URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 5.42.65.102
Firstseen:2023-05-27 22:45:06 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-27 22:45:14 5.42.65.102Not listedAS39493 RU-KSTV- RUyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-03-16 12:49:08http://5.42.65.102/retail.phpOfflinedropped-by-PrivateLoader RiseProStealer Bitsight
2024-03-15 14:30:21http://5.42.65.102/space.phpOfflinedropped-by-PrivateLoader RiseProStealer Bitsight
2024-03-15 14:02:10http://5.42.65.102/RiseSpace.exeOfflinedropped-by-PrivateLoader RiseProStealer Bitsight
2023-05-28 02:01:05http://5.42.65.102/sksKQissjAN.dllOfflineArkeiStealer ext dropped-by-amadey viql
2023-05-27 22:45:14http://5.42.65.102/sksKQissjAN.exeOfflineArkeiStealer ext dropped-by-amadey viql

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-03-22 13:35:248ed22b1f4f8bce69ff889a26242a3bf70e4ea0c8bada7ef3076f880d63ee0efaexe  
2024-03-18 09:40:5851202a7455f0dbfe6917a6114403dfa8bf9ed8ef11f859f2525d2209c2d48d14exe  
2024-03-18 08:53:26d974d58a0874b0482fb60cd5d06af5d20f2ba11d09e5f442cf0247d38a872113exe  
2024-03-18 07:45:4235eaec0a9aa008ec413925697d50d3b59c0322eee5d11fffb0b658f4c601612eexe  
2024-03-18 05:35:54f6530435f48fe2528da9e936ed615356beba55b91cdf684ec96024540f14909fexe  
2024-03-17 23:04:3293116877c1d46f2775b76969baad84f50fb3d2d860767e3cd034f7980f8f5b16exe  
2024-03-17 20:39:48b742572cd2fefc1fe6251429348dcd278901da5a34010cde5ae277b7e6ca21bcexe  
2024-03-17 16:39:40a797a0f5dae7786b8eb172f3516fdef7cf7ba038b5912322734ad8c89c988083exe  
2024-03-17 16:17:42026f3cde56a3ab49a261c5c9cf7ede39cd07fa3b5bf337b37340ea3fa4be309aexe  
2024-03-17 15:00:38db521b3c4b9cfbcb0885e919c2cf760fb80a1eb11403d4c94b29bc51964953caexe  
2024-03-17 12:07:348355808fdb7b14f847dd9bdebd506051e95ca8ff4340683906ce7cb02a2dbc68exe  
2024-03-17 12:07:328355808fdb7b14f847dd9bdebd506051e95ca8ff4340683906ce7cb02a2dbc68exe  
2024-03-17 10:26:261fcc89ab9a743b0dc86aa49b88dbce141f6ff0f31d7db527d3b6273f8d370580exe  
2024-03-17 10:21:027b0550c5f603b088c7e682cad4cc7358b0f37b351a5a4823c2ba8d4e174f626bexe RiseProStealer
2024-03-17 10:14:497b0550c5f603b088c7e682cad4cc7358b0f37b351a5a4823c2ba8d4e174f626bexe RiseProStealer
2024-03-17 07:59:1719fe9d922dd9d3001a5c810cde71b8908a4104e8c56bb989031b08b1fa08d856exe  
2024-03-17 05:35:347f74496f6a6a22fe5921f45b1f75e9904ec232cb0928a2c1f8179f98c252ee05exe  
2024-03-16 19:55:47694a972f0cd9bddc1bf423174239ac1c83c7ebedb37518b81280b0b0f800720dexe  
2024-03-16 16:39:5083754a7483eb57afeabdf9e6d42dac369ac30306dd53b42d729f09662153f880exe  
2024-03-16 15:45:330ef0a493d8970df35c1ae4484ef1d169a4d9bcc8a57ccd2cb1f41a8f707b113cexe  
2024-03-16 15:26:1436d344378dcb14f2bd5d7ce52b51ee2e97a14f6839f1d668222edbb311c667e4exe  
2024-03-16 14:17:218b57dd7c3695439c82d088ddb1ff650e80ea2aa147ddf9208790c48250a13d1aexe  
2024-03-16 13:26:393c8e23bcf54712f181c3aaa770e2b746e15ac19313b23016cf5be7352ca5f879exe  
2024-03-16 12:49:08cff865d27b4ded60ae4fe74bc49a8bb7dc37506f5c4c19980f713bb4c53b0eb8exeRiseProStealer
2024-03-16 12:32:339a33c0cea206a55aecd4e748c16b09ba295a096ce766190a0b200f9d07b85ed7exe  
2024-03-16 11:10:518e5fbbb657ebf67ee3fa2ce0ce802bba6b61e6d6ff869efcdeafb03365667cdbzip  
2024-03-16 09:04:16ed46b696f43c9b760f475e7a927038db95a3edb46fee10dad535d9e80d1d3060exeRiseProStealer
2024-03-16 07:21:17f73bfa0eabf72faabddf4c6879fab2e63956f806ad06c53e4eb3a239b3384615exe  
2024-03-16 03:37:527e026f43e2be9d63fa87b8097911e4d37d64ce4b71049394468e3bbfda223fb2exe  
2024-03-16 02:56:108318a62c9b17c0acdb255ac929905bcdc9993721989ca3a640bc174d4a982dd5exe  
2024-03-16 01:47:06cdca97f5d619e849040437493a7dad169503f6c6ab79cfd3ac19faff9ba9f2e7exe  
2024-03-15 23:47:05def5d33ea0b35623571f5d3d0eb6a4a7ae17d3a57bbde4ebc752e89d26d43f8cexe  
2024-03-15 23:29:0103dfa8e361eec806d286621e35c375748b5022676a396148a8b65a9aa815e2a0exe  
2024-03-15 18:54:50eb846affccf813656e9606a0598791022befb7bb7def3970b9e7af61819ba339exe  
2024-03-15 16:51:3410c617cec3feb59175f2592990dcc274de68e58b4b9bb7d70e53c27b4f374428exeRiseProStealer
2024-03-15 15:48:41aee9f3935d0cc4ac36f3b6393d7e7f1fa5395a0ee102c6c5d97fa9eccb8cb614exeRiseProStealer
2024-03-15 14:53:59a7f095e49a35dd1f037ed9309d33e2b346bd750b612912aa7673cbbab609aebbexeRiseProStealer
2024-03-15 14:30:21a7f095e49a35dd1f037ed9309d33e2b346bd750b612912aa7673cbbab609aebbexeRiseProStealer
2024-03-15 14:02:1010c617cec3feb59175f2592990dcc274de68e58b4b9bb7d70e53c27b4f374428exeRiseProStealer
2023-05-28 02:01:0573157ee8d240700d07209acb69539e3814313582253246d7550024281b91b07aexeArkeiStealer
2023-05-27 22:45:0873157ee8d240700d07209acb69539e3814313582253246d7550024281b91b07aexeArkeiStealer