URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 77.91.68.21
Firstseen:2023-12-25 11:08:05 UTC
Total malware sites :42
Online malware sites :0 (0%)
Offline Malware sites :42 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-12-25 11:08:12 77.91.68.21hosted-by.yeezyhost.netNot listedAS198178 INC-PARTNERS-365- AMyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-01-11 01:58:22http://77.91.68.21/lend/125.exeOfflineexe LummaStealer abuse_ch
2024-01-11 01:58:15http://77.91.68.21/mine/perlo.exeOfflineexe RiseProStealer abuse_ch
2024-01-11 01:58:14http://77.91.68.21/mine/leru.exeOfflineexe RiseProStealer abuse_ch
2024-01-11 01:58:11http://77.91.68.21/lend/Setup11234.exeOfflineexe abuse_ch
2024-01-11 01:58:11http://77.91.68.21/lend/boxApp.exeOfflineexe LummaStealer abuse_ch
2024-01-11 01:58:11http://77.91.68.21/fury/kino.exeOfflineexe abuse_ch
2024-01-11 01:58:10http://77.91.68.21/lend/cryptedgolden123sss.exeOfflineexe RedLineStealer ext abuse_ch
2024-01-11 01:58:10http://77.91.68.21/lend/cryptedggggg.exeOfflineexe LummaStealer abuse_ch
2024-01-11 01:58:10http://77.91.68.21/lend/cryptedpix12321.exeOfflineexe RedLineStealer ext abuse_ch
2024-01-11 01:58:10http://77.91.68.21/lend/legendaryinstalls.exeOfflineexe LummaStealer abuse_ch
2024-01-11 01:58:10http://77.91.68.21/lend/crypted214124.exeOfflineexe RedLineStealer ext abuse_ch
2024-01-11 01:58:08http://77.91.68.21/lend/setuplll.exeOfflineexe RedLineStealer ext abuse_ch
2024-01-11 01:58:08http://77.91.68.21/lend/cryptedgoldqwesasd.exeOfflineexe LummaStealer abuse_ch
2024-01-10 09:45:11http://77.91.68.21/mine/rise.exeOfflineexe RiseProStealer abuse_ch
2024-01-10 04:29:05http://77.91.68.21/lend/ScholarshipHamilton.exeOffline32 exe zbetcheckin
2024-01-09 10:43:10http://77.91.68.21/lend/nbhvygiuhjbkhvyiuhjbhgy...Offlinedcrat exe vxvault
2024-01-09 06:12:05http://77.91.68.21/lend/Gang.exeOffline32 exe RedLineStealer ext zbetcheckin
2024-01-08 17:13:08http://77.91.68.21/lend/cryptedgolden123.exeOfflineRedLineStealer ext abuse_ch
2024-01-08 17:13:08http://77.91.68.21/lend/hvthvjgfr6tyghgdtrtyigk...OfflineLummaStealer abuse_ch
2024-01-08 17:13:07http://77.91.68.21/fury/1.ps1Offline abuse_ch
2024-01-08 17:13:07http://77.91.68.21/lend/2024.exeOfflineRedLineStealer ext abuse_ch
2024-01-08 17:13:06http://77.91.68.21/fury/2.ps1Offline abuse_ch
2024-01-08 06:29:16http://77.91.68.21/lend/crypted1234.exeOfflineexe RedLineStealer ext adm1n_usa32
2024-01-07 14:51:09http://77.91.68.21/lend/bhgt79yuh.exeOfflineexe LummaStealer vxvault
2024-01-07 14:50:08http://77.91.68.21/lend/movie.exeOfflineexe Rhadamanthys vxvault
2024-01-07 14:48:05http://77.91.68.21/lend/legend.exeOfflineexe RedLineStealer ext vxvault
2024-01-07 14:40:23http://77.91.68.21/lend/birge_two.exeOfflineexe LummaStealer vxvault
2024-01-06 03:38:06http://77.91.68.21/lend/ajajjajajaj.exeOffline32 dcrat exe zbetcheckin
2024-01-05 08:20:14http://77.91.68.21/lend/MRK.exeOfflineexe LummaStealer adm1n_usa32
2024-01-05 05:28:06http://77.91.68.21/mine/nocry.exeOffline32 exe Rhadamanthys RiseProStealer zbetcheckin
2024-01-05 05:28:06http://77.91.68.21/lend/YT.exeOffline64 exe RedLineStealer ext zbetcheckin
2024-01-05 02:15:09http://77.91.68.21/lend/test3.exeOffline32 exe Rhadamanthys zbetcheckin
2024-01-05 01:28:09http://77.91.68.21/lend/pixelguy.exeOffline32 exe RedLineStealer ext zbetcheckin
2024-01-05 01:28:08http://77.91.68.21/lend/test1.exeOffline64 exe zbetcheckin
2024-01-05 00:46:07http://77.91.68.21/lend/alex.exeOffline32 exe zgRAT zbetcheckin
2024-01-05 00:46:07http://77.91.68.21/lend/bakhtiar.exeOffline32 exe LummaStealer zbetcheckin
2024-01-05 00:46:06http://77.91.68.21/lend/flesh.exeOffline32 exe RedLineStealer ext zbetcheckin
2024-01-05 00:45:07http://77.91.68.21/lend/golden.exeOffline32 exe RedLineStealer ext zbetcheckin
2024-01-05 00:40:12http://77.91.68.21/lend/test2.exeOffline64 exe RedLineStealer ext zbetcheckin
2024-01-05 00:40:11http://77.91.68.21/lend/macheri.exeOffline64 exe zbetcheckin
2023-12-26 04:41:06http://77.91.68.21/nova/foxi.exeOffline32 CoinMiner exe LummaStealer RedLineStealer ext RiseProStealer Socks5Systemz ext Stealc zbetcheckin
2023-12-25 11:08:12http://77.91.68.21/red/line.exeOffline32 exe LummaStealer RiseProStealer zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-01-11 20:08:0320ec3bec0465f43ae42fdd9a1689c7cd9290e8fd4f97eaaf7bf94decb61a09bbexe 
2024-01-11 17:58:38533001ccd9f337e18b949c7e5a5536cbf22092b716df568a99500a942fc5d68cexe  
2024-01-11 17:37:18e7fd848d6fadb717991906510b6b338c9c0d442fe90bdf1357b6075fa816e9d9exe  
2024-01-11 17:01:10769d99d6d120191d7a51f491a42b3771e6b6b03781ac0efebb673c80cc8217e0exe  
2024-01-11 16:23:16645628276b79eae36882638b8f14eb7ac12d77d93758297f4726b991a8751a3aexe  
2024-01-11 15:46:5982da2b5adb2fcaf149394f7d88aea0ec0f453e514d9022a2958113ca036f759dexe  
2024-01-11 14:06:39d46ef546de6080eb6bf2cfe426a75cc0a280b1272a49a4e5995cebceccd77465exe RiseProStealer
2024-01-11 13:28:53ccf9ab5f39684f978982e061fe87aacf71bca2b411f8a6e55d776bdc032b36d7exeRiseProStealer
2024-01-11 13:04:009f2fcdf20d955725a8382c952b9d6a66002453d9fcb569c5093cc87c4dcc6b10exe  
2024-01-11 13:02:17da9f3f63ddd9386d3fdf6a98a3b13fc70ceef0b6582fa3cb8ac1c6bc54d23515exe RiseProStealer
2024-01-11 12:59:41dffbcb08acb64e461b42f12467123f896566bf0e9701b430ec698b820cf52c4aexe RiseProStealer
2024-01-11 12:37:47c6c3362a3e7bd23d7f1e937ed99adfc23fb0168a25e5c7321239dd237b37e706exe  
2024-01-11 12:06:24001138cd109abeb78a42c8205e7d1173b3b1b1761342c57651d1c988a0ea9ee7exe  
2024-01-11 11:29:022435279c15dd5424ed26b5d2ae001cf29bea9a0055e91ee4d8f1ca93bf797741exe  
2024-01-11 11:09:13975d204cfce56b5f6ad8f0bec8197bdd8bef321e7918c1977af8c2790d75f025exe  
2024-01-11 09:58:10c367732a49a675238021e8ea5e806012c4cfd436506c619aaf5a86565afd0776exe  
2024-01-11 09:41:37fed748fa30f649c11d847d7c1e8b5c131a13ee35671162de66239723b69763cdexe  
2024-01-11 08:43:3853e48f1bfdf0421f88fe1bfa4e4c2f98fdca6c949f9d3ed05cb3e9672d81be69exe  
2024-01-11 08:16:3501e57bfd68aaf8de3af7e865c815a2e88b01174a7ae2856928ff1e10391bed9aexe 
2024-01-11 07:58:12fca883f8d197299f49ac29ee608e91ab246966006c101dae71b864b33e64acefexe  
2024-01-11 07:00:51f8f0d521e8d017ffaa7df0bea53bb300d149868d3516e9bd23df1851a19c5d14exe  
2024-01-11 06:51:24b333b15f6b38316aacc72ee94700c6656553ff934df77e6049917d79e4375dfeexe  
2024-01-11 06:25:5390052b91799a23b0da23d6685dc026029a69ea9682bb26cc0bc28f89a4d9ace3exe  
2024-01-11 06:19:20dbcf21a27c826ebb4fc94610736aa18c005732200939e30a3d39f8b96c7ed860exe 
2024-01-11 05:42:38920cb84c900dfb996054ec9d0ea9332c9b92113db1c3937db4694a3095d5d1d5exe  
2024-01-11 05:01:14013d169a809d7ef5258e43e234fda2cb1e7aeb76facb076ac2cdbd8bc49758c1exe  
2024-01-11 04:41:25fa102af99cc8e8cf91b02a251eb099637bba2112944c29896c0d40653bd7fe8dexe  
2024-01-11 03:43:245b828517a8a89b084d698650b9ffaf29cda8df708efa525606437e2a2bbb229cexe  
2024-01-11 03:08:52402c4b9dc41a5bfcb44d1b2db92a7c4bc343092fc974c61107b2b86db47f39ffexe  
2024-01-11 01:58:22c62f077bf99d737fe7ade6270c8839ad7088d0b93c06943fa5ee38501ef93208exeLummaStealer
2024-01-11 01:58:15da82319d644e8316e8271b697d5c5df9e20d7edba7f61aafca3c0e2b94440899exeRiseProStealer
2024-01-11 01:58:1437edd92328e327016c691f2e0a5f83fc4ba03e0f6bc35bf7217cfe816590f2f3exeRiseProStealer
2024-01-11 01:58:114acddc15352051552d4684fff6d07d18305cf7276d208adf7e2f59c5a70c909aexePureLog
2024-01-11 01:58:11cce5686ff01c5d4248e87b002a345f6d7647d3aca7cc218e27dff28f90fec6b8exeLummaStealer
2024-01-11 01:58:118e9bc2958699b8ba0dde4eca6ac905f79196063db999673afb5ba214fe220d55exe  
2024-01-11 01:58:100b8b6ae77cdc328f081d5cd1a545fee1487adf46b58845526f8c7314a64500c7exeRedLineStealer
2024-01-11 01:58:10351fadc9f1ddd2bd6bd34ceed2353b8211123e057b52c6aeb60a28643d92f137exe LummaStealer
2024-01-11 01:58:108afd60f7ef24ac692068525fb3c91e74c60c066dff1f778db851ecc7b691f0bbexeRedLineStealer
2024-01-11 01:58:09613dd73bd9647baa7beb0eda82ecb395e2a0cc9b7deb8654ed62de0e6971b19fexeRedLineStealer
2024-01-11 01:58:09da2e82a165342cbabe9bfcc46865d2fc2b707914905ea174bb444588a2780bd3exeLummaStealer
2024-01-11 01:58:08fd49ef5bc25a401c934ff5b3c276741b41933e62e2e1fd3223e4ab8986ec60caexeRedLineStealer
2024-01-11 01:58:07c2d8860861cb7eb12a683e0b7b70993484df6d76edbc3f586b0e537251666144exeLummaStealer
2024-01-10 09:45:1137edd92328e327016c691f2e0a5f83fc4ba03e0f6bc35bf7217cfe816590f2f3exeRiseProStealer
2024-01-10 09:42:558b6fc8757f18381339f19d5e13d9e11994b4b56147eab47d29123dd6e3402c2cexe  
2024-01-10 04:29:059594160451608088b8e987328f0b13fb77d59bc99d27c4faad97e2ad834c5a65exe 
2024-01-10 00:25:41dcdb4f46f540daa74bfde5a234845e54e2c5716152a761c03e5184a8a4640f78exe RiseProStealer
2024-01-09 18:35:15f874edee42957c6321834d8fe84a964a8a672ec57d93afbec3eb3461b4fd6a77exe RiseProStealer
2024-01-09 10:43:1013e063bc39be5c694f3bb67deead2b8a4781d98a0c26cc2d8ec68e0a72726dc7exeDCRat
2024-01-09 08:43:085c9899dbb45cb61f563761dd2a7f8a6b0fe311502edcea4db7a011d9456cca5dexe RiseProStealer
2024-01-09 06:12:05cea50bb5162cb062f9c1bb03ce6a5d59b2247d0fbeec76e47948b1f90fe5f7ccexeRedLineStealer
2024-01-08 20:05:301a6a290d98f5957d00756fc55187c78030de7031544a981fd2bb4cfeae732168exe RiseProStealer
2024-01-08 17:13:081f61c34deddf39f3fecab0644ad6c9cf59e8cf9b1795d05def642914c1c6bbe2exeRedLineStealer
2024-01-08 17:13:0897f65a11f372b7cfdace34c1aac4b114f3d04bbc73b4c1dc3be743d506532b5dexeLummaStealer
2024-01-08 17:13:06a6d83debce7e183b38cd33901c4b72f3ae376ef83692d74ac707195bf1447e88unknown  
2024-01-08 17:13:068e1f2f27efc551464f4e34c2e130cd7cb9f065c8687a774d1372884b7457e085unknown  
2024-01-08 17:13:061ca8f444f95c2cd9817ce6ab789513e55629c0e0ac0d2b7b552d402517e7cfe9exeRedLineStealer
2024-01-08 09:37:57f0eb84597df5f82da1fb5981fb5e4249196bb108223c808c855b863291bda513exe RiseProStealer
2024-01-08 06:29:165805ba05b4054885a03cfcfaa9a114a9779f588ed93f2ca4ba7a0398645434deexeRedLineStealer
2024-01-08 02:37:39a778a228194dab71ad7c70e332212142073df5bff40d9203d9a7e47e7d1ade09exe RiseProStealer
2024-01-07 19:53:55a3a17f2e647709c79eff7bf5f7f4d8a58cb5d78f9b184e91bc28b573da56ae89exe RiseProStealer
2024-01-07 14:51:09c728f7d571ce5633fe6c3ee6f2a66c6ba33a9ee8261e9a20bab7a9fccbc3fb42exeLummaStealer
2024-01-07 14:50:08e46cf506bfb4234c04ff59e043986e5a3b2ff8fa04c316aefdc0d0c0e72a2c18exeRhadamanthys
2024-01-07 14:48:05d8e4ee9b8049923e2c996216c5718b3ff0913c4b6b3d6461ad91fafebcde733cexeRedLineStealer
2024-01-07 14:40:23d63d27212f6e489dc2982042e25752db578b49c6c92e376951e84cdcb52ef5cdexeLummaStealer
2024-01-07 10:43:43c8036552ee5aa9ce1c45475a550bb73c67a4b767befc158d4e5212aab67aaf94exeRiseProStealer
2024-01-06 22:10:304ba8be19b243c1ddcefe359a35c8bd3f8969cae00fffe575a44f60f98f473badexeRiseProStealer
2024-01-06 14:22:26bf3613dd6c88da9416679076dc61d215180edf226ea363389b9992d5501a14d6exe RiseProStealer
2024-01-06 14:08:34b8b247fee525fefa4ed375f11dfaf9080f95251736cf41127f39eb49dc96bde1exe RiseProStealer
2024-01-06 10:59:40e34f35f734834274fd3e1e97816b9c249bd6760260222961ef1cb538cbb835abexe RiseProStealer
2024-01-06 03:38:0635f53c5cca6b39903694aff2fa966bce4165c79ea707c54200096d5756a3ef05exeDCRat
2024-01-06 00:44:49d248fd99ca4fe5a3a0b41829aacf20c91bf18c6b991d7f0061c1fe3716626578exe RiseProStealer
2024-01-05 12:04:04f253f0fd695990be924b215a76e8207b00e729471aaea3973fde7cdc5c1a05f5exe RiseProStealer
2024-01-05 08:20:14351fadc9f1ddd2bd6bd34ceed2353b8211123e057b52c6aeb60a28643d92f137exe LummaStealer
2024-01-05 05:28:06c85533dc3627cc14b81a22fb204c42c9e5527e15ad78c832da7a159825de6ec7exeRedLineStealer
2024-01-05 05:28:065869f52973c259389b302074c98b95068044c557c5f3dc50d3412b4f3108780cexeRhadamanthys
2024-01-05 02:15:09d71d01acd695f47a0cdea48e9dd7b3c2facbafa2f35f198eba6a58232fd59d8aexeRhadamanthys
2024-01-05 01:28:09b839a06030277c44e842557ceb98ff7e06861b93c0922c61b47bd45bcf208408exeRedLineStealer
2024-01-05 01:28:08756c48b8e22d22eaf24ad8c69928bcf1cbb08e63ef897eac21366f4f6bd2c403exe 
2024-01-05 00:46:07675eae5e18d018109f42efb7c76c9ac83af9ffd9e010d39acbb6a12450d6d1ebexeLummaStealer
2024-01-05 00:46:073ac6dde9c9dfcaed7066ea5af5121fd75a7c6c1ab9bb7bb4ca35784d50efa202exezgRAT
2024-01-05 00:46:064c7690aae75b181a414129672bbad75d30883ac9f59ccede66b3b5789bd105b6exeRedLineStealer
2024-01-05 00:45:0723d0ee7d7279e063ddbca86376557628ace23c767171798789cae2174767b31fexeRedLineStealer
2024-01-05 00:40:1284713aa9c504e1e41b1fb05b4443d88045964ef157b3b7982c8606b848fcfb11exeRedLineStealer
2024-01-05 00:40:11756c48b8e22d22eaf24ad8c69928bcf1cbb08e63ef897eac21366f4f6bd2c403exe 
2024-01-04 20:38:2370623a38a75a7effd0881f3116e5cd6b2a701e8cf424eee5284a074f0ec78d47exe RiseProStealer
2024-01-04 20:07:316874315dfb7a23103f59bc74008ca5e82e24f5717290febecc712ee61db3ff4fexe RiseProStealer
2024-01-04 19:56:12a6d8c084ea84921e515df4a5275061d51a67a6d5fc4f053db00f95645057d76fexe RiseProStealer
2024-01-04 19:28:11c696f553c21677c9a5e6d4a128efbfa190f9a7ef85700f951c212fc72fdf194eexe RiseProStealer
2024-01-04 19:00:55c8258bbd181dd28d7a1923992eb73f6c2fa7b69f3223f0d0b7439ad116e35114exe RedLineStealer
2024-01-04 18:40:291ff483be03e1ed1b9dba67315b7fdc98d9ea3bdd015a30acc4e6d37265451aa3exe 
2024-01-04 18:24:281ae4a9d211b82f963be2efcf02831554bc1c786c59b427b13a196d5eeafc9827exe RedLineStealer
2024-01-04 18:04:1562bbc80f7eb44d7c418f5d40ac7cf4a906bf3b5d787c83221a9f4475e0129a9eexe RiseProStealer
2024-01-04 17:50:5602a944e565775ccff07acb97e22cff348c51fb8c62d5a8b320bfa74a822e5103exe RiseProStealer
2024-01-04 17:27:51b553ba6fe9540d27ec3379be7289690544968e3b40b2b3819c8c42b8966dfdf1exe RiseProStealer
2024-01-04 17:13:08d18cdc223e2b6248fc289f6f4aeefd0369c34539f1a9e80aabab33de725c38fdexeLummaStealer
2024-01-04 16:20:099deb46806f3480a52ba9f57ee47268e24e46a439d69f0f7473c16c561b1a2cbaexe RiseProStealer
2024-01-04 16:00:45ba1d9cdd9d2a31c106529b272a6dbe7432b1183a4d382ab17e413aef8940a1abexe LummaStealer
2024-01-04 15:47:219c7844e137bd630f22e7d487c43be450d9c185ea7339230bef46d2decb817d4dexeRiseProStealer
2024-01-04 15:27:174895988336b20445d0c7c86e98071d9355e989247ae7991dfc7f87e712e9881aexe RiseProStealer
2024-01-04 15:00:3121e8e01dbc52d67f8dce72704f4a2ab3c6ac44db10327cac238a05973e8896e9exe RiseProStealer