517dd7a8fd06f3dbc32a794a3f0973da94c6436764503fd7exeVidar
2026-03-22 21:52:127e1d19ec4a39f4050f2fb64c9a633f68827fa4896827ac85cffc6ee6c5814fb7exeVidar
2026-03-22 21:30:11582d90287db6ab528ac342c7e3d77f5272132c28f62b248d4d0c6f85421fa8b1exe 
2026-03-22 21:13:04388438dc99adfc89ff8585d4214339c33a9ee07c57881892ff670e04e2b0e1adexeNirCmd
2026-03-22 20:42:55924403dd6074e9fbd71add4248f738912f4b499e271be6c03d759f70f80aae13exe  
2026-03-22 18:03:07de6a89934b09b3a090a3e742e4375b366a56a9b3ad12d5112be2b56c3124ceb5msiEternalRocks
2026-03-22 18:03:07764adefbf141f0d492793bc9eb509864fffce59611f20592d905e554ed67ee74exeStealc
2026-03-22 18:03:06a6edec8bb8a1de71eff27deecd7aae78ef4514dc8e2ed3dd83aeaf25a7e4a188exeVidar
2026-03-22 18:01:05af441c0683f07249f0a9a6e88aff3dd58e8c7597624a2719aa553464f8aaa960exeVidar
2026-03-22 18:00:08ab5a5aa399949370a99cfc953d9e93a11c7a5c16623f9ce3b94da126e3c9bd49exeOffLoader
2026-03-22 18:00:0699778434fa47a2264a4db4046c012289646d256b5b5373c88727c5a935f2e679bat 
2026-03-22 18:00:065ae30eecdfb95d98cf238ff69b392cb36d1d3fb09481d79fa92c69dad48a0df0exeVidar
2026-03-22 17:59:11d6004a74d6a6a13bf680141e01999eb3635ebbacd50fa36d734fe3396afbe8e2exe Vidar
2026-03-22 17:59:06cff753b684ed47012476d3cd6e5341b863baa66077371bfd8c5e47413fcfe255exeVidar
2026-03-22 17:59:06db6381cb9c7713c1b142fa6013d85c84e8121917036131e707488f1dc1111f2eexeSalatStealer
2026-03-22 17:59:051588e28cc6363ba74f755ac49d2f66572d279b43ce8449b49f934aa98523f382exe 
2026-03-22 17:58:06af3330efee44beca6246b042b64de26010971c71a4c551cf806a3d7856079c5fexeSmoke Loader
2026-03-22 17:58:0603f44dd98bf2c2a9fa5f683f061f2bd0b35d0326c61b71496299848e91edd612exeVidar
2026-03-22 17:52:09495289174bc60415fa365c6df143d1da3a88f4992abce76d5e6e83e941e46b67exe 
2026-03-22 17:51:0450c063208801f6250ad0984212bbff667fa4b979b5443a639b24bc5bbdce0b5dexe  
2026-03-22 17:50:07db9b43a0679f88c51197af4a266a1fa8d0a853a654b33139979953c9f11ad6c1exeNirCmd
2026-03-22 17:50:06f763b7475ff730f4e836dca3b934e9888c73cb5eb7047b3644c00370a72182f8exeVidar
2026-03-22 17:50:05c4ad2d2df36d58cd27d9d0525aa82b8ab46c9f1d453db1e4d032cbfe9a489106exeVidar
2026-03-22 17:45:08302e42beb59e7f9e5695e97fc188cdbef735cdee5f3c44f080e5e52d6e2df995exe ConnectWise