URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 194.116.215.195
Firstseen:2024-09-22 19:55:05 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-09-22 19:55:07 194.116.215.195Not listedAS56971 AS56971- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-09-28 05:47:19http://194.116.215.195/xin.exeOfflinedropped-by-PrivateLoader LummaStealer MetaStealer Bitsight
2024-09-28 05:44:28http://194.116.215.195/12345.exeOfflineStealc Bitsight
2024-09-24 11:12:05http://194.116.215.195/12dsvc.exeOfflineexe RedLineStealer ext vxvault
2024-09-22 19:55:07http://194.116.215.195/File.exeOfflinedropped-by-PrivateLoader LummaStealer MetaStealer Bitsight

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-03 14:51:3478ea866c53950ed8faae2aa94a8e6032b2d4ffd6599e04a4b1bbac4f9e9fff47exe  
2024-10-03 14:21:1478ea866c53950ed8faae2aa94a8e6032b2d4ffd6599e04a4b1bbac4f9e9fff47exe  
2024-10-02 21:01:2254cbc05805ba8d90a35ee888c4676f3abb19375be756ebe841a5db5908e9f80dexe  
2024-10-02 20:35:39c7888d9a1ae63c2aad03e1cfb67b2c0c18a755da346c1de0bff0677af1eb0b9cexe  
2024-10-02 19:33:14c7888d9a1ae63c2aad03e1cfb67b2c0c18a755da346c1de0bff0677af1eb0b9cexe  
2024-10-02 06:44:11fd1da56c56e1143d0b08fe9e139075d8c2d9d5ba70117c9ef6a2f9e715198e37exeMetaStealer
2024-10-02 05:36:19fd1da56c56e1143d0b08fe9e139075d8c2d9d5ba70117c9ef6a2f9e715198e37exeMetaStealer
2024-10-01 17:15:37f2efe100cffdb7dd07d9870be8c3d7631d3474ce23f81b564bc6e40fa852af33exe  
2024-10-01 16:34:03f2efe100cffdb7dd07d9870be8c3d7631d3474ce23f81b564bc6e40fa852af33exe  
2024-10-01 12:01:0388626cd243ed11d51de7c8bcca68841f98aeec737c294201e91626052f3e6deaexe  
2024-10-01 11:35:21c94f21254373c228e200a85422f611768978e785385d2802883cb1b75a0b31b0exe 
2024-10-01 11:24:5688626cd243ed11d51de7c8bcca68841f98aeec737c294201e91626052f3e6deaexe  
2024-10-01 09:16:088a92ad532197f8497b62095fb1966c7bd70263d870963805247b55ca135041f1exe  
2024-09-30 20:06:58c8c2c99716d93047b070a03c5202d93ed2d597396738b6dc2c3b1870262b93d7exe  
2024-09-30 19:21:48c8c2c99716d93047b070a03c5202d93ed2d597396738b6dc2c3b1870262b93d7exe  
2024-09-30 16:56:23cd85e3ca4693263c5bcda5e1dbc7d9abfb8def02891cb1ec37809d122b55b5b6exe  
2024-09-30 15:58:3260e14dc49f7b02dac5f78aedc0173f8424c6b22887436092c006da5d9f72946bexe  
2024-09-30 13:43:5860e14dc49f7b02dac5f78aedc0173f8424c6b22887436092c006da5d9f72946bexe  
2024-09-30 10:42:05ac70f21f67880aa40ec7432d3b8eb1b3e8916b3d21a6cd88e785800b3539760bexe  
2024-09-30 10:35:58ac70f21f67880aa40ec7432d3b8eb1b3e8916b3d21a6cd88e785800b3539760bexe  
2024-09-29 12:30:32de93d94a9976f80f40675ab0276909ace704abfaedf48a0b594f0122082528d1exe  
2024-09-29 12:26:32de93d94a9976f80f40675ab0276909ace704abfaedf48a0b594f0122082528d1exe  
2024-09-29 08:42:101b8407084a835b38164117d7c132230dacb523add71d22d19830f2306e280054exe  
2024-09-29 07:54:381b8407084a835b38164117d7c132230dacb523add71d22d19830f2306e280054exe  
2024-09-28 23:54:133bd386d0577ef2744c5d447c198a376b55a554b19ddeae45f1e3a985df59ba59exeLummaStealer
2024-09-28 22:49:003bd386d0577ef2744c5d447c198a376b55a554b19ddeae45f1e3a985df59ba59exeLummaStealer
2024-09-28 11:48:25569f4e10b81e57f4397c69ab696ed54c9fd9642ea31f041f9d3f5307f3daa8e5exe  
2024-09-28 11:05:20569f4e10b81e57f4397c69ab696ed54c9fd9642ea31f041f9d3f5307f3daa8e5exe  
2024-09-28 05:47:181fa6bfba290cd75c09efa73e28942a0ae876ff8e745e7ff764c102534b1f8aebexeLummaStealer
2024-09-28 05:44:2888e82ae29a28788c59be919b36693370bd9524f6cd164ea40055249d8056d8d1exeStealc
2024-09-27 19:27:081fa6bfba290cd75c09efa73e28942a0ae876ff8e745e7ff764c102534b1f8aebexeLummaStealer
2024-09-27 18:26:06799d10acbb0e2886c4d32c771964f4c2cb47f93c817cdc26a9acaefa3ba042cbexeRedLineStealer
2024-09-27 15:48:5796d2eb4d7d7d26903f202bf13b8bf35418844cb22ad513cecb8e5f4a0b007c26exe  
2024-09-27 11:50:101622822b3f7f66537240b4760560550654eb2c23c1f57c7e4bb52d3cbc5edd5eexeLummaStealer
2024-09-27 07:14:53b6628335dabb15d711f53e325ab84fbf2488e37928b2535731f956d9cc175bacexeLummaStealer
2024-09-26 19:36:457af5384d5927029f94ff0639272716c837b7ae7fb6f855f67c6d7a74004c67e7exeLummaStealer
2024-09-26 15:59:07aaefdf4d8df6b740054e00d65e9c56d081eaec7fe16e525b3895a6d882fb4cc0exeLummaStealer
2024-09-25 19:52:176b176bab868dc372496ab3c6ce97518d276c17143f77ae15c992970c1efdf21fexeLummaStealer
2024-09-25 19:39:567d6e4e01c452dd502361640ee095e2bee35e3f55fd11edc9e94c3580d2c132b5exeRedLineStealer
2024-09-25 16:32:562da667c881a6b5f4b773c932bcbb6825fda5a85a38bfb51e06921cb88c353f3bexeLummaStealer
2024-09-25 08:59:520ce01a445ebfe36d54ccd28ea5aa03c9699dbb2e212a5106356bee1fb8e4177fexeLummaStealer
2024-09-24 19:46:20abf88cbe8a21804ccdf319ddf9249e07f87e61f1f9adf64bb8c246e4b6203a2fexeLummaStealer
2024-09-24 11:12:05c0f8b5afad6fab4136affd308519c36e3779d597413d00e79e7f939bd7bae782exeRedLineStealer
2024-09-24 08:09:435a4984aee6e9ffc00e96382d870c77651b5dad31c3d05045ed2388db26142062exeLummaStealer
2024-09-23 18:27:179b9ea892b7ad9135e42cc1cbb190fd56004d2c08fb0c3c983148210f6c41e38aexeLummaStealer
2024-09-23 12:11:54351e95c5428552bb9c7734783a64c089ff966eeb96d3f2daee601041f9c091cbexeLummaStealer
2024-09-22 19:55:07a72d4d0ece553b8140a169f5aca11693f3e411f733f1440ec12b1a30b323f164exeLummaStealer