URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.138.74.104
Firstseen:2022-08-21 08:41:03 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-08-21 08:41:04 45.138.74.104slim-weight.aeza.networkSBL655163AS211522 HYPERCORELTD- ATyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-08-21 14:53:02http://45.138.74.104/cdn/cn.exeOfflineexe opendir RedLineStealer ext abuse_ch
2022-08-21 14:53:02http://45.138.74.104/cdn/wood.exeOfflineexe opendir RecordBreaker ext RedLineStealer ext abuse_ch
2022-08-21 14:53:02http://45.138.74.104/cdn/1.exeOfflineexe opendir RecordBreaker ext RedLineStealer ext Smoke Loader ext abuse_ch
2022-08-21 12:50:05http://45.138.74.104/cdn/3.exeOffline32 exe RedLineStealer ext zbetcheckin
2022-08-21 08:41:04http://45.138.74.104/cdn/binary.exeOffline32 exe RecordBreaker ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-08-22 01:44:23b1f6c920fba5a9564730d9949adf20436f3440a9d4e2378089ebba5ef4991f76exeRedLineStealer
2022-08-22 01:42:25974e0c1a83b80f6d1d7e5c2848edc5c544d407f3dbd4fe7fdcbc20a3dae306e6exeRedLineStealer
2022-08-22 01:38:1986ce330a6849fe8df5f261de69d27946ec3897aa70e08cd852bc622dd8011e69exeSmoke Loader
2022-08-22 01:36:14edf6e2af884cf11eee6a8639a5cd594c32537063cf4c984bbd190d51d182c59cexeRecordBreaker
2022-08-22 01:36:11048e16903ac4f66be27703f18d19e6700e77742a430feea0a75c12a60808a4e9exeRecordBreaker
2022-08-22 00:32:267c08ff1bd686c7c8913115c92319b59badc4dbc116a6630419440828141203feexeRecordBreaker
2022-08-22 00:30:3947e16a5cbdfab1b3a9e74f85c50dc5c5a1cd4c4b8806d9cb566a460e23c95ba7exeRedLineStealer
2022-08-22 00:07:33e9c290333544f63a704664d343fdcf8e67b35be5459c3aef6f8fd8bbb431adf6exeRedLineStealer
2022-08-22 00:07:27f1f2d5a58abafeb678b2478d462e1b6a821a5cfd868a9c53438141de5d8aa148exeRecordBreaker
2022-08-21 22:56:188979bbae49633986969c5dd979128309c3b131b791f461b58912cfc7790c1317exeRecordBreaker
2022-08-21 22:55:465ccc9b9ecf6654aa6fae02500b01daa5a8684e3214060f0b7f8a65c34e7d6589exeRecordBreaker
2022-08-21 22:37:3745c3a2b331607295e31767484021144d0d3e7204609eadb48ac99622994e2518exeRecordBreaker
2022-08-21 22:36:2918dcb0571983f250cbf8df1089c1a554466416887a43c3a3741c4bef2befdad1exeRedLineStealer
2022-08-21 22:34:55f8fa2bcb6867c88c35c86bb5fef4c5aa7d15698e820e6ed7451566e2a5269815exeRedLineStealer
2022-08-21 21:28:40515056cdf4a174cc6ac58615d36ff90f82d6f9827adc052b0d180d1e6e7394ecexeRedLineStealer
2022-08-21 21:10:484d884f0246ba7a39b5d4d83e843b4f9b1b063aacb73763930cd41d53afa905d4exeRecordBreaker
2022-08-21 21:10:3222e252bf71d4cb3e8da3af59d3a2bc7b1052aec2779b56e09d504c50564365efexeRedLineStealer
2022-08-21 21:04:13a33279bb3a304cc7e9dd989d9391e920d40bbdd947abdc49d05406ef77bacb19exeRedLineStealer
2022-08-21 21:02:057c907a02202f8d0769f00837717b0e59c4c3199e4dc00ae904ff109f26d24301exeRecordBreaker
2022-08-21 20:08:2891b81e4f011d1d8e8ec8d50b7fed343ca5a92029ed96a5e4e4a77c7d27340d8dexeRedLineStealer
2022-08-21 19:44:47cc1d46313ecc439a58879808b21ad83d6819eebb7212e6b7b7ee63a504e8dcd6exeRedLineStealer
2022-08-21 19:43:455195d697179f42935b1b9d1e1818c73245daf85120cde197e8c4791457f183c9exeRecordBreaker
2022-08-21 19:41:45e81d45f32569cc7a61bca45e56a4a53abebb77b8809da6d14ff35eb1749650d0exeRedLineStealer
2022-08-21 19:41:35008837e6d7d4baa68f0a33f54a15274f16764e7ac343863a4b1099b581d4f861exeRedLineStealer
2022-08-21 18:39:10b0f3081c658a02b13e9a0b43632193aa15186a21bac085223e36c1a5e98ae81fexeRedLineStealer
2022-08-21 18:38:46fb528ac820607536012da05cb0fba939d52c49dba666b31c97a72726e826bdd1exeRecordBreaker
2022-08-21 18:38:43abd2a927ca79e5218a219f94cc0409b4bf5733ee8375e652d5ba369a441cb2bcexeRedLineStealer
2022-08-21 18:38:36364ab7121b2d19bb66dbc26ef7dbff9f32d14aa237ad6c29abc2965652ba4d23exeRecordBreaker
2022-08-21 18:15:59d02a181ba86775317a7c4a1da165b94b50f37f8b725ff93caac2398df95a799dexeRedLineStealer
2022-08-21 15:40:28f226cc04ef1f4e94eb45916c6a5255bbdb228ec2d91ce76f205c864134ed9776exeRedLineStealer
2022-08-21 15:38:386f4441fd43185c238ff4d4225e09f38005622f6278e79658e63e8767be229e7bexe RecordBreaker
2022-08-21 15:36:140eb05abe0d7296e9af6517c6c5c4327962b7a4373a5ba3706e2a08c6b3f4030eexeRedLineStealer
2022-08-21 15:13:1126613597e6d95832653eb761c6a7acc7275e54ac4f5b832442682085028ee8f0exeSmoke Loader
2022-08-21 14:53:027930e5e78aa02686282eba76f35bcd83638fc48bb793938e1df4aaa6ef7df239exe RedLineStealer
2022-08-21 14:53:020c2137434ea4ab5b5a744455ef1f773ac1ba28720ad722b010e1cd2e84647835exe RedLineStealer
2022-08-21 14:53:02fcd96c4fd4bdd293263e4e3fe5447f170b2047fd7c483de1e0e639be61d1920aexeSmoke Loader
2022-08-21 13:59:5911345d326056af1fee9c911a3b99e9eacb4d323924dafd6f1a85a4b7e9e7f526exe RedLineStealer
2022-08-21 13:51:03a51b82bff50ff4ad3fb1de94a6bcfcbdee3682ad1d9df2e341ec69d02a7ad24eexe RecordBreaker
2022-08-21 12:50:0595ab4a5a3ae820d60fa7d3a4e1cf47b5c98ffeabab390da423b84da23a5139e7exeRedLineStealer
2022-08-21 12:40:29ee06319adc4752bb3811b8033aed1f4c7747b9bf4c6f48b0fa9383a34e71a2fbexe RecordBreaker
2022-08-21 10:43:535842edee9d76b6d5474c5b77d49c4d119464c92ccee326ae105973fcf419ace3exeRecordBreaker
2022-08-21 09:48:0644b6aaaecab421d5137c81dca07e5deab15a0d174aaa17fff4df78c42c50fb04exe  
2022-08-21 08:41:0393f4ea88e5d2a00916f4c182cda835059b0b405316f340ac03b10a73057db97dexeRecordBreaker