URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 78.153.140.66
Firstseen:2025-05-09 08:59:03 UTC
Total malware sites :87
Online malware sites :0 (0%)
Offline Malware sites :87 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-09 08:59:05 78.153.140.66hostglobal.plusSBL655362AS202306 HOSTGLOBALPLUS-AS- GByes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-06-11 05:09:04http://78.153.140.66/kij.shOfflineua-wget BlinkzSec
2025-05-09 12:20:34http://78.153.140.66/config.jsonOfflineCoinMiner config json NDA0E
2025-05-09 12:18:04http://78.153.140.66/Application.jarOfflinejar ua-wget NDA0E
2025-05-09 12:18:04http://78.153.140.66/wbw.xmlOfflineua-wget xml NDA0E
2025-05-09 12:17:22http://78.153.140.66/h2.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:17:05http://78.153.140.66/1.ps1OfflineCoinMiner ps1 ua-wget NDA0E
2025-05-09 12:10:49http://78.153.140.66/d.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:48http://78.153.140.66/cpr.shOfflineCoinMiner sh ua-wget NDA0E
2025-05-09 12:10:47http://78.153.140.66/ce.shOfflineCoinMiner sh ua-wget NDA0E
2025-05-09 12:10:43http://78.153.140.66/xx.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:36http://78.153.140.66/c.shOfflineCoinMiner sh ua-wget NDA0E
2025-05-09 12:10:36http://78.153.140.66/lf.shOfflineCoinMiner sh ua-wget NDA0E
2025-05-09 12:10:36http://78.153.140.66/ws.shOfflineCoinMiner sh ua-wget NDA0E
2025-05-09 12:10:34http://78.153.140.66/sm.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:33http://78.153.140.66/tf.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:33http://78.153.140.66/o.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:33http://78.153.140.66/se.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:33http://78.153.140.66/f.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/cp.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/w.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/k.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/ph.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/p.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/kn.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/vm.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/vml.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:32http://78.153.140.66/pg.shOfflineCoinMiner kinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/hb.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/vb.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/scg.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/ge.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/pg2.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:31http://78.153.140.66/cpu.shOfflinesh ua-wget NDA0E
2025-05-09 12:10:30http://78.153.140.66/cf.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:30http://78.153.140.66/ap.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:30http://78.153.140.66/unk.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:30http://78.153.140.66/ae.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:25http://78.153.140.66/ci.shOfflinesh ua-wget NDA0E
2025-05-09 12:10:20http://78.153.140.66/wpf.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/j.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/mo.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/mi.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/bg.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/s.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/an.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/al.shOfflinesh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/tr.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:19http://78.153.140.66/sc.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/lh.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/gi.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/ku.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/h.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/n.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/lr.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/ki.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/sp.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/acb.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/sa.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/ni.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/t.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/rm.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/gl.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/tm.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:18http://78.153.140.66/do.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/pa.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/cb.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/wb.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/tc.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/mt.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/sup.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/r.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/md.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/py.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/spr.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/st.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:17http://78.153.140.66/a.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:16http://78.153.140.66/m.shOfflinekinsing ext sh ua-wget NDA0E
2025-05-09 12:10:11http://78.153.140.66/rv.shOfflinesh ua-wget NDA0E
2025-05-09 12:07:21http://78.153.140.66/curl-amd64Offlineelf kinsing ext ua-wget NDA0E
2025-05-09 12:07:18http://78.153.140.66/kinsing_aarch64Offlineelf kinsing ext ua-wget NDA0E
2025-05-09 12:07:18http://78.153.140.66/curl-aarch64Offlineelf ua-wget NDA0E
2025-05-09 12:07:18http://78.153.140.66/kinsing2Offlineelf kinsing ext ua-wget NDA0E
2025-05-09 12:07:17http://78.153.140.66/libsystem.soOfflineelf kinsing ext ua-wget NDA0E
2025-05-09 12:07:17http://78.153.140.66/forOfflineelf ua-wget NDA0E
2025-05-09 12:07:10http://78.153.140.66/xmrig.exeOfflineCoinMiner exe ua-wget NDA0E
2025-05-09 09:12:47http://78.153.140.66/kinsingOfflineelf kinsing ext abuse_ch
2025-05-09 08:59:05http://78.153.140.66/ex.shOfflinekinsing ext linux malware sh joerg

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-17 00:49:36e8c818d9e76e5512ba49cbf79a0e2c7f752d589000eac13bfd32e1bd5eaf48d9txt  
2025-08-16 05:17:41394754a0befed11d229df72cbbb310f3a343ac17e08b7983753832378095c95btxt  
2025-06-11 05:09:04278d4ff231468777c2303915c8a26c89d5efb820b4cb33444d4749b2d87908fcsh 
2025-06-03 17:48:03fc5370dafe589e64d45fa8da975e000ee1df5163a0b1804e24c97197c9b3351fshCoinMiner
2025-06-03 17:31:5121c20cf2f55e0f7010bc0e051889aee75cf94ae69f1e6a206104a213500f4b5cshKinsing
2025-05-09 15:05:06b83852e71c1687fbf29502fb91ed59736d68bd7dd724630d76695fc2c1a15effshCoinMiner
2025-05-09 15:03:533a67df40721703c455c6364ff6fda6af4a6df95d0b7bff1a7cebd45cc3f5d1f0shCoinMiner
2025-05-09 15:03:33d8947f46271d1340a1a45ad762031eefce5fce6d2136fbdcd7085db49de1c671shKinsing
2025-05-09 12:20:347d31843ce5231c95ce07a609cb4473fe53b95a8d0685df9d666de348d17c69ffjson 
2025-05-09 12:18:0491ad1df05f6eaf314932d31392b52ec99f106694c55dcbe9a284887b35d81b22unknown  
2025-05-09 12:18:04887f53a95bb2b545d056921bfda7aeb0779373e54b73c1e2639f6ace8f1855a8txt  
2025-05-09 12:17:21b64a947b1eb22cec61a17ce16fae8fc27566df058bcf4e8453bb2cd47eabe75fshKinsing
2025-05-09 12:17:0538058a01b9a8c9b077465fed1bb2c38c33624996ed6a1b6121e31ed3a88b5d20txtCoinMiner
2025-05-09 12:10:43c831727f5efb73f530aaf0464d4a2e9dd3caa410097bc4fec91da2adc270b8d3shKinsing
2025-05-09 12:10:36a89c0d506ecf6fabee7d54c09ae1060c0e6aacd3ec6a2fd91f36b783153d81d3shCoinMiner
2025-05-09 12:10:364c3a074d0729aaee87bb9141598402e8690ec35db40c90134570e016edb16a90shCoinMiner
2025-05-09 12:10:36a5af590ef864daaf11433acfde9be087104d6237fbd0295858ccc1a3d5f18de0shCoinMiner
2025-05-09 12:10:345a168e046df1b068f9e1d88d3d98ba00a465801f40a544c67f7464e6cabd4a96shKinsing
2025-05-09 12:10:330d78e14411ac375c511dbeddba6b97c4d6c72d46d7d99087348747826be5b5bfshKinsing
2025-05-09 12:10:335d4613a22c0e1c6d10de75e0a97c49487c0fd97a11ae46cfd514b60f0e612456shKinsing
2025-05-09 12:10:335a2a5e79bd0f86fa63114686547c2319f691827e5f05efb477a953d9c94e771ashKinsing
2025-05-09 12:10:3371414a7620a8dab16303c5ba6f1a36e58044fd685ca0c61662e1103f72a89667shKinsing
2025-05-09 12:10:32b19e8c9e342903dac2cd8dbf455f9fe3c63cf5ce1489e7be42c6e18987186810shKinsing
2025-05-09 12:10:3264f896d772f370692beeac2cb23ddb7c0c11ce1643f6f1d9f17eaea87f1ebaa9shKinsing
2025-05-09 12:10:32c0acade112fbda25dbbc1d3b2acf5fd64fededb9672feb9013ab5664c00c7081shKinsing
2025-05-09 12:10:32db107e4c590fd0e2e1377b0e245687c14cca0032d6e561841bf3f5978d5d541dshKinsing
2025-05-09 12:10:3230f020bc7ce456f4d8b798f33375c9c2e8fd4ec9611c04699e2333bdc376eaeashKinsing
2025-05-09 12:10:321033629253cc27a1d00f9cbb995e0deeee316ff20e14489c7b38db97eb4880f2shKinsing
2025-05-09 12:10:321fd7144a5acffd234271c4c26d365c8460f3c028cab5cdf66ce3810eaf72f567shKinsing
2025-05-09 12:10:32c3ea9f23d6693fe899e6bf7fb266b32c19768211a80d39e39c35813013378a30shKinsing
2025-05-09 12:10:3237616e57c1c7a1f8c3703f7be0d2cb4a18bc96cdb32e50ba968ca036fbd8960fshKinsing
2025-05-09 12:10:31f913e0c9afa4f840dcec88b81dda5f613b154cefd027036bbe9c10f2266c30aashKinsing
2025-05-09 12:10:3116149a469432f90f78552affc874f832f3ad2fd9c59c17a63f3cf8cac745fd95shKinsing
2025-05-09 12:10:31022c0880c46be81727cc416d28bccaa0f84779ec5369d4dfaf4c326e819a1a70shKinsing
2025-05-09 12:10:319d2761bf8f7d4305b3af26d319d73ef35d1147fdfd025d1954e35ef386738d46shKinsing
2025-05-09 12:10:31351e7cb2764345cbcde24381714c95ba47155c71585bcbebeb48f5ff71a94a3fshKinsing
2025-05-09 12:10:3042ea3a6c73b96e3b284488b6dfb46ea07ede2f5aecdd5da48f5288b027cb7b1fshKinsing
2025-05-09 12:10:306d28e919edc5a2dd69984d14c42d823efaf3113e6d7295926780474d0a152e26shKinsing
2025-05-09 12:10:30f03ee1963cbe167e44759ecd86efc744faf850eaec8a14d67548f7874d51ef63shKinsing
2025-05-09 12:10:3037922be1425b5cebf920960dfe3652a2b7abb222672f1069106278299aea36b7shKinsing
2025-05-09 12:10:204b95ecbf4a30930d89cb99c68e4e39f4e81b0b391223320bc4931b83e41069d1shKinsing
2025-05-09 12:10:193263612fad0b6d943b23970109a8ed60e38ba3163f870049cd53ff21936336e4shKinsing
2025-05-09 12:10:190959139a7a2ee4f024f8007ffbb60f9e35144cc266f462187c4bcd62d2339f9eshKinsing
2025-05-09 12:10:19e463089b25fe4363aa46175f38b75138581965375f4f20286c6af07f271e2688shKinsing
2025-05-09 12:10:1972ac9bbf0aa818e2894730d3d3659aaf08489b607a7308192382cc9d382f4dd4shKinsing
2025-05-09 12:10:19868c7743ec1666c4386da439406dd1f5c54323bde57690659de3f44735df1988shKinsing
2025-05-09 12:10:1951e8e098f4a6cc0a096df3b866a864cc69a569ed038baa52268e7383b4339c53shKinsing
2025-05-09 12:10:19fecd30cd7802f8ac4137a2d0659b3052411a99d809a5aefb48f8b821905100f3sh  
2025-05-09 12:10:198ed7c2ccd28262c167af60d45c5449b2bc0eee8be07e4b108eddf3f9f17f396fshKinsing
2025-05-09 12:10:1965f3faf634654ea8dc3e0c473608e8430a629d8d033820662b43888254ded79bshKinsing
2025-05-09 12:10:18a6e41cc8f7238b02699c823c4364355573fdefadc1e734102c9346b5d9b5ef65shKinsing
2025-05-09 12:10:1863c5ff40ead3b6df9e484c938c9b950aa1a3851f7f0b906c9b4d4ec17446b04eshKinsing
2025-05-09 12:10:1828fd24867741710ceae692f5faa388d503552783f07311ee8e7c2b42a0192ab3shKinsing
2025-05-09 12:10:1895152724c66710bc28dc907f74dd84c17c9fd259696714c88427b7442db10eb1shKinsing
2025-05-09 12:10:183c331f25f3ed7661501ea2ba906edcef8de9d7a7ba0b4007b3ed3a92763f85a2shKinsing
2025-05-09 12:10:18fa8a54ad772c873ebcf76991dde17a82f15dae0f3b65ab08076d254905244c2dshKinsing
2025-05-09 12:10:1884fe109fca8ae9b363d18871465c161a2c19412728ef7ad488c85dc6cfff12d2shKinsing
2025-05-09 12:10:18b01cc74a00761368bc3a2eec09d2671bd4e02b00bb561e50db042fa566ee7422shKinsing
2025-05-09 12:10:18e150e490c1bd6a6a6b2a9c82388962d8af25e9923d98eb4cd049de2d0c168bcdshKinsing
2025-05-09 12:10:181fd5654dbf2edd837784fc9e7b0f16164aaab53d865f23385be8e9b67d9a8cf1shKinsing
2025-05-09 12:10:184ec925abc87c45e54dca0a1e7edc7b233046be70620de58d93fe964a1357cc8cshKinsing
2025-05-09 12:10:189dab7540a8cbfc786d5321e6c23d5f17edfd4f6c738cfaac1c08439dab3a4efdshKinsing
2025-05-09 12:10:18b1d79b505f5410acf6f439adc3a98c6ba6bfc3a6b1423f6b0785399bb4355b54shKinsing
2025-05-09 12:10:18f1af867269130c3e2325f8bb03afd68b516b605f4172fbf58fa69e904f98b56ashKinsing
2025-05-09 12:10:18d02143bda84c0123a04d2233dece27d9d471fc5ee30c8d4d462ccf8a48113161shKinsing
2025-05-09 12:10:180bc4c52d010076f71e1a6eae8b8731952167a00cedc88e3e1da369181df80c88shKinsing
2025-05-09 12:10:17c339b89b57cb8f74cc34053f984bcc5a14f46dff6a5df4f78459d841f6ec7d9eshKinsing
2025-05-09 12:10:172559246194b9d5092e9c2e3e8f21b4ac355b78038e68c86f3ca156f702ba3defshKinsing
2025-05-09 12:10:178fb3f050841ae082f0d120c45f677181c4a8841e5c85e64a34cf11ec97cefdb6shKinsing
2025-05-09 12:10:17440723f366a04802a937c49dcfbd6cf5bc969fb23484472acb708b2a8f25d064shKinsing
2025-05-09 12:10:1754db0ca2882fb8767b4ebdf404d423ccbd14a2c369e890151a556ab53711dec2shKinsing
2025-05-09 12:10:1727e07e76c18ee92a126abb22ea3c84a2f07ce184225221316ade8ce8ac4ed208shKinsing
2025-05-09 12:10:173c30b31be9db6ce3fd4bd8bf342163943ca6b3dbbb03e4db18cc1011762ad5cashKinsing
2025-05-09 12:10:173be11178aeb8b6da8a53da8a9cf02f8866f97771fea4871e1a2fa8d06b482f08shKinsing
2025-05-09 12:10:1720c37f6829c8863f69d430d39b359470b5b90051f67decf98136da59233623f2shKinsing
2025-05-09 12:10:17645ceab4d47fcc64a388127327a9afefd36087a3e3037dc5d29c651f212c1d51shKinsing
2025-05-09 12:10:179c1cb1513cd7cb50490763d9f92bd94e6d924df2a8b1248beb9726888f105465shKinsing
2025-05-09 12:10:16a62408b8595d5f96286588c3aab65aba8dff47e8f5a71f520d1af1f1a8645e07shKinsing
2025-05-09 12:10:16882b29ce61b9b17830a40a079fc569eee6e1bc5061c7f013e618f9aae6da41bbshKinsing
2025-05-09 12:07:216b9e23cb675be370a18a0c4482dc566be28920d4f1cd8ba6b4527f80acf978d3elfKinsing
2025-05-09 12:07:18c6fbd6896d162a12d9c900056781eb82f44649945808b7b009646b5397bcf6bfelfKinsing
2025-05-09 12:07:173e17d3a355cc7dc00d953d65cffbc54e07d2bebbdf5be2d0f1031240c7798d08elf  
2025-05-09 12:07:15787e2c94e6d9ce5ec01f5cbe9ee2518431eca8523155526d6dc85934c9c5787celfKinsing
2025-05-09 12:07:15c38c21120d8c17688f9aeb2af5bdafb6b75e1d2673b025b720e50232f888808aelfKinsing
2025-05-09 12:07:1525d19152363063eb2b1976b416452e63ad21c205f727837d38d17001831f17f3elf 
2025-05-09 12:07:105e5b5171a95955ecb0fa8f9f1ba66f313165044cc1978a447673c0ac17859170exeCoinMiner
2025-05-09 09:12:47787e2c94e6d9ce5ec01f5cbe9ee2518431eca8523155526d6dc85934c9c5787celfKinsing
2025-05-09 08:59:05267c844d1ec54c8ff892596277681bed888de9edf815d3b070ce7d46c173d652shKinsing