URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 78.47.101.48
Firstseen:2024-08-27 15:59:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-08-27 15:59:06 78.47.101.48static.48.101.47.78.clients.your-server.deNot listedAS24940 HETZNER-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-08-27 15:59:06http://78.47.101.48/auto/d5ab9ebca172fdcf0e694b...OfflineAgentTesla ext exe LummaStealer kenshi
2024-08-27 15:59:06https://78.47.101.48/auto/d5ab9ebca172fdcf0e694...OfflineAgentTesla ext exe kenshi

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-09-02 07:22:58234421af40c5736010a3d97f5c5a7118f38aa891e62532632aeb0219bde2e08eexe  
2024-09-02 04:35:54d6795d2e532e35b95a787ab55cae096d94583c1f0daaaf20855a85e38992d4caexeLummaStealer
2024-09-01 20:52:51cc2efb5a6286389b55a2612cf2b0d59135dc0b687b7ca3b74ea8ab1180944179exeLummaStealer
2024-09-01 12:34:5450f62cfb1967a288c742e21136eea5c2479a1a8dab3f133076b28d08e47d9813exeLummaStealer
2024-09-01 04:48:44eebb31044f8916d113549aeb003496d9893296b788935395f0dd154c4ab5d320exeLummaStealer
2024-08-31 23:34:414c1e089208f7c0fc9b615093e26978bd52df0683a0c7b56859fa2612894f0b50exe LummaStealer
2024-08-31 11:29:003f84c4383f10c49ea94cb7bbc645f1aca9bf1f61d8ef6034d8088ebed952436cexe LummaStealer
2024-08-31 05:35:44e5d1e21b7a516b13c8ee17b2a42844a622cb24a459ba7289fe2306edb94da9adexe LummaStealer
2024-08-31 02:59:24b2f33ee2da73268f2d327de9427f6583415fcb38fe7226325304aced5c243e9eexe LummaStealer
2024-08-31 00:42:21be6ac29f9714e5fd5f3a058d28cc8c78486fa58665200346c6ca959b0446a1e7exe  
2024-08-30 22:20:4802685a91c2f511ba2e85447fb3ece2e4408e18d2d93d9b4b0abe13bf53568a09exe  
2024-08-30 20:37:46b4d3965ab77b8a1f6ca6d25b8970c96748a8bd8dde93a9766e55788779b1684aexe  
2024-08-30 18:22:16251ee3de51e90291d48458cc10f97dc3b7001a8b463b7dc7d59be4fef27927daexe  
2024-08-30 17:06:09aba95993c5396861a8df3d90b3f81a69fde91746cc3c2fdc68b4a001c15bed05exe LummaStealer
2024-08-30 15:23:45cfcfa5762118a6d39ee281b34efb028cf3a064ade386516047112b0e61da74f5exe  
2024-08-30 14:04:45a89346f101a82fb501938cd7c48e20775507008e76505a1d455c937007dca55cexe  
2024-08-29 07:35:0349569bd796b2b66437013b9d7bd15145a8eb1375e94a115ffc3177403e367b65exeLummaStealer
2024-08-29 00:40:574fca8b07957c70ffa03c866c940be9483ecff646c50317f2c0d35c81889d3a24exe LummaStealer
2024-08-28 17:47:37970696ff4f5702283f22622e20bec65fc84776c663fc83760909f83530c0ebc2exe LummaStealer
2024-08-28 15:06:287a287668664674f891f7ec4b5a6ed21b6d966765f2219e350cd08cde4885dd30exe LummaStealer
2024-08-28 06:58:482fbbabcf4baf488e361a0263093a2906a9c61c0ea1bb1cfeabf6b40088dae518exe LummaStealer
2024-08-28 03:08:11f8fb309cdc202ffda2eeacbfc9d1f376111dac9168fa1eea1f1f0dc36c3404dbexe  
2024-08-28 00:45:52dc8c19ae266f1ddfadfa6870ac4de50967fa16779c7c3b5141e14d7c4ccdf843exe  
2024-08-27 23:17:38b1618230bb2b8a7c1a9c0646fb2189beaef7ada8f1d21d56f73be0ec74daa771exe  
2024-08-27 21:19:1084e166f7dd4a76acd4340b989a8b5d87b264436272c73d848fd23b3b906cf5d7exe  
2024-08-27 19:34:258c3db3a528d7851797229ddabd27c6466e01c120b744649ddd4de0daf888498fexe  
2024-08-27 17:50:02aedef068773d7f1aa16140728d126576886349f9ac131960cc13d53e16fc6ad3exe  
2024-08-27 15:59:0687dbdb3124883e0141420f28fb2445b2110643b771968e833e8099b08100c0b9exe