URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host 185.145.45.156.

Database Entry


Host:185.145.45.156
Spamhaus DBL:Unknown
SURBL:Not listed
Firstseen:2018-09-08 10:45:04 UTC

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-09-08 10:45:07185.145.45.156Not listedAS49981 WORLDSTREAM- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-09-08 11:40:05http://185.145.45.156:4560/codes/yel.exeOfflineexe Loki Clean@zbetcheckin
2018-09-08 11:36:05http://185.145.45.156:4560/codes/arm.exeOfflineexe Clean@zbetcheckin
2018-09-08 11:36:04http://185.145.45.156:4560/codes/say.exeOfflineexe Loki Clean@zbetcheckin
2018-09-08 11:32:04http://185.145.45.156:4560/codes/fish.exeOfflineexe Loki Clean@zbetcheckin
2018-09-08 11:32:02http://185.145.45.156:4560/codes/sha.exeOfflineexe Loki Clean@zbetcheckin
2018-09-08 11:31:06http://185.145.45.156:4560/codes/press.exeOfflineexe Clean@zbetcheckin
2018-09-08 11:31:04http://185.145.45.156:4560/codes/sol.exeOfflineexe Clean@zbetcheckin
2018-09-08 11:31:03http://185.145.45.156:4560/codes/press1.exeOfflineexe Loki Clean@zbetcheckin
2018-09-08 10:45:07http://185.145.45.156:4560/codes/stu.exeOfflineexe Loki Trickbot Clean@lovemalware