URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 94.142.138.221
Firstseen:2023-09-20 14:55:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-20 14:55:07 94.142.138.221SBL655622AS211522 HYPERCORELTD- FIyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-09-21 14:05:07http://94.142.138.221/file/1.exeOfflineexe opendir RecordBreaker ext abuse_ch
2023-09-20 14:55:07http://94.142.138.221/file/name.exeOfflinedropped-by-PrivateLoader LummaStealer Raccoon ext Stealc andretavare5

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-09-22 08:17:327a12d3a0d2f7d946c2726e1a9459458c8c9d03be7f462d9bea02d6ea47d98ee0exe  
2023-09-22 06:36:14a89696a2382fce3946099cbcbc99d31449bc36b5d284ae411feff84c9813702eexe LummaStealer
2023-09-22 03:45:19dde319a8916aaf36a266aaedac8855df3bf05c4711d51c052b0027e0e7ad2edeexe LummaStealer
2023-09-22 01:30:57059b698510fe844d463fdb51fa1ef8ef52314ecd1c844faef44f9aa8c8e80141exe LummaStealer
2023-09-22 00:39:535182de0d92063b8d44b20895c0b70bdeeaadacab68a542390db7a2e697e188e2exe LummaStealer
2023-09-21 23:58:48afa556d70085b29af9b6116c9c1c9fccfa95744bcb7a23bdf23acf67d5e76e96exe LummaStealer
2023-09-21 22:56:392560f4997ab679d7b72bf27f367dca4bac80c9bfd5f0f37d8af5428c7d3e1817exeLummaStealer
2023-09-21 22:48:5618dcba2f8f0683e43c19649abbf3d7ba56aedba7d15bcea0bd2251ee839a63cdexe LummaStealer
2023-09-21 21:05:1677b1027fe29ba7af32c4469b0d6fdc03847c1669bc110954ede3c58e00adec30exe LummaStealer
2023-09-21 20:06:24e7cdb442b434a2920c0087fd295b533e6561b7eaf2879b504da971ed07b1acbdexe LummaStealer
2023-09-21 17:42:522b451f8f8e333bf4b721b49e828e87e74605ad9deae596b2bd46eb786bb9458aexe LummaStealer
2023-09-21 15:40:19b3d7e8da81489bda270c71168266cf072216a9fa02dd88840111e469b3a86423exe LummaStealer
2023-09-21 14:05:077515b891d04647cddfb1c7d8c69002a0cd1892c8c98beef5aed7429dbdda3dedexe RecordBreaker
2023-09-21 12:49:36d7a6d08355fd87431c3c0c6d68a41e925e707e06a33a2c51b3cbc8cf463b6c98exeLummaStealer
2023-09-21 10:33:31b39157f7bbbfd61397419f6363229e6c3c546d7119e0c1da7c7c018c6ab2bb10exeLummaStealer
2023-09-21 10:08:24a4e189e07f1db1b4826c5d539f024eb0f949a4c678ac34c71a76c0dd9e01c684exeLummaStealer
2023-09-21 09:36:34d239a96a2b15b78ab70b93fd103c76293eb4490593992d6b35c1ae7d7956ae15exeStealc
2023-09-21 08:56:428156fd60e7ad16f38f0e277ed53383e31060577bd1b3bba41f8aa3afe86a3860exe LummaStealer
2023-09-21 08:38:1377460056386f07d96908455241b15091c3edecd9fd55fbf6ce7f3a061c7ac5cdexeLummaStealer
2023-09-20 20:11:2630dc937be20093d521ee5c56d25c3a822f53df4d98be08cfb40d27ad3966d7f9exeLummaStealer
2023-09-20 16:00:417764dcf5ebc8e3193e1b4e1536c7a730ef731e257f171d96fe1011cb270a805eexeLummaStealer
2023-09-20 14:55:06dcb21f8c085ca8b001e2a7e5926ac1ae908e638c594ca48bc3622f109407e0e5exeLummaStealer