URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 79.137.194.41
Firstseen:2023-04-19 16:04:03 UTC
Total malware sites :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-19 16:04:10 79.137.194.41KVM.aeza.networkSBL655601AS210644 AEZA-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-04-19 16:04:10http://79.137.194.41/s.exeOfflineexe RedLineStealer ext Smoke Loader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-04-21 12:44:36fc51e907d00e4bc82fda5bfec4b227e5ebf9c5ecce4acebaa24f17ecdfe5ebe8exe Smoke Loader
2023-04-21 10:12:32b0b79de26c03f281d9450dfb058032910a3e740ea2cf4063b1d7ae5414a40099exe Smoke Loader
2023-04-21 05:14:10d741cd6d1925c84baf07ea0c4a32cb5c7b6cdc2dd398962624c255dfb24b56bcexe Smoke Loader
2023-04-21 01:49:262d4cfb08c14422028ec4ca24a41ae0332b5782e839f845f566f68a62736d9d19exeSmoke Loader
2023-04-20 21:07:127884a345160e0ccdd4a9bda93b1905d540c0a697ab50d5df52da884fa145f783exe Smoke Loader
2023-04-20 18:53:13042f6e8dc83d7909446de11c207066d4eb4af43fba4466c420290e1db8bafc6aexe Smoke Loader
2023-04-20 17:25:14354f09ab4aa3401d7fb2ede018dc47f3a60aee4cd8176caa9d94313def48daefexeSmoke Loader
2023-04-20 14:25:26c70e59ad1e7a2e1b2b05082a6698c96f55918177bb5dc6fbd45e7a014508424cexe RedLineStealer
2023-04-20 12:30:378de8f74e47b18426f68ccb49f8afd065b7c2d260cfaa0a47ace624c7dcbf2769exeSmoke Loader
2023-04-20 08:44:09f2e71a34bcce4dd852402737d9ee44dea3976e07c838da2a6a7f4acde48ec0baexeSmoke Loader
2023-04-20 06:20:2715ab6aea347377bb7a5b5bea781406f85e56be602fc3c2f309323443626765efexe Smoke Loader
2023-04-20 03:48:30d04e02ba8eb29db3d17c69a5dcf4075a020eb79a15e7329fe373c60735bbb680exeRedLineStealer
2023-04-20 02:44:5420270288197fbbe9b70f423924d7ecebce2798853a9a13bf115d1c86fab2e713exe Smoke Loader
2023-04-20 00:52:00f17263a83ea1c51f172cf8021695a62904228bcc94c76a4f3aee92aa11d1531eexe Smoke Loader
2023-04-19 22:58:27070f7bb8630046f88c04f87a3416d713b66f5e75b84a65096561c322c4b60018exeSmoke Loader
2023-04-19 20:38:26405c1ad5dc6fcd07d88d0efe7d587ca21d6e02c4b74bc53c13017d2d4f648564exeRedLineStealer
2023-04-19 17:54:27b0dc4433c10d74c9f443ad90f78acc99f2f6faca9e8fb849a94ed916303d2e9bexeSmoke Loader
2023-04-19 16:04:046a31368693cd06e5311210b937e8a3921ebdf4470f9e96761738cd84c083398eexe Smoke Loader