URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 94.103.94.2
Firstseen:2021-02-23 04:09:03 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-23 04:09:11 94.103.94.21018112.patNot listedAS216071 VDSINA- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-23 05:01:07http://94.103.94.2/miner_scrooges.exeOfflineCoinMiner exe zbetcheckin
2021-02-23 05:01:04http://94.103.94.2/gucci.exeOfflineexe RaccoonStealer ext zbetcheckin
2021-02-23 05:00:10http://94.103.94.2/crypt_sert.exeOfflineexe RaccoonStealer ext zbetcheckin
2021-02-23 05:00:05http://94.103.94.2/tnf.exeOfflineexe RaccoonStealer ext zbetcheckin
2021-02-23 04:09:11http://94.103.94.2/crypt_loader_mix.exeOfflineexe RedLineStealer ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-02-23 13:00:16b704279b63056862c86f3ad3be8d905180f6f00e84a22d04d11acc98083e25aaexe  
2021-02-23 12:58:18bb67c762891c1292ca9455b21f4d9c526c17fa5beba3177bc0d4c7a4f2112353exe RedLineStealer
2021-02-23 12:45:265968487c35c4a23a5c8e836bab7f22cf00d47755ba38b6e06fd649e89831f0f3exe  
2021-02-23 12:42:249f88e2afe509e18242e3ae1a647abe0fa6df22d7111ef2384adbb39d47cd8907exe RedLineStealer
2021-02-23 12:12:3133dd369497056a60bb9b9339a57a74ea6230087613aa5031898d2e8e84af3fd5exe  
2021-02-23 12:00:592ee48403efdb5c1e7f8b1b36436b8178bf30e2ae7ac455bc810856a9ae4aaffdexe RedLineStealer
2021-02-23 11:48:379c565ae9b52ff8b00d34a97a6de98505d6fd9fe1f10586c1a5078b195e7e1e6cexe RedLineStealer
2021-02-23 11:47:2057ffee3928140c376040d0fad138818600fb8aa0aabbbc5b1a9a7207bdca204dexe  
2021-02-23 11:46:197a8912a4bf1b210aaccf7af3abefa6a2c47f721e6b3d023f6bdde82b8fd78165exe RaccoonStealer
2021-02-23 11:29:161980ebef37b3e03641a0c6727df6a337271ac02edfe7b12cf3f4a354d3141c89exe  
2021-02-23 11:23:3158189f350c1506f164bb75b00de91ce365a24aabaa6e8daeb26b06077d310cc8exe RedLineStealer
2021-02-23 11:16:08d390ff34ddc0078b94ed89c2d8a4e4dd1a29b788cddf5fa97c26130289f1028dexe RedLineStealer
2021-02-23 11:04:39626bd3059c43ff31f37bd3996589d8fe515fccbde1aad47fd70c9cd47e0658b7exe  
2021-02-23 10:10:29cd0fa002bbe0c5f3cd9aeb4a28b2e60074eb497568b305517ef7beae843dfe17exe  
2021-02-23 10:08:226f8540f0fa094599a948f24f3005c4ba231f2c21fd61f9f86bd93c70ee43cae1exe RedLineStealer
2021-02-23 09:56:04c791ac1046177754f0574e3d34710acf6adc5939647311669ff38097b8a9f831exe  
2021-02-23 09:46:33541ecb35541767e712696186864d8fcede18fb249955727644885405cdb78ca3exe  
2021-02-23 09:40:009d396b3cf03ec1edd31a66e99c1f6e3e87695886706df40f8cd6772a28b65517exe RedLineStealer
2021-02-23 09:21:18dcccdd1d62c167fe55c85e127d9e4a0c4a05723698cb69a9251abda5ac035f8fexe RedLineStealer
2021-02-23 09:21:005e4c3c6881ba2c511b331ddbf59de6917b91357727d21bc24ff48a1e3b6e4eb1exe CoinMiner
2021-02-23 08:57:00e9efc290a915cba0dd25ef5ca147fc5e1f88d276dea37991a73fb629d924ed4cexe RedLineStealer
2021-02-23 08:55:340c8718d6654602c476b55b6ef34a6b4d6b280794aa586b71e55a3e11067ab129exe  
2021-02-23 08:24:15978dede1d33b7e24b651e4ce9abdb6194453de27b29db3b9493396cbd936ec31exe RedLineStealer
2021-02-23 08:22:04f05d76c071555f48ff240556f6d0d3d895493c3c411e182648d256f83ad657e5exeCoinMiner
2021-02-23 08:06:4171e0aae0ebedd47cbba8cf8ea124c6ea17496d95ea8ab439517906b950e7d827exe  
2021-02-23 08:04:59106721aec445bd3bc936c4b4c7549277d2ca43de648d8a92b06e4c9e865b572eexe RedLineStealer
2021-02-23 07:51:343adf4a5ab3a5dba879b9626314b082e1ee0c18a04c6283749f46ae07b321cc59exe  
2021-02-23 07:47:3821e42f1b3355e6822afccdb0d9b9e1bc13a02778397846da0ad262c7e0dcbff3exeRedLineStealer
2021-02-23 07:20:1793904cdf9a5403109348230d69cb6ec6a4aed8059b31fc6fd82e9ef102c0a061exe RedLineStealer
2021-02-23 07:14:3733a81e3e6d4bfe3812c71b4ae5ce840db1710d4305ad1e55baf37893692de715exe  
2021-02-23 06:50:23dba7ebc570e128283d37c707fa0a0e56364500434c2911cb3feca06c017de04eexe  
2021-02-23 06:47:46ad55da0bfa962d1975f39587e762bbc319697006718e59ee0bb4b4eabc434470exe  
2021-02-23 06:37:29e0b82b1458e071658da98262f0b974aeb30e7e306eb786f8a289f3dd1b8cb80dexe  
2021-02-23 06:33:17598e8ee80c4dad43084c43d91cf05ced32824e42d10d0d8ef88c41631428893fexe  
2021-02-23 05:52:106d83e7bcbdd10761b3c06363d9f677745d2c9c03416d057668e87617086d0a61exe  
2021-02-23 05:49:59677618666eb31c80e9dbecb17907676d2da2a39d24f7c20785ef577239ef5e6fexeRedLineStealer
2021-02-23 05:30:18f10b8817b388868aa1e76c8f706dd0bedda991ff21c397be125d617280153561exeRedLineStealer
2021-02-23 05:27:418291db6ed7f2be2e014d6ad586a2fa2021c6f59334416e1042ed88edea137d0bexeCoinMiner
2021-02-23 05:11:015bddade91a2f92a067aa4d6e3762308d4801e38ae3e07bc103d5282b002e6555exe  
2021-02-23 05:01:07399cd22961b046713773a0a1a0817d0e30fcad4f9ec82d33c84f0e667cbd925dexe  
2021-02-23 05:01:04757c6ccb2021bb12cb15fafcd4d748ef2d347ed4cb51076162563cbfe1ea01e0exeRaccoonStealer
2021-02-23 05:00:09266f8215ba1b531f93fb7567c34088e49ad4de63d9c2726e11caaa6158be9d9aexeRaccoonStealer
2021-02-23 05:00:053d3112ce7c1a80e0378b15c7084b1b49a9805a5e47a85a97acdd7841d0a9b40bexeRaccoonStealer
2021-02-23 04:31:36bfee310c617048995349b9f9f7d73c0b675cc31bedcb2e4d3bac265be9cfaad8exe  
2021-02-23 04:09:09a5692361307642a92cc8fe3d614a23828b77bbadb291f91c495f4018abbc11a5exe