URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 193.32.176.219
Firstseen:2025-07-12 05:48:05 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-12 05:48:10 193.32.176.219115745.ip-ptr.techSBL688169AS215540 GCS-AS- GByes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-07-12 05:48:11http://193.32.176.219/UPZDKGAF.binOfflinedropped-by-ACRStealer Gh0stRAT HijackLoader IDATLoader aachum
2025-07-12 05:48:10http://193.32.176.219/shrk.binOfflinedropped-by-ACRStealer LummaStealer shark SharkStealer aachum

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-07-20 18:25:010f6dfda8af429acd0083901a927febe3c43a8e1a066645dcca1c0cc8c4d1df1aexeSharkStealer
2025-07-19 23:35:133fd30cbd849b5026b3b33c62c34df1aa570e7dd12e1d88f2eb27d7d57fae47acexe 
2025-07-19 23:32:29e248994d1e415aeb2ec170f513316130788bbb05545e5fb9f662d64f3103195bexe 
2025-07-19 18:49:56c5a2447f541dfcd5c9044962ef32d47079071ec486dc12f4b4c86ad78fbc58ebexeSharkStealer
2025-07-17 12:02:13e9c01cbcefd682be349b6ff9f91e3685a9c5a379e8417b00753d5021223603c4exe Gh0stRAT
2025-07-17 11:39:3933096e8cbb5fcd1938db90b317fa5c6a3b37adbc30d635ba92328fbee3d024c6unknown  
2025-07-16 23:32:21f12727864186fc323d2fd833c8acb2ddaed553ad53419cc0618fe3c5bd7d019dexe 
2025-07-16 23:27:33dc2f86c451c9939d338b199a7119464ef5f08e2a8d54b7baf0b7ecf15905b652exe Gh0stRAT
2025-07-15 12:11:24eed5f9d02a1ac26d2b52bc1e4bafa73073faed0bb665687ddcf90dcecb41b878exe 
2025-07-15 11:54:5794c8939853ae7d48e63f9a58bd4864020e40b50663ad43f53856b0d2dbf8260fexeSharkStealer
2025-07-14 11:24:27c38af4b06807357d05314ee8c251f3de39234a3a7c9d1aee05863703428dca01exeSharkStealer
2025-07-13 18:19:45c803a446e81873a5a48bc48c3991a1ead32e70776057a70801aa46a9d34eb61bexeSharkStealer
2025-07-13 10:59:35b424d54700f44d073114dfc618c4d402f9db377f813fa6e529b268fe860677faexeSharkStealer
2025-07-12 05:48:103d54cbbab911d09ecaec19acb292e476b0073d14e227d79919740511109d9274exeLummaStealer
2025-07-12 05:48:104a2c9d7bede240c16a028a9ce884af292ef1f0dbdb76d5c2ea04db2d9f36c1f4exeHijackLoader