URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 194.38.22.120
Firstseen:2025-02-20 14:56:02 UTC
Total malware sites :81
Online malware sites :0 (0%)
Offline Malware sites :81 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-02-20 14:56:04 194.38.22.120gcakayt.ntup.networkNot listedAS48693 NTSERVICE-AS- UAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-02-20 15:18:03http://194.38.22.120/mt.shOfflinegeofenced kinsing ext sh ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/bg.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/kn.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/ni.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/tr.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/py.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/cf.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/cp.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/p.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/pa.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/vb.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/lf.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/ws.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/xx.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/k.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/c.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/sc.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/gi.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/unk.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/ap.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/m.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/f.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/a.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/tf.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/an.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/md.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/do.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/lh.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/spr.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/kinsing_aarch64Offlineelf geofenced kinsing ext ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/gl.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/mo.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/vm.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/al.shOfflinegeofenced sh ua-wget ukr NDA0E
2025-02-20 15:18:03http://194.38.22.120/hb.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:18:02http://194.38.22.120/s.shOfflineCoinMiner geofenced sh ua-wget ukr NDA0E
2025-02-20 15:18:02http://194.38.22.120/mi.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:37http://194.38.22.120/xmrig.exeOfflineCoinMiner exe geofenced ua-wget ukr xmrig NDA0E
2025-02-20 15:17:32http://194.38.22.120/r.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/libsystem.soOfflineelf geofenced kinsing ext ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/w.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/tc.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/sp.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ge.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ku.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/scg.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/cpu.shOfflinegeofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/forOfflineelf geofenced ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/wb.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/lr.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/rm.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/tm.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ce.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/o.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/pg.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/d.shOfflineCoinMiner geofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/j.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/h.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ae.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/rv.shOfflinegeofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/sup.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/se.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ph.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/kinsingOfflineelf geofenced kinsing ext ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/n.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/kinsing2Offlineelf geofenced kinsing ext ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/sm.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/sa.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/t.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/cpr.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/vml.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/wpf.shOfflineCoinMiner geofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ex.shOfflineCoinMiner geofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ci.shOfflinegeofenced sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/ki.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/acb.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/cb.shOfflinegeofenced kinsing ext sh ua-wget ukr NDA0E
2025-02-20 15:17:32http://194.38.22.120/st.shOfflineCoinMiner geofenced sh ua-wget ukr NDA0E
2025-02-20 15:09:32http://194.38.22.120/curl-aarch64Offlineelf geofenced ua-wget ukr abuse_ch
2025-02-20 15:09:32http://194.38.22.120/curl-amd64Offlineelf geofenced kinsing ext ukr abuse_ch
2025-02-20 14:56:04http://194.38.22.120/pg2.shOfflineCoinMiner coinmining geofenced nspps shellscript ua-wget ukr lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-02-23 18:42:301b070b5e6467c4f251e4eb8bd42a095cdbc13c6c9c31ca6359e825972159c245shCoinMiner
2025-02-23 18:42:29c67153f754687fbc9472a3c3f209a7dd567d95c0ce866ed367a4a58091b7488fshKinsing
2025-02-23 18:42:26c38c21120d8c17688f9aeb2af5bdafb6b75e1d2673b025b720e50232f888808aelfKinsing
2025-02-23 18:42:24c6fbd6896d162a12d9c900056781eb82f44649945808b7b009646b5397bcf6bfelfKinsing
2025-02-23 18:42:078c4a05e63a083c05af96e08fcb3176ad22b4412d678dbe4b23464ff2658b4aa2shKinsing
2025-02-23 18:42:060edf7789b066e608703132735e56c1e56c026773e7a063cec70c7793a8a57ed8shKinsing
2025-02-23 18:42:0515bd60e32b443ed8f5df60097fbfd19fb71989f95f77447f8cb8c40bd31311a1shCoinMiner
2025-02-23 18:42:04d086a222af2a7db6f5b8e09fddef0fbc47b8adec462550c6cad677f26a2a16e1shKinsing
2025-02-23 18:42:0358464df91d5b6c4e2e92a526b8b1c18a8e60eb925073ebccff6d59853c5715b8shKinsing
2025-02-23 18:42:029b8054ff5d45fe145efaeaeba316822d0c27cc0a1b19fa300eb8877c55eb4a9eshKinsing
2025-02-23 18:42:0162994f7f87a470a824f22bfe26a752cba8ebf4b1a6ca8a4e4fc6ae649801e6e4shKinsing
2025-02-23 18:42:00fecd30cd7802f8ac4137a2d0659b3052411a99d809a5aefb48f8b821905100f3sh  
2025-02-23 18:41:597d4dd6e33a566948387deed0d15056bce04ac55b2d12d47533c92ee1e8481933shKinsing
2025-02-23 18:41:58920b45fe56fbbc1127151544bf2703a7d8ff5bee422f768eb004607cc90c4219shKinsing
2025-02-23 18:41:561e7ebf2d952e79e0724b539e12ea5e8fee12189cc811760784a745dc4bd1a1b6shKinsing
2025-02-23 18:41:55fec37d7849c5c3fde83c8fe9f3e8c12141f931a288a8fabdc34d4a9d15c9fcbashKinsing
2025-02-23 18:41:542657b9a60ae94edb29e8d5914afa71b290907edde8c65e9be7a06ac5c52dd8abshKinsing
2025-02-23 18:41:53154d33e07f94d0e1445d7f805866ad81d72a8ca2ba2632c5b43f6bdeceb5ca67shKinsing
2025-02-23 18:41:5276d6321fc2da5222a00d8b255f399d74d9399d596729281e82a3db219bf55a68shKinsing
2025-02-23 18:41:515f5549322948ad8304a04fc96fb21ca48f87962a1499303f493a86b38bd7c68cshKinsing
2025-02-23 18:41:503a4a73b5ba3c3b7b287890d97fe331f5381b4c52622f08fe132187f2484d905fshKinsing
2025-02-23 18:41:49e7dcd6fe4c55cebba453f06418bd09f6e9aac74c6e1d63a687a843207d581fa6shKinsing
2025-02-23 18:41:49495e305f0e401ae4d43db137361948f8b92c9dde314548484786f1731d74a311shKinsing
2025-02-23 18:41:48e525d578fffb8f146951d8387ad37c2d60c61f2311141a571a51572208cf7885shKinsing
2025-02-23 18:41:475afcd6676866ec08eb69891ac9e85119df2253230400f36453dd77c12ab172cfshKinsing
2025-02-23 18:41:46b8304758ba0ef14fcf89a16a4009fc61cbf6528c96f7712fd2151d6ce56e8b10shKinsing
2025-02-23 18:41:457a3b462caa85ccfaa810a182c527bb75511a455f81d37e7f7ced6162d7cf2414shKinsing
2025-02-23 18:41:4464a3043d718a48c1474d9584bad242a70067b9c79f7ccc0f7f8f1ee5b987ff6dshKinsing
2025-02-23 18:41:436500a2f596046773ff769e86ec030374b461433ddb0a650dfed4667e797f2b94shKinsing
2025-02-23 18:41:427f65f1d3cc38298c0b27c6f307b51a578619a16f12d3e8c662c3b7e290d08ebeshKinsing
2025-02-23 18:41:4141514012cc5d28caacffb293409e932670a9104ba31971d8838e0f228e9d93d8shKinsing
2025-02-23 18:41:4003e4f04531cb41a4a13e29255ff3e647697f9aaea9b0e83d21d62f354940c881shKinsing
2025-02-23 18:41:39a14be34769e1dda95da96a7f47b1c98037ba213d0442a2b2373e340197e43fd2shKinsing
2025-02-23 18:41:39789a62dbdf36198f26d3f0b453e31f0f055067f121a06962099622221541a2a0shKinsing
2025-02-23 18:41:384612796f8d7909642bac5713c3aa1be3cc5725131455ca95fa52546884f15e2ashKinsing
2025-02-23 18:41:37f818b0e322efac17b2274ead17ff2a4195800f4c6a5617227fe75488495ff322shKinsing
2025-02-23 18:41:354c4e76e7c553a9f419c43bb0b8157a9455d90c2c3890ccf6e6e120c5d8796128shKinsing
2025-02-23 18:41:344f8b6bd4bd56285d2039e605ec990fc86faf000eb369d92bf8c7568c7b745395shKinsing
2025-02-23 18:41:33e1ecb846011ce98ad8e3efe2aa9d511e1c08787f15810abd456792ed9e98818fshKinsing
2025-02-23 18:41:31114c13aa2907527e1f08819d143a67c23ee030dc680bb0a18a9d1de95de7a6c9shKinsing
2025-02-23 18:41:3035ebb29b633366f3b62034fe03bdabf604f328295c418c1831641da828752aa3shKinsing
2025-02-23 18:41:29cbe53e9e5185edfe9da69ceed715e384858fe1c2d451a6869787ed7f41f79941shKinsing
2025-02-23 18:41:28aa9b110527e62a224d858d9cee7a4545fde2394d32d5adeaefeb1d9408d973e0shKinsing
2025-02-23 18:41:26c768d8ef99e6dedb4cf87c61556e97105bc6ffbc346b0ed0cbc03fe8846b415ashKinsing
2025-02-23 18:41:2554dece0858f32afce3071451352fc9f2bfb58d4b6bc406919f5447366cfc5d78shKinsing
2025-02-23 18:41:232913825773f26186101310a872706b0a98a7d6347134b24cf0009fedebeb6748shKinsing
2025-02-23 18:41:21eb179a70cbc9d4c84a5abce9128ed505113b1059c9ef4008a30ed84fd4a3cc9ashKinsing
2025-02-23 18:41:201163e38d65cae6cf2ef1fc9f09a7d662508d9aa53d48f3b7cd32f42df4b168acshKinsing
2025-02-23 18:41:19e7034295394dde8666895014f06c108ec40fca9d9d16c99748ac1488bb42231dshKinsing
2025-02-23 18:41:18787e2c94e6d9ce5ec01f5cbe9ee2518431eca8523155526d6dc85934c9c5787celfKinsing
2025-02-23 18:41:162ddd5ef13511e2f74af72c4ad4dbc5967c2f853b992fe4fed1df0939b045ee4dshKinsing
2025-02-23 18:41:1425d19152363063eb2b1976b416452e63ad21c205f727837d38d17001831f17f3elf 
2025-02-23 18:41:13697059366f473ac32a9d77d08e864c3027a6133960c2512db2f458d5a7a47d94shKinsing
2025-02-23 18:41:122a7acc97265ab5d3fb4e42ddfa7815d7e2ad06084c5444422aa41e8b8bde9137shKinsing
2025-02-23 18:41:11ca33dab18381c947257bcf5269bb818b733c890e5af6d0048aa5da629545ef14shKinsing
2025-02-23 18:41:103946cfee065f6dbf774207eba855006e9bdad00b5b5d06d274bc2a8e012be6bcshKinsing
2025-02-23 18:41:08c6ff3a097ab737ce4430fb07453ca117c717a3156c0e4e2adfa56f98ba6d2945shKinsing
2025-02-23 18:41:07c7ee98310542e2ba9bfa0a3da8c6a0b85edee811c0f10db9021074e420fba0c4shKinsing
2025-02-23 18:41:068f8d86c69236df10dbfe2536af307afa46317aef0fe4b544f0fb3122b59b24d5shKinsing
2025-02-23 18:41:043f57fceadeb097c028a7d7fa5e917da65bb9174245cdfde720629c6c495166feshKinsing
2025-02-23 18:41:02d5b2d30c7a94cd8d14c44162e61d593fd328d7460cf6895399601bb84aebf71cshKinsing
2025-02-23 18:41:01fda4e028befffaf446b8bc494723729887ba79161d492d0ee06f0c0be66cfcd0shKinsing
2025-02-23 18:40:592566fe535a531152d9a441ddc6ddff3643882afe1ec120970337eabfacf6d056shKinsing
2025-02-23 18:40:4005e7db3e51edb28600e3e3e28988a6186087ad6e6ffb7d3e38921b12e76d1ca1shKinsing
2025-02-23 18:40:395fec9ec232c0d0d4798ca31063d6e1b0ee52ec2246ff5a3a665d3fd1ec06ce80shCoinMiner
2025-02-23 18:40:37ece8ca0be686a214bd04f395150a06cc5b6312275daed8aab74bbe96d45bd253shKinsing
2025-02-23 18:40:3411103c8122ea302803c0be9eb7c750a615ac7248ee9b1d97b4a1c15c9b5af87eshCoinMiner
2025-02-23 18:40:31350b239fa38c1bb84bed3acddf4485ae2d4dcb03b0d7c7e7f9445cbf22ab2225shKinsing
2025-02-23 18:40:30b4d78fabe2943745667e6d6d4b1094a68a6889b1c767ce84c8dffa49f3ffb293shKinsing
2025-02-23 18:40:2824d92e90b4dc2dc6391e29be2a3e2395a4b93013baf0312b4fdda1adbd8b3753shKinsing
2025-02-23 18:40:27bbc997c2447527747f7785423b83f9def89a3270aa8c3c1fd8f2a2f38e13bf87shCoinMiner
2025-02-23 18:40:253e17d3a355cc7dc00d953d65cffbc54e07d2bebbdf5be2d0f1031240c7798d08elf  
2025-02-23 18:36:50ec1213394717932b0062136ce96d42092e9120da1e32cce7ff355de67c7b6988shKinsing
2025-02-23 13:28:526b9e23cb675be370a18a0c4482dc566be28920d4f1cd8ba6b4527f80acf978d3elfKinsing
2025-02-23 13:28:086c7dccc2dd1f572db4ef853c81f88ac291f87025ff8c8f94a7d020b5730a7fa6shKinsing
2025-02-23 13:27:40787e2c94e6d9ce5ec01f5cbe9ee2518431eca8523155526d6dc85934c9c5787celfKinsing
2025-02-20 15:17:375e5b5171a95955ecb0fa8f9f1ba66f313165044cc1978a447673c0ac17859170exeCoinMiner
2025-02-20 14:56:0437a57c2532cf79ae7c2c6ac0d99df8f51732562e27d9807457a86f9e34bbf3f6shCoinMiner