URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: proxy.siteterbaru.xyz
Domain registrar:Dynadot -
Domain registration date:2023-10-30 04:22:57 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-10-11 07:12:05 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-10-11 07:12:12 147.45.47.185SBL647085AS200195 VERASEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-19 13:59:08http://proxy.siteterbaru.xyz/css/54f0fa329a53.exeOfflineexe abus3reports
2024-10-19 13:59:08http://proxy.siteterbaru.xyz/css/7f3c2473d1e6.exeOfflineexe abus3reports
2024-10-12 04:49:07http://proxy.siteterbaru.xyz/css/67065a0933c9e_...Offline32 exe zbetcheckin
2024-10-11 07:12:12http://proxy.siteterbaru.xyz/css/0a839761915d.exeOfflineexe LummaStealer vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-13 14:33:57df708669748da15221b332a5333132c5d04adf1d1efcd2c0f01092fadaf87507exe LummaStealer
2024-10-13 06:29:348f335aff05e40168ba8b64781bbb5c6e6458e97811e6a6482500fe5e0c1d165dexe  
2024-10-13 00:05:346773123ffd9b843726dff04f4c3eca5051dbdd18d5519f37b2fd28aa4af66461exe  
2024-10-12 23:15:37fc190ddc114895e0de12c38135eebb56bcd664b78c2294d9a83bdb1c3c999c82exe  
2024-10-12 22:22:0563d5481923993c1e291ef5b4455c4ba887cf9e6cc66ec85a1aa8d284ee2aa353exe  
2024-10-12 19:53:4088461493960823df7a8c58d62026a2bda1206ef2f30c4fe1af2b4d2b2042e5e3exe  
2024-10-12 18:49:269f3bc1182dee3e90273eab3d7eaf8859255a54c08c470e002618c8767cc99e8bexe  
2024-10-12 15:18:455eca8c06c642d5a5f894f5b990990c95c2d67233bd5a7ee52ad98d3128cc959bexe  
2024-10-12 12:09:308ff4aa0b5b0bd79e00f0860db226e479c4fe60fa1d64135937b650d2df00c82eexe LummaStealer
2024-10-12 10:32:28692e18c98744aabc11616f6005b808a35733d232bb2f328502fb83c2038b869aexe LummaStealer
2024-10-12 06:15:43b1e6701083e5995a6f9be508fcb8f3e076373f8e26d55d954566d13a0094d3d9exeLummaStealer
2024-10-12 04:49:073088b0302d4b38c63ef4fead57aa6049da2cc62bf9f4a5d9331552c84fe516e6exe 
2024-10-12 03:03:27daf81bf83d4a888fb8e6f82b3d046ba08f3dd56b28335d3a649db48004942995exeLummaStealer
2024-10-12 02:13:1235d22e2fa64556f16adccbec55e29a3d01973554bf54d1df949de71cccf5756fexe LummaStealer
2024-10-12 01:49:11c24bf3b3469ad24aaaa6ed50c74c261063e640557b9e6cdc14e70194238e023fexe LummaStealer
2024-10-11 21:57:560a99c9efcf635e7fc0804e86009e2f8054ef01315127186be578823bcd4f14c7exeLummaStealer
2024-10-11 20:39:03ceb13e9621a114655dbb06a2a16e710d70adc450fdaa778a0166516c17037c44exe LummaStealer
2024-10-11 18:18:491e4f778802a5828eaede5d79f301f27ef14ae074058e36ef6d9e2509426c17fbexeLummaStealer
2024-10-11 17:53:0481908c738fa6e446c2821e374d63eee54b1660d0b957997fb4f9a469a190674bexe LummaStealer
2024-10-11 12:36:54a1475ad37becc7ad3be5f6c7d7e2bfb24988d1fd4ee1cff65674346162b3f27dexe  
2024-10-11 10:58:149534c98b290d9b58477b59ca2ee4aad8c617ce3bb769435b400fea796e0c6806exe  
2024-10-11 07:12:07e5c21e6655572c8096cd0b5dbcce06fc1ca273ef0823093f9253ebc032dbcfe9exeLummaStealer