URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.66.230.149
Firstseen:2023-06-27 13:56:09 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-06-27 13:56:24 45.66.230.149Not listedAS216312 XhimiNet- ALyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-07-12 13:30:14http://45.66.230.149/offer/updEdge.exeOfflineexe RedLineStealer ext abuse_ch
2023-07-10 06:33:06http://45.66.230.149/offer/notepad.exeOffline64 exe LaplasClipper zbetcheckin
2023-06-27 13:56:24http://45.66.230.149/offer/updChrome.exeOfflineCoinMiner exe vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-08-27 15:21:03ee8c531022a70d01aae5b69762b2cf5f37a1e49124c4b811324be247b607aa3cexe  
2023-08-22 19:36:5912ef20574e20162986cb62efd4a0529aaaa4ac417e67a2a0e7882ef411d1cafaexe  
2023-08-22 10:14:393df782aedbb8577cdd8bc3a06ea611f51bc9cfbd9542c289019e2cfce60752f7exe  
2023-08-18 08:24:525357aceab2334702a6748875fb455d9437dfd2ae364dd75442a7893f2b403b74exe  
2023-08-15 11:14:53b107f9a217ab7368b19f6b33f49b8b756d500c4ff88fdc1ed352fd7821b614e5exe  
2023-07-31 19:02:417b6910c25b8a4c1851786ec2364bb997336e88fbf35b3cd55980f56943c9e2a3exe 
2023-07-30 12:19:35223f8d67c784e3f6cc85c721dd718af53510f6884dbc1ea4dd328cc26da03f5eexeRedLineStealer
2023-07-30 12:08:09b6e2f26fea81267dc7b39b4f919083c8c8be5ff233a5c3acca6e1339d5bb21e2exeLaplasClipper
2023-07-25 13:28:0717ca2de661fa07dd83a55a5005c61eb8aee1e9cab56e9a13bc36a27f4b785554exeLaplasClipper
2023-07-25 12:34:561ed33d760f151b33b3d20bf9e6d0b722fe39cbd302ecebb5c6e3d0ee09e4ee05exeRedLineStealer
2023-07-21 21:57:386bbcf743fa00cfa33aa60a923d319850111d610b44cfdbe1b5dc6c672f177a8fexe  
2023-07-21 21:21:19b2ce15fdc2b519d9a71fdc576dddd336a1b3a25335bc4ded9c8ec9120e92bbf1exe  
2023-07-19 19:42:264f7f72d5fa0dbdd886de53c3e9bc01cd76bbb94d8d3b0d1deba3eb56d84f1ea4exe  
2023-07-19 19:12:42b0e4d761ebaa601cd4fa602aa55e06c3615b228c9df0b67fec2dd73857f8ca6eexe  
2023-07-17 16:47:31b20d74c759e6d677148c3cf1ddac1056631d69ec738f098d2c8103782d8d82c6exeLaplasClipper
2023-07-17 16:18:29c2520a713db1ddda557dc6d4ace41e12d02bde143df9275e5fcc48a0fea8a21fexeCoinMiner
2023-07-17 15:59:568b11bff6246c53c7a2488b7375ce50a193a3e7a01e1f9bd4856bc55d90fb9e7cexeRedLineStealer
2023-07-17 13:37:59c8cbece2e126693366ecae7bd9490057d8b00513bcffbca8667e0ca8b60d8e1bexe  
2023-07-16 02:34:08f851d6e5a8a932267b186f953fea7918c0012b27ce20f27eb18d4a76cc4dbeefexe  
2023-07-15 16:42:49753fbc1dfa05d6007c5dfa534a7d019cbb24d07224b67ae9d48c9772039c63cdexe RedLineStealer
2023-07-15 16:41:11807f54c88592025c02077930259ed3a4c6a3e216a8d53350bbebcb5c597bab2dexe  
2023-07-12 16:23:28298bdf9042629b42e761f52949926d52acd55239181021fd78040bff32678e4aexeLaplasClipper
2023-07-12 16:21:130cd34919fdb6f1b491d68f0702444567f77bb2afeb13a6d834cab12ea8b5c683exe CoinMiner
2023-07-12 16:13:121ca6070d9a141d51ccc4f75ab90095cc7fa3791c54ec10ee042b96a815822c94exeRedLineStealer
2023-07-12 13:30:1346ef6daecec030061841713f7afb387a0a7ce913e2a5d63bc46126628daf19e1exeRedLineStealer
2023-07-10 06:33:0577530f67cff4fc2456c0b27abf28d1ab1f4f10fd9be039783adfa25ed1f7f196exeLaplasClipper
2023-07-05 13:42:3669f25485bc1f7993e739b0be56310db87e37aef9c5e5be208cffc5242035d4edexe  
2023-06-27 13:56:24e669914a28ffc4b51c1f4e54efb0e9d6bd74a97fe293c7c8ba30b50ae4c508d6exeCoinMiner