URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: host4file.cc
Domain registrar:Cnobin Information Technology -
Domain registration date:2026-05-26 08:21:11 UTC
Abuse complaint sent to registrar: Yes (2026-05-29 06:44:02 UTC to abuse{at}ordertld[dot]com)
Domain registry:VeriSign Global Registry Services -
Abuse complaint sent to registry: Yes (2026-05-29 06:44:02 UTC to info{at}verisign-grs[dot]com)
Spamhaus DBL :Malware domain
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2026-05-29 06:35:06 UTC
Total malware sites :35
Online malware sites :0 (0%)
Offline Malware sites :35 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-29 07:33:58 94.125.103.191Not listedAS198550 nodehost-as- NLno
2026-05-29 06:35:18 195.133.198.38Not listedAS214822 MTFINANCE-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-29 06:50:23http://host4file.cc/load/os1/kythy1.exeOfflineexe GhostPulse opendir abuse_ch
2026-05-29 06:35:37http://host4file.cc/load/os1/crz.exeOfflineACRStealer exe LummaStealer opendir abuse_ch
2026-05-29 06:35:36http://host4file.cc/load/os1/JUFPRUJS.exeOfflineexe GhostPulse opendir abuse_ch
2026-05-29 06:35:35http://host4file.cc/load/os1/KJLJLJw9.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:34http://host4file.cc/load/kythy.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:33http://host4file.cc/load/os1/vwAht.exeOfflineexe GhostPulse opendir abuse_ch
2026-05-29 06:35:33http://host4file.cc/load/os1/OnbuD.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:33http://host4file.cc/load/os1/LJHKKUU7.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:33http://host4file.cc/load/os1/KUHJKUH9.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:33http://host4file.cc/load/os1/INUS.exeOfflineexe GhostPulse opendir abuse_ch
2026-05-29 06:35:32http://host4file.cc/load/ojujn.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:32http://host4file.cc/load/hnmh.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:32http://host4file.cc/load/bjbh.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:29http://host4file.cc/load/kliulij.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:26http://host4file.cc/load/os1/gXjgD.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:26http://host4file.cc/load/os1/ww7.exeOfflineexe opendir abuse_ch
2026-05-29 06:35:25http://host4file.cc/load/os1/cry.exeOfflineexe opendir RemusStealer abuse_ch
2026-05-29 06:35:25http://host4file.cc/load/os1/vibo.exeOfflineexe LummaStealer opendir abuse_ch
2026-05-29 06:35:24http://host4file.cc/load/os1/SomaliaCruises.exeOfflineexe opendir abuse_ch
2026-05-29 06:35:24http://host4file.cc/load/os1/vBiqp.exeOfflineexe opendir abuse_ch
2026-05-29 06:35:24http://host4file.cc/load/os1/JGHKYH7.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/hjbk.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/uRgOy.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/hkdfkhfd19.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/beb.exeOfflineexe LummaStealer opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/jhgkuyyg.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/U.exeOfflineexe LummaStealer opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/JLFfdd.exeOfflineexe opendir abuse_ch
2026-05-29 06:35:22http://host4file.cc/load/os1/CXmFD.exeOfflineexe opendir RemusStealer abuse_ch
2026-05-29 06:35:21http://host4file.cc/load/os1/GKGUIED.exeOfflineexe opendir RemusStealer abuse_ch
2026-05-29 06:35:21http://host4file.cc/load/os1/VKkQj.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:19http://host4file.cc/load/os1/JKHKJ7.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:19http://host4file.cc/load/os1/StatingConnectors.exeOfflineexe opendir abuse_ch
2026-05-29 06:35:19http://host4file.cc/load/os1/sdfdsf.exeOfflineACRStealer exe opendir abuse_ch
2026-05-29 06:35:18http://host4file.cc/load/os1/CuService.exeOfflineexe opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-29 20:09:332120b8b7bf98e214fc99cb7c373382d0a04c3e3207a080c72876d4ba75e9943dexeLummaStealer
2026-05-29 20:02:2660baa10ec722b4d548d856ebf6b075e47d55f612bde1885d2e1827df6de1e327exe GhostPulse
2026-05-29 14:06:11c25d942315b926dab7c1a3aff907891b0f3c7db6ff809d3399b6af6c4d389c67exeACRStealer
2026-05-29 14:05:00ae3ee04fded710b733a8eba2eb8e0aafa1fdb60805c6b48aa4aa56311079b10aexeACRStealer
2026-05-29 14:04:06d9aff50ce278f481649acb776de0c2350c410249d97781cb33da92098fa330f5exeACRStealer
2026-05-29 14:01:55ead52049a68c24e8538cd7763e59414f4b6561d458fab3bafd719543ce037025exeACRStealer
2026-05-29 13:50:312f04e1e48d9db645118b69c7d55dfe2b3a21a12f7ecd70bcb26840b73557784dexeACRStealer
2026-05-29 13:42:08e0ad30d3587be86f17733492d4b774601356ff5b5e09c17f536704a4ced88f9eexeACRStealer
2026-05-29 13:40:46eaa52e1968c4b8f8beb2fe508e9eea9beedd66964850e2383d2b56c5a3f98f51exeACRStealer
2026-05-29 13:22:137a1b5d1b9ace3b084cb8cb116a29b659347d3154d16d62c959abd2ab79499d4eexeACRStealer
2026-05-29 13:12:49d6ea35c41477647b36f48603de3668d1d95b3ea87188626203dbcad9d35d1a01exeACRStealer
2026-05-29 13:08:189ca2ebb826a8d0de58eea5a1afb5f6f76adb3938feef9604725508452b0a2e08exe 
2026-05-29 13:00:584a78e2adf2ab7c257c7c5a960a8edeb0d64fa6ac564f4c06060c92adfa12ae76exe GhostPulse
2026-05-29 12:58:40ed60a9ea49327a70dcfeffbb0153968ca5d656b2c8fb67fc7d4fde65e936ee5eexeLummaStealer
2026-05-29 07:36:5194db5892d51fa7f24c6f406591d5cc143f48f3f9f576c66d36a8682e3950102bexe GhostPulse
2026-05-29 07:11:353a60aef280501867080bbc1aafec15839796600e4bc3cbd9d3a2677962013294exe 
2026-05-29 07:11:306f6f052595b109f4e8fdf42644b98f6380635f3f45f280cf85aacf6e30e30d2eexeRemusStealer
2026-05-29 06:35:371b98937b0559f1b27de90a7d5e767c3b11464d2b40db87608bf788f619b9832bexeACRStealer
2026-05-29 06:35:36a7a9205e561af4ee6961ed357c8b2320dd035bd28e73c94847ccc58282d19504exeGhostPulse
2026-05-29 06:35:33fc78025df01642eff63990f86b0bfe0ce67568ab9bb530df9cb6db86552785e3exeACRStealer
2026-05-29 06:35:339410374bb9ccfb1a8a15aac5a038202e1ce7fb841a5128edf4d348d82db760c3exe GhostPulse
2026-05-29 06:35:33538de6806115b13d5caf7eda60614b2fd000720d6e8af659cae4e87a9958aff2exeACRStealer
2026-05-29 06:35:33ba1af85880677c82be1c4388452fad1874f2edf73e5cd1521553c3710cf63ffaexeACRStealer
2026-05-29 06:35:332b6c218882ae32b7d10705fa62423e650bcae27b681875c24cad87f4d9faf2a0exeACRStealer
2026-05-29 06:35:32c88a5bba3b32d6c4cfe3c2d33ea8eb5ada10314a8e049ce02d5cda94abd5aeb8exeGhostPulse
2026-05-29 06:35:32c0a47856e9f60a5be5ac0cab0b92452198a3f10b6f98dbcbf1d153927915809cexeACRStealer
2026-05-29 06:35:32053ab9bf3778ec777342c045bac855a44d80fb75e224a5362134b53a2c864993exeACRStealer
2026-05-29 06:35:327a8febc18c63163138306730f9e151554c8c85e451d97091b851d31289d21091exe ACRStealer
2026-05-29 06:35:3289ff4418a28e5c804ca2a4fb486f5dc67a17c6b3e97ae231566cfc313b809376exeACRStealer
2026-05-29 06:35:268432d734b2af5ee148915399c6f5d63b3f3435ab612182ad53b0d8897fbf74c9exeACRStealer
2026-05-29 06:35:25550673c8d08171c3b9dbf1158c0f6539b39e170553e1a246a9c6b959f81e0ad4exeACRStealer
2026-05-29 06:35:253a60aef280501867080bbc1aafec15839796600e4bc3cbd9d3a2677962013294exe 
2026-05-29 06:35:248bb023f201203ace256591dcfcc01ec24040db5168e94172fdca84372df680ceexeLummaStealer
2026-05-29 06:35:246f6f052595b109f4e8fdf42644b98f6380635f3f45f280cf85aacf6e30e30d2eexeRemusStealer
2026-05-29 06:35:24d59dc2f22167b0a44bf103d664842112981d4b3dbe62f7a27e671cddbbac9d73exe 
2026-05-29 06:35:231722546d1080adf512d5e232e240c749bd20f6cb448c2f1be2487ff811cbf01cexe 
2026-05-29 06:35:233126cf23a7929e2fa339f3d3c6996eea3fde816546898dc4d515466fba52681fexeACRStealer
2026-05-29 06:35:217f9634ff29b278d08c1b04feec298f0f57969076c83b115ef3bcf5ec56f79945exeLummaStealer
2026-05-29 06:35:21f86ecade778fa6ff57b8d0bddc4197bf34fa4702c6276109e9c987a7c414584cexe ACRStealer
2026-05-29 06:35:211f921e25dd57750a484fbe2af25db6e5f7a1f977a432acfd54bcee6f58521aeaexeACRStealer
2026-05-29 06:35:20ea41d4b15a8e270f2113b16f050cb3e15cb5a5c85711fb6ec31dc6bb7279ba42exeRemusStealer
2026-05-29 06:35:205588efb268c8bcc40cf1942db862387ccd2f4f8ca88464c0d316faedf90f80d5exeACRStealer
2026-05-29 06:35:1858eda486d34d649502ff6f451760ef1fb340c15ed808c226e9831e785d39dc04exeACRStealer
2026-05-29 06:35:18d364a2f6997fd4874ba180207f6785151532c0fd3f014e36d44f330d50037191exe 
2026-05-29 06:35:1803e696190ce37a2d01f27446fd957804e5ba83438ad83f52b9d3fa302df4e12bexeACRStealer
2026-05-29 06:35:17a02296ceeb8f1419fe18a4376ce3b563e5de0fe8d85e7bf1b8461784d3c17992exe