URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 89.208.104.172
Firstseen:2022-09-02 13:17:32 UTC
Total malware sites :8
Online malware sites :0 (0%)
Offline Malware sites :8 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-09-02 13:17:38 89.208.104.172wakeful-zebra.aeza.networkSBL655617AS210644 AEZA-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-01-09 11:42:04http://89.208.104.172/123.exeOfflineArkeiStealer ext dropped-by-amadey StormKitty viql
2023-01-05 17:32:03http://89.208.104.172/xx.exeOfflineArkeiStealer ext dropped-by-amadey viql
2022-12-29 23:02:04http://89.208.104.172/build4.exeOfflineCoinMiner dropped-by-amadey viql
2022-12-29 22:58:04http://89.208.104.172/build3.exeOfflineArkeiStealer ext DarkTortilla dropped-by-amadey ErbiumStealer viql
2022-12-20 00:57:04http://89.208.104.172/filename.exeOffline32 Amadey ArkeiStealer ext exe zbetcheckin
2022-12-19 12:07:03http://89.208.104.172/Amadey_.exeOfflineAmadey exe vxvault
2022-10-21 15:11:07http://89.208.104.172/412.exeOffline32 exe RaccoonStealer ext zbetcheckin
2022-09-02 13:17:38http://89.208.104.172/bebra.exeOfflineArkeiStealer ext YTStealer JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-01-11 22:48:52d2bff9f0f370a05582e3fd81998053a89ea6d153f1a74bf7dc2de6953e23d2b4exeArkeiStealer
2023-01-11 20:59:537b477658201bcd770c3a07b1854c8d7fbb2c5535bb238954bda931f599455c31exeArkeiStealer
2023-01-11 09:47:326e3f1055521e01bd967f22fd68b48410342264b62cf7b7998a6686a2141d4d67exe ArkeiStealer
2023-01-10 21:19:124b56f06c41fb17b2e445bee3e4016d3297f758cbb20b3fc280763593813242dfexe 
2023-01-10 17:20:18740f7721beb9b54af9948a8b6876547e298891984275c68ad0d2ef421feb0ef2exeArkeiStealer
2023-01-10 17:04:30740f7721beb9b54af9948a8b6876547e298891984275c68ad0d2ef421feb0ef2exeArkeiStealer
2023-01-09 11:42:04b77a024602ae648ad80a3fd49f08a26b99c377b81b189b60f474437ab13205b4exeStormKitty
2023-01-08 18:13:58e4f7ecadb3b2aac68217ff1676cd124bd315f7c3b6c75bd10f5073bb3a8ff878exeArkeiStealer
2023-01-08 18:01:27e4f7ecadb3b2aac68217ff1676cd124bd315f7c3b6c75bd10f5073bb3a8ff878exeArkeiStealer
2023-01-08 11:38:05e4f7ecadb3b2aac68217ff1676cd124bd315f7c3b6c75bd10f5073bb3a8ff878exeArkeiStealer
2023-01-05 18:09:4188a6a91ac3cc6f81a4fe380b478ff9abe0e0fc175045c4b9bd5061504ceb7d2eexeErbiumStealer
2023-01-05 17:32:03e4f7ecadb3b2aac68217ff1676cd124bd315f7c3b6c75bd10f5073bb3a8ff878exeArkeiStealer
2023-01-02 17:59:01c9487cb734eaca9afb87d6f71614bdfca5f3f5e70568971391d53e369badf149exe 
2022-12-30 11:30:25f1c46e618cad9cd17ebb6083c815d7fc90d9fad27d0a10d4ab8ef1adf09db872exeErbiumStealer
2022-12-29 23:02:04f912e327e2b9e22736b78b563c0b5490bafbd265f24abe52b86a28bbae8002b0exeCoinMiner
2022-12-29 22:58:0428ba7a9d27d9c464e00d81c0a6d2f75a1bf47d742e74f8215eb235f1c426db21exeDarkTortilla
2022-12-21 20:12:568ca11092b2ef22b904fb5cdb17e6aca6a1e3167592a0cbd958d3225c23117a1eexe  
2022-12-21 15:08:06f2aac05ef5117f648fe47d31dbfc45bc32aa7d79e1c7c342c794766999620d13exe  
2022-12-21 01:13:10de5263febdfdac09a5fa4f40aa2da20a5ae3a7b9d0f3eb47acc361a6678ab461exe  
2022-12-20 06:17:16ff891544b71debbfd4223562b0e4eb47316e3567ce89f34ad8db30f48079467eexe 
2022-12-20 00:57:04dd8ce0842f412b6af6cda9f355b0c36a5973008400a0095a5cac6c256ffe4e6eexeAmadey
2022-12-19 12:07:036740f7b9a8d5c30d4aed27572b6c77513b245332550e619b5b127a4d42bfa5dbexeAmadey
2022-12-18 23:07:1783239325ee2d999147e5ce1ab79c12c91674b6d1bcc021290bd04946bd8b393aexe  
2022-12-09 21:46:21a4c937e097e508320240bae01e9b909e0659c1fb3dd4e387d6a6109e33e59231exe  
2022-12-01 19:55:14f792ec1e3f84c0a2fd60ab4f34067c5382070c15eedcc3488b268b61b57e21aaexe  
2022-11-30 00:54:417bda131f0b52695de0ae2e27883b593800e56dc427d58a0c78f86834b8f12038exe  
2022-11-29 23:56:4853f4f1f175ac136690ccc03c8a3b50c2f6340ebeb70ed3d2a99c045f57e10559exe  
2022-11-27 01:54:366209d7bd17c17be968d3d9efde11cd4e4cc242aa7b1aaff84d37217524d2094dexe 
2022-11-24 18:47:0128f24b10045dda8430a1074287838432195f2e347ad9ffeadf741a5a22997501exe 
2022-11-24 17:16:080e0f61538c336a2ddd2928bbdb8949c21bbf2449af898723019919a0682a8ca2exe  
2022-11-23 23:37:54f47d8735d6baffad1b8773cdaf20a5cd42f30e56d8327e012803cfda0c91809dexe  
2022-11-22 10:44:526df6c02f418f655494e7d5b0ad0108bc62b8393eac9979a228fad3c57d5f013eexe  
2022-11-20 00:40:45f13b748fa1215f4ef09c5b8f17af930512a926e33cb8f6a25e90a6d2252a205eexe  
2022-11-18 12:40:51d2056b13dc3328dc6778991289fd8fa48502ea746512ba2796ce167ba96a6015exe  
2022-11-17 22:33:56656f5c1e8367a0b6e34dbf8e5740be127b4ffaa74a22a2164fcd68eff45580ffexe 
2022-11-16 13:23:070eeafa95b4c1ed7bb42300722a480fad5cd2e7553ba21934da2a4159dc09ddbdexe  
2022-11-15 09:23:3839d3df8f4a3bacaf1456712177c36f4fd76acf69a174c74927c15442bc80a398exeRaccoonStealer
2022-11-13 04:58:36be1f5c60874f279ab47b00da58c3b634edb4819a33652938281a799f3cd4e256exe 
2022-11-08 10:38:160b0c86bcf3f22e3032f68c80ed7d278263cd51b8a6fb0de32b0eff387e371ea3exe  
2022-11-08 04:29:150d949b1d10f0af56e91b293ee5451db98c3538226416e780f36d33b62961550cexe ArkeiStealer
2022-11-07 03:47:3375520762f93c99c79ebac6081437b0b1ebf7122b1bcc1942484ea5de8e06a1eaexe  
2022-11-07 00:52:33f2d24ff7b7ed9641453cac5b4a0d97591e7c5c9ec7aafcead9f14bc9d0b461a0exe  
2022-11-06 23:51:4290079e1d2d3ac5c8c9674f40d3affc6102ea4ea8abaab7c689093afebad6e25eexe  
2022-11-05 19:47:2597dd986c40ac0b8fa6126879fa97163297a21ff926966a63c4ecb5a50becae8dexe  
2022-11-04 23:33:305608b873002868b505078e82a8a0040fda98240a3670f03f5998a0377ad040c3exe 
2022-11-04 21:00:07b505130d5de2f09e24b1d0065a3fa166fb064fe9151b2e5624f74cf993cfcd8bexe  
2022-11-03 19:13:53f5faf1f6336d82c464b59af3e68141fa2fcdb43804f30ec258c09b11c486d58bexe 
2022-11-02 17:38:441d89737e602726dacc6d20dffe246ef7000c740e6b757c8cb3524ad460bc025eexe  
2022-11-02 09:54:5921659f7b55d30fd92b976f7eff8fc635d3e536926536ffeee79364afa68b77e9exe 
2022-11-01 09:35:0184aefd5defa8dce2dc757338ea6a2b3569cf0cdd0e482189e798b11227f72838exe  
2022-10-21 15:11:070596dd9f0350b7526c910a9a26e45b1886fc5e9130d96ea2543935a4bc410295exe 
2022-10-17 19:36:0165d77c6d99bfdf41472afef809ff3a719e16610ac76fc68994b10bbae824dc6dexe  
2022-10-11 22:39:4696af15568013f4fc68d3ad2f8984d60fd802212dde249c0c964a6201256d5f49exe  
2022-10-03 21:31:097be597abf33b050d1876ff0f0491e20688d3a6a90be4cd35d10442178e2d7220exe  
2022-09-24 16:22:22dfcbbac27abf1fab55df686eb89f7d1a324823bc44fa92f9f1e6e78b565ad104exe  
2022-09-24 04:09:44d79e9f8c77b099c2ce54707ca0cbfd0fe27248c7313a90f1cceb494a3acb5f54exe  
2022-09-24 01:09:1961dc88a388d619e05d3f166f91e5cc1432ef1f41e531aa8823d210512a2e7706exe  
2022-09-22 01:04:49446c96316e6ac690bd88e1bf426d54afd08a29bc80955f5577d22524289e54f8exe  
2022-09-16 17:24:06a252759f1a91a440f994701897f7e6b54ea2bc34dd034ac89a5c67bddffd7269exe  
2022-09-15 22:42:565fb677e1e4f6e2b0cb70942c57a20b5fa273a7c6c7f405d94d630af49f55d7e2exe  
2022-09-15 17:43:12a669d079f2ac78d45480054978c9c141daf38e98b42c87c73548ec1c58499b47exe  
2022-09-15 17:05:22ee1e265f634bd5df7d2dfe2ec75543214171b21c6874299f9a671f5281317ee1exe  
2022-09-13 23:48:49dab09777a97c8a963d89611b0fe5b38bce6674b70a41fec555e5808224d9caeeexe  
2022-09-13 14:59:179f03e711f8f5a1f3c9238d52a06c799fecb85903b90568860f2bad0fcde7d4cbexe  
2022-09-11 19:21:314c6f98d7813cace86caa3edf34fcef8fe8504fe1bc26ff4371f069ef176b5fe4exe  
2022-09-07 00:50:376519bb10f4281f4bd54ffbe6d314d7c445979ead9704e3037fbb586d27a382d4exe  
2022-09-05 19:46:31df0e002f9e3c7fbe4bced7ae9b2b8b43b52eb82d44187032f9025bb99c2aeca6exe  
2022-09-05 11:47:1497a20e483ae9a8910fb9c71b89fd2245c32dca6cb140ff4924396749e871d6edexe  
2022-09-05 05:59:3638d63e2bf96de41d9b295d6e221fbc0c21355d8fc719382aff51fc821ef464aaexe  
2022-09-04 21:02:30ef7af9bd8ee95af5268bccdd1c3f4944351935ec837234edddc760e2b583d647exe  
2022-09-04 15:00:469d5a6da26f199c73e2afe8ed3154e952b49ff4e8c5325073008b3e514474f4fbexe  
2022-09-02 13:17:376d5320cd6e4cfc208f6703fff254b6f1363e1afdf7d8e77155549a674fa3a263exeYTStealer