URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 194.15.36.219
Firstseen:2020-11-29 17:20:04 UTC
Total malware sites :34
Online malware sites :0 (0%)
Offline Malware sites :34 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-29 17:20:06 194.15.36.219219.36.15.194.in-addr.arpaNot listedAS58087 FlorianKolb- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-06-09 16:04:06http://194.15.36.219/filesforwong/xeno119/stub/...Offlineexe latentbot opendir NDA0E
2025-06-09 16:04:05http://194.15.36.219/Discord.exeOfflineexe opendir QuasarRAT ext NDA0E
2025-06-09 16:04:05http://194.15.36.219/filesforwong/xeno1195/stub...Offlineexe opendir QuasarRAT ext NDA0E
2025-06-09 16:04:05http://194.15.36.219/filesforwong/xeno1195/xeno...Offlineexe opendir NDA0E
2025-06-09 16:04:05http://194.15.36.219/filesforwong/xeno119/miner...OfflineCoinMiner exe opendir NDA0E
2025-06-09 16:04:05http://194.15.36.219/filesforwong/xeno119/miner...Offlineexe opendir NDA0E
2025-06-09 16:04:04http://194.15.36.219/filesforwong/xeno119/xeno/...Offlineexe opendir NDA0E
2025-06-09 16:04:04http://194.15.36.219/filesforwong/xeno119/miner...Offlineexe opendir NDA0E
2025-06-03 14:11:33https://194.15.36.219/Discord.exeOfflinec2-monitor-auto dropped-by-amadey c2hunter
2020-12-01 18:02:06http://194.15.36.219/armv5lOfflineelf botnetofthings
2020-12-01 18:02:06http://194.15.36.219/sh4Offlineelf botnetofthings
2020-12-01 18:02:06http://194.15.36.219/x86Offlineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/m68kOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/sparcOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/powerpcOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/i686Offlineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/i586Offlineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/armv6lOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/mipsOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/mipselOfflineelf botnetofthings
2020-12-01 18:02:04http://194.15.36.219/armv4lOfflineelf botnetofthings
2020-11-29 17:20:40http://194.15.36.219/assailant.sh4Offlineelf _morepoints
2020-11-29 17:20:40http://194.15.36.219/assailant.i586Offlineelf _morepoints
2020-11-29 17:20:38http://194.15.36.219/assailant.arm6Offlineelf _morepoints
2020-11-29 17:20:36http://194.15.36.219/assailant.m68kOfflineelf _morepoints
2020-11-29 17:20:24http://194.15.36.219/assailant.arm7Offlineelf _morepoints
2020-11-29 17:20:18http://194.15.36.219/assailant.i686Offlineelf _morepoints
2020-11-29 17:20:16http://194.15.36.219/assailant.arm5Offlineelf _morepoints
2020-11-29 17:20:14http://194.15.36.219/assailant.mpslOfflineelf _morepoints
2020-11-29 17:20:13http://194.15.36.219/assailant.mipsOfflineelf _morepoints
2020-11-29 17:20:11http://194.15.36.219/assailant.ppcOfflineelf _morepoints
2020-11-29 17:20:11http://194.15.36.219/assailant.x86Offlineelf _morepoints
2020-11-29 17:20:08http://194.15.36.219/assailant.arm4Offlineelf _morepoints
2020-11-29 17:20:06http://194.15.36.219/assailant.sparcOfflineelf _morepoints

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-06-09 16:04:060b484408c0a7a0d36bd2a1eaebd3030c98c88d786e92eb16b918b3a8b5c8bc9dexeLatentBot
2025-06-09 16:04:05bf2ef5b129882d9a508c72a6afefede8ca7de3db89e5b3754ca8c470e27122baexeQuasarRAT
2025-06-09 16:04:05a1598314ea680183e6630630e06d6784173bbf32bd895eaf3882d585e22609cbexeQuasarRAT
2025-06-09 16:04:05099569a37cf2cabd52c6e96fd913e1be8495a3a84c176a750e56049075ba5164exe  
2025-06-09 16:04:05fa249b40faa32425698e6d385a45d14f0411d22940a43be95da9924607e317e9exe CoinMiner
2025-06-09 16:04:05320ea09ab59c7de8dbcfb286bd9ad1745b7fd8deffee0464b1e9ec9e55ef0e83exe  
2025-06-09 16:04:048dc7be47f2ba84910bd3482dbc18ff7efa4aeaedcb07796506e38911a127b5bcexe  
2025-06-09 16:04:046f322e387cbe6deb09767d2ab217dae8b00415516507f4908b87a0787697da9aexe  
2020-12-01 18:02:06ffe8ce66bc7beb18632fbb73ac1c2f5c5e6748e883aa7c4f82804a4b77a59562elf  
2020-12-01 18:02:0646bceac5fe9ac518316f418c0ac1117ad2089f843da5d3bb66bee67344b90079elf  
2020-12-01 18:02:06b59574cd53507019900d6cedf556e4a8db0e35da0674ee9bc8a7b07469a4539eelf  
2020-12-01 18:02:04fcd9261fa64e0e92b9c612ee3e22a2690bd8f1f499c9d86b0fca163801b5ae99elf  
2020-12-01 18:02:043380775ea5771620de56999b08318d170efbff8d2cc925a2420a07964d2373fdelf  
2020-12-01 18:02:04ce2df823ebe5f1480a339333338e1c11affb7c1ebc305540e1fe6292eec96244elf  
2020-12-01 18:02:04577da5d89ab0d7a283dcc48f9f386652d0e9ed77c4d5f2211f5ff2dfc30aafa4elf  
2020-12-01 18:02:04fb91b4a396a7fff6585d2bf0cada527c13e3f754de4eccb19dc9ecc8cf049bc8elf  
2020-12-01 18:02:0453d36e31ad71be62100a80235027e929947b6b140459d3cf7d41f29399f7c3c7elf  
2020-12-01 18:02:0480de58a10423aed5c1e591791c59767c9d0eb41a97f9ac9e4aaba5ba9970df35elf  
2020-12-01 18:02:04938edb14f525e413b35dde26873253e40d2e278909faac982511e2cc6c2b6f62elf  
2020-12-01 18:02:04a2c6f3317eb375c52a2fa653157270bfdf5b917771d8198d117fb13f745408e3elf  
2020-11-29 17:20:40a3cb382625fec50f10d8fa026ce9e8aa54aacc5e263cee48f82aa5e28a4e4dadelf  
2020-11-29 17:20:3997761d102672a9d49f1e0e452877e66c521d025c5afe921310d5e2370714d20celf  
2020-11-29 17:20:38d317bab8212ec6b6c2d742fc9384ba5cb75ec48bc399384ec6e8822cecd58080elf  
2020-11-29 17:20:36a48147a71d54ee5446a648c5868d70a97eec872b243f44a09bbaf6bf79af9242elf  
2020-11-29 17:20:24eb14a3e01afd6003c03e02417e3dd0f6d66293e258dc070595e6b3cc47359e92elf  
2020-11-29 17:20:18472a6a76b62f375ee2025647a620374c7fc6b8739a643f82feffae7d9329356felf  
2020-11-29 17:20:160f83cf5021a81296d422613f9f33029f11f4178fe5eb62493b30c4adf1375141elf  
2020-11-29 17:20:1494415e2ebde3d094504c07690c5c1218600240d726044ffa63b13d5ed6f6d957elf  
2020-11-29 17:20:13392144b82e7bd3affd425dbefcce9997fa91996940d81dbce9b222e023915857elf  
2020-11-29 17:20:11d0931e30dca490f2595b6a255080d47ea309121d2de2528948d7affa9a2cd535elf  
2020-11-29 17:20:100cd2cfcaf7f70c5685b3f90abb09c343aab17de53fdd1df05d309eb8fdb8b79delf  
2020-11-29 17:20:088e0c11469267770d3f1904add318a71f1663d98acf9133db429815014c29aec5elf  
2020-11-29 17:20:069c51d9a8ddd48aecd3fcc30288caed9385b21930e383209bd80c96e0c737e085elf