URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.137.190.166
Firstseen:2021-07-30 23:36:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-07-30 23:36:04 45.137.190.166235019.bitweb.ruNot listedAS57271 BITWEB-AS- RUyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-09 19:34:04http://45.137.190.166/f194cdd8bec9a94b398ad540c...Offline32 exe zbetcheckin
2021-08-09 19:26:03http://45.137.190.166/dd.exeOffline32 exe zbetcheckin
2021-07-30 23:36:04http://45.137.190.166/clip.exeOfflinedcrat exe RedLineStealer ext zbetcheckin
2021-07-30 23:36:04http://45.137.190.166/mine.exeOfflinedcrat exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-14 23:42:18024b8be122d6b658363e0e132d52d469fb107cc5b16e9f78494c89a7756852c4exe 
2021-08-09 19:34:0440d59f94d24d0acc3dc9bb832853e2b9ec079f8b84f216c47a04a547877803f9exe 
2021-08-09 19:26:0340d59f94d24d0acc3dc9bb832853e2b9ec079f8b84f216c47a04a547877803f9exe 
2021-08-09 17:21:0769e7a10168bf96ba60f06987affd48857cd9cda1a518509f435b8b43110feacfexe 
2021-08-08 11:21:01ac085734d51ca988db79b3078badc4ce24481eee7ef68db8811b1a98d2b3980cexe 
2021-08-08 11:20:0258149a24884e425f40c7f2dfd541e5380573e4dccf270564b4ae71df235bbc87exe RedLineStealer
2021-08-06 21:07:17e7a12f2910eaa2aabc347d0ce882f83662a02c0369fc0e59df98bd6833a712c2exe RedLineStealer
2021-08-06 20:51:594d82748848e00db2a55ebcf13c96c12c1b23d3d13c6b25d346505720a7b5f4d5exe  
2021-08-05 17:08:58e12e033163205721012606e52c60f7c23730ffe57c0adcae7f4193ef9e47e9adexe  
2021-08-05 17:01:071437c40c198e4284c2031babbbbe575bc9ffd6c6577c0637e8f95b8b5499a646exe  
2021-08-04 20:10:17767e8cdbeeb723d9a79665ef465e3ceca2595d773a04a7c900d550ad780ee1ffexe 
2021-08-04 20:07:3869051caca63e511a3921df1bef3a5f87155b6b56a5d57293c172929f5f170cd6exe 
2021-08-03 16:17:23924e18d95c8ab8d55d962b7c66539a8dc94fb3109e755f127793116038d470aeexe  
2021-08-03 16:09:31cb735dcfe8b342ecd7a3710e7adb218e5335a9ee377c8a066128aecce9a9c64eexe  
2021-08-02 18:23:54ecd7a281c1f3a500a0ed2e6c745c965ae725bcea75e9d7b6a5520eb41dc79cd5exe DCRat
2021-08-02 18:15:213e44fa58db896416c8d221a9f73447c357ab55ad8ca835bd7f24e22edf97770dexeDCRat
2021-08-01 20:05:2330320c23745d14085669f891d3805c6fb3823496cbea8fcae4384cfecd505f49exeDCRat
2021-08-01 20:02:36ea07ac0be9b5d757b3d6eab704606fb022770451be04c729af03f3a0941d3fc8exeDCRat
2021-07-31 17:32:509cc0cf19e63fbf43ed381c94967a1c52a606452657cc05c17b27a1a07e2c5607exeDCRat
2021-07-31 17:27:0188c642b1fa43b77487f3916dd95ac236189971475c3289c745dc45a739e6453fexeDCRat
2021-07-30 23:36:040389ffef740d3bd365f2b699ac006b478a5346a1dc2383e10fd5152771641c0bexeDCRat
2021-07-30 23:36:045f2846d5daa6e5781427feb62144502ff1522b8250eadbfb7aa3602d04eac1fbexeDCRat