URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: highart.top
Domain registrar:Openprovider -
Domain registration date:2021-12-04 19:26:55 UTC
Abuse complaint sent to registrar: Yes (2021-12-07 10:59:02 UTC to abuse{at}registrar[dot]eu)
Domain registry:TOP registry -
Abuse complaint sent to registry: Yes (2021-12-07 10:59:02 UTC to abuse{at}nic[dot]top)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-12-07 10:54:08 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-03-07 21:42:59 172.105.162.84172-105-162-84.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- AUno
2021-12-07 10:54:10 185.82.219.16dedic-declpp-982332.hosted-by-itldc.comNot listedAS59729 ITL-BG- BGno
2021-12-08 04:13:49 94.140.115.229SBL635993AS43513 NANO-AS- LVno
2021-12-07 22:36:20 103.70.136.119Not listedAS10112 VALUEHOSTED-AS- GBno
2021-12-08 01:09:11 192.210.222.93Not listedAS36352 AS-COLOCROSSING- USno
2021-12-07 10:54:10 192.210.222.92sylas.flylocals.comNot listedAS36352 AS-COLOCROSSING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-12-07 17:51:09http://highart.top/foradvertisingwwk.exeOffline32 exe zbetcheckin
2021-12-07 10:54:10http://highart.top/foradvertisingwwb.exeOfflineRaccoonStealer ext RedLineStealer ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-12-08 07:26:46bfcc6a5796b1f8bffa632a0d603fd337fe641240ebe1eca96d369eb58d3bef88exe  
2021-12-08 06:38:579f633c4174f5b78a8639b22fdf1ab9f132a6fa37b6c9307dce10365d3b7c273eexe  
2021-12-08 06:29:317e4323a6d4b4eef2e2809dab8227f0000df1eef584bddc0697e7c8a4bca6fd03exe  
2021-12-08 05:28:284fbb24529ce18e7b5ddd43c1a981af057be28b10edfdac82ace7a11db70c6090exe  
2021-12-08 05:28:066887fc5fcfa2da494ce6d616c34bb6c4046e2582031159983d79f5d5c5e055f1exe  
2021-12-08 03:47:460e2501b27994b7fa9e16f0252d9ab891bc88227c47dd043a9afcd875e870758cexe  
2021-12-08 02:35:44221e8aeeb26fdfe574610c29e9634e51135b20986684e44fad5e5fd6856c9bafexe  
2021-12-08 02:28:370d7ae3b8915e9aa927750b2dd466a0b38f0a4b925dd0cacf80e913c72a283671exe  
2021-12-08 02:01:39ecac3b003c545161866d87c5582f6e4ececb2acfea226464576807c69b14469bexe  
2021-12-08 01:42:3099d40eb6d4657868a901d7b4d11cdfff49849f44b666f1a5af6652db73794022exe  
2021-12-08 00:50:51e3ad198bfd9548358dcac44f2fd024f4244ea62ca44c49fc4a3a0eb08ff51ac3exe  
2021-12-08 00:47:562ea0c7fe10215d63b90ac8fedafb5bc48dea5f682c6358353c78160db1aeb35bexe  
2021-12-08 00:25:56d6bb1b3cb3fb86b81a2c709a13f7929a6b0acdd0298bb8e1e6cbe163fc425369exe  
2021-12-08 00:09:183481b33603018de04e5bb52ac7b71ee6089d34b0cf63b92304789cbde2c6e278exe  
2021-12-08 00:03:2127965fcbbb6627f9a9b76d654cb8c43e84ebbb96342b22588cc247d71c0b8988exe  
2021-12-07 23:47:192460764325625714f59d62b57adb3a8f4344d7e0afc74adf104c9e8917d7cc6dexe  
2021-12-07 23:18:22c3cb6fb8e053cc983c97bdbf063c32f08be1481ff973194e33db3abfc4eff06fexe 
2021-12-07 22:47:38baf742833dcda46e45cd23ef1552609f6364d0e6e2bbee545680d5a3263fa829exe  
2021-12-07 22:28:0165f9200fbae3d500d5c767a8491f012ea6043d61edc2af85c147faa225fab97cexe  
2021-12-07 21:32:40e6685ccd6cad1e316ed0cf7d5fb570c8442fbfc9a9e799041086287eb8f3e16aexe  
2021-12-07 21:19:065f57756402f539c402c27f2799e28ee051e689b2850bbb3411f59b72017df3c9exe  
2021-12-07 20:51:557b46d6e42e570137a97a58f36853cd3825fa9e9fa885138f0dcd02a370724175exe  
2021-12-07 20:34:1956022521112a728683f2ffa7caa393e9a2d9867ea5e19867344c098cae487f90exe  
2021-12-07 20:27:39b4c533cfbbc57e8f47f808b4a0be0c56bc05d8715dfc24713e9f1ce852e796bfexe  
2021-12-07 20:08:513251ef88f38b3812ce5d30003853b86acf06887c723421ed00a60d449239364bexe  
2021-12-07 20:05:26c80605d5bc40d0db63da315db4d9e50d172881c636747b5d418a0755182612c5exe  
2021-12-07 19:11:1426c9c532c7a43da19ae979a147706c632f8b1859720959664d2f42b617fc888aexe  
2021-12-07 19:06:281c4eb2d76a12f9f28a6c386f90af5be40f9a8d86cc0d5045e640009cbbc8c0f9exe  
2021-12-07 18:41:5384804321901afa7614079efb3e217e6653948cfec47b8815cf23baa7a18b3e55exe 
2021-12-07 18:18:56acca848c83f32d8045ab0d1e2c4b5ba4195b4c2e088929977f00a85367165896exe  
2021-12-07 17:03:130a80aa8b5483629ac08e6321933c1906d715f36501cb6fe6f03fac55bb5f426aexe  
2021-12-07 16:16:35928a7f40c2f97604242c3732da8384200984213f832235312b365d6149256839exeRedLineStealer
2021-12-07 15:52:52082ccf45adc44ae42f4e99f9207e56ea867f25b5dce2c30af3ddb7abf72f8f4fexeRedLineStealer
2021-12-07 15:17:16358c7a01868df7d423f3927b34289141148729063cf995afeafdb343752d6d12exeRedLineStealer
2021-12-07 14:26:4686f0e9775e32a892ca86a1b1b351e18b82da43020ebea265abcd1f4eba7c58f7exe  
2021-12-07 13:23:22cbc599190564686ce0a3b1f77fc2064664fbf2d5df6568975a41a32659216e00exeRedLineStealer
2021-12-07 12:36:32f8daaa065a27508babcd8e898c3f1eda824531105cdcf07ceceee2fda53d5a5fexeRedLineStealer
2021-12-07 11:35:36a1bd10dc14bf9edc3d4563c86d556a051d9a394fdcab91343b071f269aae2912exe RaccoonStealer
2021-12-07 11:00:275c69bc614c6092798cecfa808358e97cda7c0ea53f30e1e124cb14b54cf9f1b0exeRaccoonStealer
2021-12-07 10:54:0999128019182933db209959ed5a076f3b456512c8507e8a3190ad1863ac61d2d6exe RaccoonStealer