URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 194.49.94.72
Firstseen:2023-11-06 09:13:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-06 09:13:05 194.49.94.72Not listedAS213035 AS-SERVERION- BGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-11-09 21:34:06http://194.49.94.72/1.exeOffline32 exe RedLineStealer ext zbetcheckin
2023-11-06 09:13:05http://194.49.94.72/3.exeOfflinedropped-by-PrivateLoader RedLine ext RedLineStealer ext andretavare5

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-11-24 12:37:050d54dba0063957d8632b5107a0660190dacbbd23c543510dea5ec78177ff0c09exe RedLineStealer
2023-11-24 12:25:338dfae05eff92ce87acd6c78f6d1ae08f9ae5d1537ac6cbd4ba11c5ed457256daexeRedLineStealer
2023-11-24 09:11:027d969fd0a02104e41e9e377433bde1344c5d919b352184d7de814fe787c95702exeRedLineStealer
2023-11-24 09:07:111c892b221cd61d2fa086bfabb54b81a551af660a0b6aa0894362951e46cfa87cexe RedLineStealer
2023-11-20 13:01:03141e1080063391b7da029f94989bfce5b81f85cbd89ab751c9755d23ee0cf80eexe RedLineStealer
2023-11-20 12:53:138f1ecf2e9cf29f96f0de9188e38247116c172b851bffcaf1e19b489d6bb160e4exe RedLineStealer
2023-11-15 20:43:467acf0eba2165fcdfc72338959e9add02c362918c8451a0313c4ef797ae337abdexe RedLineStealer
2023-11-15 08:22:03d61f6627d89d73a60f0098df9a2e44b47e30db28c24ce98712ca6baacd7623a3exe RedLineStealer
2023-11-15 08:03:143670c843eff2bcc2566ecdb2d4e30e0b13b8cde935933c00385503b26b3abd33exe RedLineStealer
2023-11-14 10:24:10ce280a5928ef9078fbd8b0908cd3e48cf0f482bece56501e98bea57928a7dda3exe RedLineStealer
2023-11-14 10:22:298c239b7ab61ba158fd64e4ee080b23d024d27f63b1ce055f69f8fee6c1b67b1dexe RedLineStealer
2023-11-13 15:19:51960b4d86b671415cd404b6b144998bfba0576346fe90df2c7540ba42d879ce47exe  
2023-11-13 14:56:08564ad08d79345be7121e76d778719928ddb37af7208368ca6dfcb703bc7168f4exeRedLineStealer
2023-11-13 14:25:25c658712d3aed2fec2281d04a2d9650c72af23eee2c4258762efeef5c232c9230exe RedLineStealer
2023-11-12 07:56:38cbc0c2f6362096bbbc94ad223922b3c9749e41d0f52697e145ae0b9227ef4c05exe RedLineStealer
2023-11-12 07:46:16e0f318560fad28284276f0827816f0c69fbbeb8691069f74520ca89caa0285cfexe RedLineStealer
2023-11-11 18:24:3712bd2b7714f488b77704aeb676e56bc6cbbedba4738b4a45f27c6ef38cfda771exe RedLineStealer
2023-11-11 17:52:02ede084e2e36e654562baede44cf8edfcc432d59f5a7178503f6a19043ce611acexe RedLineStealer
2023-11-10 19:09:51ec2d925069bf9b32f6c220216badb3ba6be315b6b589c4f3927a486959763566exe RedLineStealer
2023-11-10 19:04:49733e2c2b9b6f626b4395f5b12a9920b5f6d0e59fb9b61e28c85c7476da942436exe RedLineStealer
2023-11-10 07:44:187faf5362a86ec6eed395e596b3fed24fc935efa54fc9be0e1e121fc6cea3e8d0exe RedLineStealer
2023-11-10 07:18:4657ff370cffa136c8e6cb1f0731c9b41406d550b49461af095639d8d84cfdbdaeexeRedLineStealer
2023-11-10 07:15:5848d3df2052df2755a7baee09af80f11986a31152c4575308ac8aae7f05b050ffexe RedLineStealer
2023-11-09 21:34:06dab0e67f3eff66cbdc1b3d12e26b50a5e76c736935f755dfbea422b6e3976f88exeRedLineStealer
2023-11-06 09:13:050f6464732f9c7428188f1f53dcee84f1eeb7821df69abfa866ea7ba7f06e0d56exeRedLineStealer