URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.138.172.28
Firstseen:2021-08-21 20:01:02 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-08-21 20:01:04 45.138.172.28SBL640799AS30823 AUROLOGIC- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-22 14:24:04http://45.138.172.28/blog/images/kl8.exeOffline32 exe RedLineStealer ext zbetcheckin
2021-08-21 21:58:04http://45.138.172.28/blog/images/laste.exeOffline32 exe RedLineStealer ext zbetcheckin
2021-08-21 21:54:03http://45.138.172.28/blog/images/sefile.exeOffline32 exe RedLineStealer ext zbetcheckin
2021-08-21 21:50:05http://45.138.172.28/blog/images/kl6.exeOffline32 exe RedLineStealer ext zbetcheckin
2021-08-21 21:50:04http://45.138.172.28/blog/images/sefile2.exeOffline32 Amadey exe zbetcheckin
2021-08-21 20:01:04http://45.138.172.28/blog/images/ipfile.exeOfflineexe RaccoonStealer ext StealthWorker abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-22 14:24:04010c090c1ac469ca4ab2a210a31c0e7a986b1c25ca8f95522a6d0c9294fa4e10exeRedLineStealer
2021-08-22 14:08:07fc4a24aa8b9440c6ce85649a5b49162e84129586dd7d76129a6a47d4e3056225exe Amadey
2021-08-22 14:01:083d42cd82277ce680ea957a5925711565d3ed4a19f1a8295397d5b2078221fcdaexeRedLineStealer
2021-08-22 13:33:338ae95845d165a1e70adca046af7d67a91d708d22913921c64576237c7bb6bd1aexe Amadey
2021-08-22 13:15:1383b48c19f58ad284a16653a1e4eb298f18dc4a8d5931f3a5b408a8501516f809exeRedLineStealer
2021-08-22 13:06:02bf42c912b743fb8702725a2c3110be1f3a3d8a5c6fe3fc59fc540f4927b901f8exe Amadey
2021-08-22 12:37:09c21ae1f9f21b874f5640c6ad73b195dc03aeea29dfc7902307389d1d0a0dca63exeRedLineStealer
2021-08-22 12:09:15beb9b92ade8a92e7ed91592c7e29f929fd3df13a650adaffcecefbdd07b3d703exe Amadey
2021-08-22 11:31:434e1f4798d90934bc4331147bd26f38692aa8852bdecb10ef55c07fdd03e5516bexeRedLineStealer
2021-08-22 11:08:53ffea517f858fab40a7821d566836e62de3a673c622682ae97ccb832fcd00b020exeRedLineStealer
2021-08-22 11:02:44680a7cce0bbbe22b9d186c3bfa4f1a35309666118da4188764391e823cf6ded4exe Amadey
2021-08-22 10:38:506c541423c79bfcdcafe340fa2e95a78855f03bf7f4875e7cc9c59d87032714d8exeRedLineStealer
2021-08-22 10:36:08c141ac56bbc6309a799e931ea4f1166c62ccb6536ea582b55093346dab2249aeexe Amadey
2021-08-22 09:31:38fd0b0fa1ff8e771651b645b1d5841450c81b766372c2ef8118d5b5deb555bfaeexeRedLineStealer
2021-08-22 09:30:54b971a8454ade014dabb94d6f5bd2ccb8c4e4739d66e74542e483e2105c051238exe Amadey
2021-08-22 09:05:437b740416f963426fb589403d522cbac20d4d63aa7148268a3fa1046fefdc95a4exeRedLineStealer
2021-08-22 09:00:23f46dd7f3ff7f529b3d554b5ae1d79b79a267782721fb9e64652cc060306f33d4exeAmadey
2021-08-22 08:37:29d5794ceecca7a68b1f8e16473aef98c58166727f43639ce48c7005b2e63831e9exe Amadey
2021-08-22 08:37:069e02a96c2d82b56a0ae15d15d6c6ae329dc2e7c9abebc8d37c757c9e05a5cdd3exeRedLineStealer
2021-08-22 08:05:231ee6ce0e36a5069f2f408970a4457785d299fdc6ecad1c994576d3a156b7a290exeRedLineStealer
2021-08-22 08:00:53e61e4c28511d8dfa0254c53d7de6bc74bae8818640a2531947495d955474cd08exe Amadey
2021-08-22 07:35:060ef3f7e0260869c07ae7ca6e51d8e8248b0be6d56fe13a346886abcc1044f441exeRedLineStealer
2021-08-22 07:33:19ade07925ce7d626c69d0c749e1c8dee4055d53e46014eb5d9e927213e2080dd3exe Amadey
2021-08-22 06:35:120b266bb7a466b827737f7bc53cb6e05bc53627368030dd5213c4ddfed94940c5exe Amadey
2021-08-22 06:31:05e8f5dfe9de925af42cfa0e992b015d49b07648f44375944569690819173e0decexeRedLineStealer
2021-08-22 06:16:46fadc387abfe04393f99f4de4bb3a324998af465cab70f03980b4f92f8c36800eexe Amadey
2021-08-22 05:41:5915cea52db77fc6411ed0cd5f248636f190e3ccdd1bb4a3138a95eb60a60ca06fexeRedLineStealer
2021-08-22 05:11:176c5483c0ea4e5e84fbba65b5fa1d51b374d45fecc0e42e2f5f3717c4bbab5801exe  
2021-08-22 04:35:546e2aff911df6b3c5c000a4d11ea30d660fbe08d1c0bfb4862c96cde2d5f5105bexeRedLineStealer
2021-08-22 04:30:5915cbb09094c04776d79b058ce40416a4acc05d4af3732dbbe76ff978308a71f7exe Amadey
2021-08-22 03:45:57b812dbe9129d88c1678a30de2ef373f01f7f6077c15b5652acbc18692427c8beexe Amadey
2021-08-22 03:34:19680ebeb7b1d06535af0db69f6d6a07d0b399fb415fc22ef59c703b12ee90b6a7exeRedLineStealer
2021-08-22 02:37:12363922782dedd54d93e3512861c92632143a4a0759fd0ab18b0daa312fb0308fexeRedLineStealer
2021-08-22 02:33:343112fb7ad12bd5f4aa6f7d494363f9627e7342506224a07922e51f9a6cf6501eexe Amadey
2021-08-22 01:40:16096ba73ab053572b1bbe3bef272ec9c1bf5e0512908cc405368497a888173059exeRedLineStealer
2021-08-22 01:37:039e9a62a91c9b357f6cdd02553589d2df2e4a2e15074956ef557b6f85a677f13fexe Amadey
2021-08-22 00:37:27cd96a890f27ab49b89c5b099b93c9d985e852c1e277d6085a47ae8812d7cfe46exe Amadey
2021-08-22 00:35:45563b677175044496716ac94ecdc08d4fda6de1c1f7138ec6c703319fd96e1f1cexeRedLineStealer
2021-08-22 00:15:56ef5ede6e1b125395308f34de8eb0f26731da202aeff3ad6256b621e6a5b89fc2exe Amadey
2021-08-22 00:05:22ba46ed4d1b57caf49d7125087af141259ef1c032fdb45399d931f3518e09d504exeRedLineStealer
2021-08-21 23:04:43220af38e972103ebf6e40cd62007847ef3935b5df8d5644b752f8d17001660efexe Amadey
2021-08-21 23:03:57ad698d46fec403e18dc93296c77b24d178904e2e10bd278bcde09d6a8369e3ceexeRedLineStealer
2021-08-21 22:33:00c5d08274463e00ae7e389d30587182743fd5498378ac49c5820752736e8ac2d6exeRedLineStealer
2021-08-21 22:11:44984bc3fded1dabaef97b3c71afbfded2af3038e02445b5f30c8f5c33c0638e29exeAmadey
2021-08-21 22:09:2820737f14abb4e1ee87c383825e911f8043d285f5f8019609e620bf18a66ca72cexeRaccoonStealer
2021-08-21 21:58:048adae0a0a0929e193e3dd8a02baa943ed0018460409e053281e69f2edec9d635exeRedLineStealer
2021-08-21 21:54:03922ce714ce0b65fb49bfe70194a5a98984122c437c7161a3e3e5916db635714bexeRedLineStealer
2021-08-21 21:50:05c50a0af193496e9c8d3f2a640451385ac4f3769e5cc1ca99941bc904703e51b6exeRedLineStealer
2021-08-21 21:50:04b78535aa7762e46ae614bf634240893124d20dc958d934748ebdb382425f474dexeAmadey
2021-08-21 21:12:2389345900ae900c3173451251fd43261dc523c71a11ea8ceb189118274d76328eexeRaccoonStealer
2021-08-21 20:38:56a7242d808b6dd1f25322513d2caa725c24c9f644b77cf29147574866aa9877f2exeRaccoonStealer
2021-08-21 20:01:04eb521300b6ee49fdaad2d339f8389528bd676124d78b2490a238d8f439574635exeStealthWorker