URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: closehub.ru
Domain registrar:REG.RU -
Domain registration date:2020-10-19 07:21:14 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-05-23 06:06:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :16

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-19 04:13:59 176.31.176.75ns1.expired.active.domainsNot listedAS16276 OVH- FRyes
2025-11-19 04:13:59 37.187.202.101ns2.expired.active.domainsNot listedAS16276 OVH- FRyes
2022-11-19 18:08:35 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2022-11-19 18:08:35 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2025-05-03 08:16:25 172.67.154.142Not listedAS13335 CLOUDFLARENETn/ano
2025-05-03 08:16:25 104.21.72.196Not listedAS13335 CLOUDFLARENETn/ano
2022-05-23 06:06:04 172.67.145.32Not listedAS13335 CLOUDFLARENETn/ano
2022-05-23 06:06:04 104.21.63.97Not listedAS13335 CLOUDFLARENETn/ano
2022-06-02 01:15:37 188.114.96.5Not listedAS13335 CLOUDFLARENETn/ano
2022-06-02 01:15:38 188.114.97.5Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-05-23 06:41:04http://closehub.ru/files/%EF%BB%BF296_2.exeOffline32 dcrat exe RedLineStealer ext zbetcheckin
2022-05-23 06:33:05http://closehub.ru/files/%EF%BB%BF268_1.exeOffline32 CoinMiner exe RedLineStealer ext zbetcheckin
2022-05-23 06:33:04http://closehub.ru/files/%EF%BB%BF259_1.exeOffline32 CoinMiner exe RedLineStealer ext zbetcheckin
2022-05-23 06:06:04http://closehub.ru/update.exeOfflineexe RedLineStealer ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-11-28 05:04:003658b800413995019c5152fcce47fded87cc1d128b5bfcc3a2f9831c1f320d53exeRedLineStealer
2022-11-21 07:04:04c571f976bb868e439195c5120caf948cac2546adbc08f2c2e24771e3eccf56d1exe RedLineStealer
2022-11-20 08:33:44ed6aa3b45531b523549ea2e3214d589d36c27171d774aebf8d7c7635f902572dexe  
2022-11-11 09:40:48ba195e484764b365f446b31263701d96d866fefebe722e2843f3226558d1679dexe RedLineStealer
2022-11-10 08:19:1820b5d82a4dd11d6c7bdc61c16e64df4baa19458186f6daf7865913a444c06a4eexe  
2022-10-21 22:21:00bba7be0678f2d6101ee7ad6bfb69f12c32bddebbdeefe27c8a07c7e744b240c8exeRedLineStealer
2022-09-09 07:26:17125384cca8a8cefb7f1d72372cd01e4c319dd15a5c1a2d517be8b1968bfce33dexe  
2022-08-28 15:01:4507b645db0d5764be48e1cb6280ecb0b33ae043ef6a6cb2b06d7aebe68a2c8f2eexe  
2022-08-15 01:34:30101c91416e5e3af343cfc511395be86c4cf63f4306587418cd43317339816fddexe  
2022-08-12 15:34:167e6b94efd0dd8e00c0e7f916caa48d70f8563717c9f36d499a6fb21b918359d3exeDCRat
2022-08-10 07:12:470474e8d2945b82de4b7e25ba7980fb9a237ff6a640dcb2e8f4f57b2e7ac3e7b5exe RedLineStealer
2022-08-06 22:43:5027d1d5c2eeb671e750e49066ee9547b7941af478345a2a3a4167153cd5f39b5eexe RedLineStealer
2022-08-02 02:20:0065281c039cd3c453e3935f218094276aead86ba45c911c5e66ac91febe1462f1exe RedLineStealer
2022-07-26 17:17:30afa216bf217b0e8a618ca168f67e280fa55a8de00472f7af3c1b05ddba154a21exe RedLineStealer
2022-07-23 03:37:006a519d66f46aedafbe3859011d8d6fe7bdd3fb6cf21b3c82c07be441e9ce3407exe  
2022-07-21 15:53:2685a51c252f79f98d5300f27aaa050b85407206499f534d084f38d3884ed3e356exeRedLineStealer
2022-07-21 02:56:320faef159fa2642712a5bb603c52bfb86ad7adf4a262aacd2f4ab9d2060fb9068exe RedLineStealer
2022-07-20 05:12:144fb7910209236b4573b911224fee2cbf6663eb3e14bd160e80c1edf94c949b67exe  
2022-07-19 20:14:31d3daaf76f2262383d8ce1eb0b031e0a2390dd9f78a0a8ee8a0bc580376f63368exe RedLineStealer
2022-07-18 21:42:352aff5e1192090ef1048e8a6cc91ce4993bdb9c7a3cbd7d2675d78382d6a83056exe RedLineStealer
2022-07-17 21:06:150a60bc1f62c42af31a5352ae8e1e68359f5369e8187043ba6a7ec4778011d5fbexe  
2022-07-17 14:40:47c713286048001132f68ce90b40061d0b66772394f48dd8a181698257d04b7aefexe RedLineStealer
2022-07-16 14:45:34184ba4e6945993dad559894031c3e9f1888962569ae3b49f83f2204d0fb329b8exe RedLineStealer
2022-07-15 22:53:07b0a3c9f11e0c9b196ac54ba8206a1d5e79b4806bad49f3c44d27f5e01225a3a2exe  
2022-07-15 01:30:43aa0ab80c2f4263fd6af3bf501055bc7effe932f548480a2e047bbc4d649a205fexe RedLineStealer
2022-07-13 16:47:31ce5d4a63531d28311992ef91e5a40271af3e8fd22be7cca05c3efd604c3c3ec8exe RedLineStealer
2022-07-13 12:52:18192127cb38bf25965998d6dd5e74c1ae9ef680957f798dc54e38c23f3e7911d5exe  
2022-07-12 00:24:44d986b2429ae1c3eae61a128688637f2b66ecdddd1ebd282ccf226cd03ae534f8exe RedLineStealer
2022-07-11 02:34:369169ca0c1e9d3a0e557cd21c3a8753c07460023ca322503d37a35c810ad1c85eexe RedLineStealer
2022-07-10 22:19:343b900654a4149b6dac85fd476074546b8b3712cf4f565ed00925abe57ff46e69exe RedLineStealer
2022-07-09 16:59:23a00eef5e8b2684cd6bb9a9edcc184b49df1cccde851e2b6aeb9a0f866febe3b1exe RedLineStealer
2022-07-07 22:23:54f659e554fc5735d6c336a7c1525348867e1d762e43730d3905bf1e5ca74da290exe RedLineStealer
2022-07-07 19:59:3687f6dc46e91c26a02766a3051ebcd7ce0b23400d6751c3f7ec1a8b8a53c03d22exe RedLineStealer
2022-07-06 13:51:553a3c096118818ef28420da1a07e93fd8664528d7d2d217334b8fb4fbb5f8ffa5exe  
2022-07-06 00:25:19980735eeb5ec92f91ab59a448a925925369292204d70c0d88db028265e1b8172exe RedLineStealer
2022-07-05 17:01:500605d280d1fc970793dedb4c5d6bf22d7c152a8fa8a29e9889b06227447b7334exe RedLineStealer
2022-07-05 16:18:30ca3e3737fe4408b3a4b5362a12ffb59c96f7c8e722d047196b559d7f1bd0debbexe RedLineStealer
2022-07-05 13:53:045670b86cbe24821fbd91fe4ecd4fb11e7577f8512d92fa58e8317dc0d30df0f1exe RedLineStealer
2022-07-04 19:59:44ce98c06a5ac94369bd2c0c37c56511327ef90e2db9ab0ab48f50ee5b30f11a84exe RedLineStealer
2022-07-04 13:28:47f6418629bb1c9f1088f32d1c4b6b3fc7eb9cfd5476a865bc8c658b39e80512baexe RedLineStealer
2022-07-03 21:19:008a564096f64351d44655ccf0009a4840080b72a12554e958adf7f09d01dfcaa3exe RedLineStealer
2022-07-03 15:06:11d34924f37164398d393a417834a5a92494cde16e85b4fd9c995d11ce4d79ee42exe  
2022-07-02 19:58:4363eb035edec192491db99b7e5327b932d01b7f609fc11848151ed972beaf60caexe RedLineStealer
2022-07-02 18:22:18f076ea77f9ef65bb03d9a462f71e3334b76cb228f901bde842d7e0b78d312910exe RedLineStealer
2022-07-02 09:41:5259f9aec3adf1c5a949a3c1bbca6a1bd6603311fe4422d150218ad600be5c93deexe RedLineStealer
2022-07-01 16:42:08940b7a307a0880b3def5b348dc3c5dbe56aa14adb32948e8f9719d01a92c9fbeexe RedLineStealer
2022-07-01 00:50:239f3c80731db75c1e542f9f470fcb4be6f01ff51dfc2cd3aed0be843255b58b9dexe  
2022-06-30 14:16:301a13bea22835c2e8a879cb244365bdf1d13665a88e3db87c00f9ef62196a98acexe RedLineStealer
2022-06-28 11:34:245663ec75d697f8628c0edf823ca7d9808c4ff9191a348205fb6974f9fbced23bexe  
2022-06-28 00:08:42f5ac65702d7307985ce6e70e57655e6351748c9331965df1f1fcfd362b7a8cfcexe  
2022-06-27 20:03:2272970c0c7a465b0a778b11fdb9b07999933a968155f3963b1ad2b57acd01cbfdexe RedLineStealer
2022-06-27 16:40:15d5eff08889650a760c6b045ca6571d84fac22d2b60dbeac776711e909c13fc5cexe RedLineStealer
2022-06-27 15:36:12f1a61ed9d7df78966fae0c7164e29ccf0d3149ece0a0923b56f663ee97837044exe RedLineStealer
2022-06-24 23:36:213602ecf3432441921d7e47183fd90dcdae4eb00eb9ecf193e830e728f3fc143bexe RedLineStealer
2022-06-24 07:07:31a0d93a131d0820952c150516d431c494dde963955c038f66559bf3050f0edd10exe  
2022-06-23 19:59:2158cc7a5d4e9f6ac56095b1bde3621e81c1c0b2c5c210363e4b1d168d5d16a379exe RedLineStealer
2022-06-19 12:54:372d5da271203485542a7658af03515b8a39ce6810b43a9a219f07a6105fc8122aexe RedLineStealer
2022-06-17 10:34:08d8942ebf83c3908d583b1a38d97232ce7d004917bfb4d377e4b6eff70c1763e2exe RedLineStealer
2022-06-16 14:01:168c37d7cf9d4ebeac260a6112b39e459b05dace7a52093c957eaf36dc343cd9ffexe RedLineStealer
2022-06-16 12:08:55e79fb2b522223a1f76168f3c08f76a44de29e3988f9332c30d4390fe89dcb89aexe RedLineStealer
2022-06-13 10:09:2881c90180ae440ae2684eb760196458faf482b3a0834ef6797453a8d4ed255c1cexe RedLineStealer
2022-06-13 07:08:282131fe09c971261db3ef03937de3ebbe7bfadb00cfafcf90b10eddab7619cd91exe RedLineStealer
2022-06-10 19:28:5709d2202dd726e0edf326b0b15817419af978c64b95868f0a05f37e6fbd9ec7ccexe RedLineStealer
2022-06-10 06:09:23d473acef2746624cf8b8baf4e4ab3cec73b48e692071a00d9bbe2dbcdca6c8b3exe  
2022-06-08 18:21:18a6cb2b40af946eaaf5796b948208795f6ab930332d852bbe5b7218e421d7b177exe RedLineStealer
2022-06-08 12:20:14fd0f02ea66fb6afa795829fb40004b6f72cbc93cc09229c65fe1a9edf034b43aexe  
2022-06-08 12:00:1590351a155a7fa13d9e65634f590659661eb8e4922d940872494f7dcbff6d29b1exe  
2022-06-08 08:15:295a736ed05548882220ccf32e4341ccd96bd9c72386e394edd679e1c65847aeb2exe  
2022-06-08 07:34:32fddfc95f833718deaf0f8bad0bd92b3ccd855c08e2fa90b3471bbbc7350c21c7exe  
2022-06-07 22:14:08df3777dd0fbf7268ff942d2eb16b6b9f17da04c3fd87721edc31d88955ad9f0fexe  
2022-06-07 13:27:299fc741cc4b8a847622ab4ffe07ad445b252ad2f94dc220a2771436085df7c166exe  
2022-06-05 17:41:123ba93df10349c02a1b863715b69879a6e3e9a527aebb0af8fcc0c57c1e8f6f70exe  
2022-06-02 17:06:2882c321267622470580a27c5f6aafe5b7749a0118da05c668ad725d0b8a425ff1exe RedLineStealer
2022-05-23 06:41:048a772d958134a2bd7d689795c721ffd43a29133f9f1076331778b6089977c7c9exeRedLineStealer
2022-05-23 06:33:056903e33821d3a689d41e5e45cfd1e9bbb08109b741fe199b030e7e2875d7fbe5exeCoinMiner
2022-05-23 06:33:0432dbd23da3165e24cca4714f1b822d02f7056fb7bf21e687ae5506109f223b3fexeCoinMiner
2022-05-23 06:06:04248b9f78cabc04c5eff4f7cc9075eb6abb6cfce86585f5149fa55840fbe36342exeRedLineStealer