URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 64.7.199.151
Firstseen:2026-05-18 07:53:05 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-18 07:53:07 64.7.199.151Not listedAS399629 BLNWX- ROyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-18 07:54:07http://64.7.199.151:8081/x86_64Offlinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/sh4Offlinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/armv7lOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/powerpcOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/mipselOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/serverOffline burger
2026-05-18 07:53:11http://64.7.199.151:8081/m68kOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/mipsOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/i686Offlinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/armv5lOfflinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/i586Offlinegafgyt ext burger
2026-05-18 07:53:11http://64.7.199.151:8081/armv6lOfflinegafgyt ext burger
2026-05-18 07:53:10http://64.7.199.151:8081/i486Offlinegafgyt ext burger
2026-05-18 07:53:10http://64.7.199.151:8081/sparcOfflinegafgyt ext burger
2026-05-18 07:53:10http://64.7.199.151:8081/armv4lOfflinegafgyt ext burger
2026-05-18 07:53:07http://64.7.199.151:8081/deploy-client-v2.shOffline burger

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-18 07:54:06db175e6e4de27d93bd2c49a61b41e92c9ec3e41e2c652d5fe5ebaf3031a9b839elfGafgyt
2026-05-18 07:53:115ecdb735ed978c5f220af4d2520b46f2a6f6902429dd5bb3a93ae9098168661eelfGafgyt
2026-05-18 07:53:11da9387058dfdaeda6517959334ec6e8e11ff1d77401d447ec78a7397834aa21eelfGafgyt
2026-05-18 07:53:11936a9efab6070da781915b9b293567a5fdf9a10d4e95d415cab5fd9352588435elf 
2026-05-18 07:53:112ba0efc355a22ed586133e4eadf6f2736f3df6bf38798ebca47f75bdbba067aeelfGafgyt
2026-05-18 07:53:117ea3e22bf3f1c64e391c17cddb890551bb45c74fa62a4247ea57895dd955f1a2elfGafgyt
2026-05-18 07:53:11a1eb2a4c7598f230a637cd7105e71ad84063b11165625e266757f9de850b9e3felfGafgyt
2026-05-18 07:53:11de4c7a518bc5659071baf32c5ad00ba4d2579f9254ffbc36c3d5e1c279e6c16belfGafgyt
2026-05-18 07:53:114ba6cd287d3c2ffb440f6aaef946a35bb1686a54644d7714c9f0990cca9794c5elfGafgyt
2026-05-18 07:53:111d435214fd76b8dbe26f1fc3159f69615b038c8a022733f4457f129e258e9db9elfGafgyt
2026-05-18 07:53:10617b103fe31c8d53b7b64bd14c7daaf3b40d09d90658794a144c1217d5fe31fcelfGafgyt
2026-05-18 07:53:1069becc116756292000ea90cea79a79be398c2b063c1638125563dbc61f409ff9elfGafgyt
2026-05-18 07:53:1083d5ca61a8be05075cdaa48cff27cb698288a56642a5dd36e1917e98234c8c3aelfGafgyt
2026-05-18 07:53:106707cf875e125fde56fd68733f4484ca9f4905b9ef569f35e75fa0eeeaf1f780elfGafgyt
2026-05-18 07:53:101c04c19289765ac1ed3f231e18866fd3c8fd81b277c6840156af8a09ca82f06celfGafgyt