URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 178.16.55.70
Firstseen:2025-09-02 04:03:05 UTC
Total malware sites :8
Online malware sites :7 (88%)
Offline Malware sites :1 (13%)
Newest active malware site :2025-11-16 15:38:19 UTC
Oldest active malware site :2025-09-02 04:03:13 UTC (Age: 2 months, 18 days, 23 hours, 9 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-02 04:03:13 178.16.55.70SBL683901AS214943 RAILNET- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-16 15:38:19http://178.16.55.70/UniversalBrowser.exeOnline abuse_ch
2025-09-09 06:35:20http://178.16.55.70/q213fd.exeOnlineexe QuasarRAT ext dms1899
2025-09-09 06:35:20http://178.16.55.70/x1234.exeOnlineexe xworm dms1899
2025-09-09 06:35:15http://178.16.55.70/s244.exeOnlineexe dms1899
2025-09-09 06:34:08http://178.16.55.70/l843.exeOnlineexe LummaStealer dms1899
2025-09-09 06:34:07http://178.16.55.70/n8388.exeOfflineexe njRAT ext dms1899
2025-09-02 05:22:07http://178.16.55.70/v19239.exeOnlinec2-monitor-auto dropped-by-amadey VenomRAT c2hunter
2025-09-02 04:03:13http://178.16.55.70/v3434.exeOnlinec2-monitor-auto dropped-by-amadey njRAT ext QuasarRAT ext Vidar ext xworm c2hunter

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-19 10:07:322c3ec8df887b5d9f65017917554c23d41830be217e26757dcf45aaa0b96500f5exe  
2025-11-16 22:33:16322316e47680273f8fc9e19ebc184f79ef034df9bd9cbaca16981830cc1ae836exe 
2025-11-14 07:13:48d2173d71f1f062e9f767075b82f7c4c4153c6aaf80f97202d4055429af5c3f3dexe njrat
2025-11-13 07:49:463333d304a03d22fe82d82dc9d3561fc5df761b4c27d563e0b4e908af02c6fe1cexe QuasarRAT
2025-11-12 05:47:12d8c5d04d859189de3321a635abcd5ddf84f28f04119830402c66527ae36ae3bcexe  
2025-11-11 19:44:094263f3bf622b67bd45664a7dabd389777997e2d1304156d22d8926a246b3e5a4exe Vidar
2025-11-05 09:03:07a716e32febd8d73a8fd105b3e54b111918b7279250665850968ba954170b8fa8exe Vidar
2025-11-02 21:17:03e39c53235a69fbf475022607381fc0aaf1a3730b2f812ca45d0ea20b92903b9cexe njrat
2025-11-02 16:38:222e0210288c277759777273fc8be96b4cf1b10027ebda7e15cbfbdc7da15cc9f7exeVidar
2025-11-02 05:27:02a16ef8cd6d331655c72d192ee75e26b5e9b3b5c0914b306944269db98f6c1f2dexe Vidar
2025-10-31 14:53:04cfab2e8d53783b5af7d4627faa24cb3895ab58e8edf8b153259b0633e36ac958exe  
2025-10-30 12:04:0977aa01db8271f6a66d74a67a0f6a291ae68aec5120e4db8d831eec0ddea6d0b9exe 
2025-10-19 16:00:11cd8020249e6e52bc13433b2a3da0028244afe2fc2e95650c10fb559aa7bbd7e2exeVidar
2025-10-13 09:37:5398e7702831534b4a4e3ec22791555d21ddcfee9e306ba882b2f9c37aef8d763bexeVidar
2025-10-09 03:42:53d08846cf35cb56da56be21201e7a056c30e98fa6fb5d778b61c483bd0cf7fd3eexeXWorm
2025-10-07 04:47:2864cad1ccb76a7413eaad9330f1e5ad44269c0b51098e83053bf0e13039f81b0dexeVidar
2025-10-06 10:37:387a7b817b401bb8f0bacaefe551adb695dfdf8873de4457ebe368d6c7a4555c21exeVidar
2025-09-29 21:56:37ea9295847b901711f67d0647b2f8eaf528e5b0254d6590153c12a52c547b37cdexeQuasarRAT
2025-09-26 04:27:286a7396d49126f2c310c0a47f0e6c85890d7e609f382ff3309f79da2b1562398cexeVidar
2025-09-19 16:16:02e87152ef68cd00d81c8890079fbb9acd18ad90e6d6568251feda68e5761d76bdexeVidar
2025-09-15 02:43:4415bcff2e78c4739154eaa724eadece06f8b4955e66becb5412d8a6921df1c481exeVidar
2025-09-10 21:25:44b51faaf89ca817bb943abf2b161537106eeaf0b1f0114b406c5c9ab9a4ce1f66exeVidar
2025-09-10 02:22:287ead82ce70c57933a2d02fc683eb1e4de5bdaef6eb44dd26ee387a54a81f73d4exeLummaStealer
2025-09-09 15:32:44074e6f0bbab42ec220ce7c74545986d8ba1a641eb1f8690ad0d90063b0529844exeQuasarRAT
2025-09-09 14:55:491804b5321d5fc2c3cf64c44a7b709f9b2aba7f525b45f66f53a5deb94e905003exe XWorm
2025-09-09 06:35:143c46fb64e90f52f3ff1924e1de68e962c1d44dcfab267183245265fac43be7a3exe 
2025-09-09 06:34:0824a831a9e9ea4bca18aa2a67d8f4d15853dd344710895db594d0562a5e16961aexe  
2025-09-09 06:34:077f930050a1cfb55393b738cef30ccfeeb540bb1d047ffecd0c2aaa038bf69c29exenjrat
2025-09-04 20:56:10abc96e29a342d5766dca5cb791d0ba938fb96db82bd6d8587bb77722d5cf426fexeVidar
2025-09-03 18:31:095f809fd6dfd4a9835a59270b0a82fa23d4b7be207729892f58d4ed0f1cd0ea23exeVidar
2025-09-02 05:22:07ad9f1ab9367b5a513d1489e58c9489c1870e6384508990a267b849b0031a29bcexe VenomRAT
2025-09-02 04:03:12f0311927554d2cc8d96fdcc7756851ce6020e33ac2663a736dca2ad4fd411d48exeVidar