URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: galandskiyher3.com
Domain registrar:Atak Domain -
Domain registration date:2023-05-19 07:07:30 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-09-29 08:45:08 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-29 08:45:12 194.169.175.127Not listedAS20911 NETSURF-AS-BG- BGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-09-29 08:45:12http://galandskiyher3.com/downloads/toolspub1.exeOfflineCoinMiner exe Smoke Loader ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-10-02 09:59:24aa9e84cfbe9bb8f6b81ce3db26648a5dd798ec2394a1d6f3bfce17765b6c9d2bexe Smoke Loader
2023-10-02 07:24:40c3c7addfe6175dc666da05d7e71938bd8bee3792949b7ed1a2596e58b2be0cebexe Smoke Loader
2023-10-02 06:35:35a40d4457d550bbaab1f72aace2149aefc4780aaf4e395baba36c3b86290a1b42exe  
2023-10-02 04:59:50a92c372f4872b46bbcc3f424e797ffbe43a21b6daa22a11bcd8f78438f93d77cexe Smoke Loader
2023-10-01 23:12:34cbb4eaf995ff09fa96d90399a588aed6ee6ef438605978a2eb8526dbcaa40117exe Smoke Loader
2023-10-01 17:27:1595052f928e82c01eb65d6ef3ae7e9a881fb389f699bfc4dd2681ee8848069653exe Smoke Loader
2023-10-01 12:50:29a7a1677c4dc1816e0c879c62a50682c118f6378f03cbc4fb8533835ae49b755eexe Smoke Loader
2023-10-01 11:55:45f2a7f43b8e263f8f9da82dc6e4b1014e332bd3e0f7bc2f731465da44cc210b45exe Smoke Loader
2023-10-01 09:28:417cff73fa0e45f4ab58eb7a360bdc0512142684ee1f87c7e10ae9644fbe7a10dfexe  
2023-10-01 01:07:15327f382841f988a10856ab2c7f7b91050cb5dfede51fdc623c74acc1cc8591adexe Smoke Loader
2023-09-30 23:32:2968ff9b60aed08a6321cf1ec656697e4cba4f306d4f0db9b4c370907928baac50exe Smoke Loader
2023-09-30 22:42:07c0133458026163de63be5df6d8897832974ecc7a29a317d46c19efba44be6a14exe  
2023-09-30 22:16:07ba746cd2f6d1c603879c4847113c0cfd2c1c8ac11b0702f52f33348f8b426e78exe Smoke Loader
2023-09-30 21:51:058f4138f048c56d9f60a0753d1afabff5ce1ba8873eefea51361b7f16cbcd23dfexe Smoke Loader
2023-09-30 21:01:429fc39b348ab9aaf547dfd09517062cc625ef6d71cd62269f772d722b602adbdeexe Smoke Loader
2023-09-30 18:31:08198444327256eb7858323e1c616322d16f2b46bb20c51b48ace63742a5135da1exe CoinMiner
2023-09-30 16:31:15a6ef9d17ec98d77ce64e3e9a439ed970fe2f777086b07e6f11041e0258090642exe Smoke Loader
2023-09-30 14:47:4146b664d207108fe5dbb65c3b979d5ef66ab1f93289d195a2398a43e472220923exe Smoke Loader
2023-09-30 12:54:43137e72d914510095c340bcee697445a0f497ca5c91313b857611249fc266f2d8exe Smoke Loader
2023-09-30 08:57:327343546645035ff452c714dd809647ff062d5f6e8f216ff13e92c9b02907c6acexe Smoke Loader
2023-09-30 08:02:4379c14af09bb4c4c3fa4152cca65ab3b14951571e1933af884a1725862d7a1a37exe Smoke Loader
2023-09-30 05:05:21418a73c5f2a2303f44cb1816c417f712c2f1bf4e48b5e363a3edd8f3269311b1exe Smoke Loader
2023-09-30 02:39:5982531f8bfc703bdac635684b3446aa011bc320b4542683499163ab644e2dfef7exe Smoke Loader
2023-09-29 23:53:02f0645d5ccc22e5927e7fa1611e8e9d09a0367a936fdcc1eff12019c1654304d4exe Smoke Loader
2023-09-29 19:55:27a01f9fdd3aaa4fa6f216afe8d917560590c2bf75585b12bfaf499355ad0ae657exe Smoke Loader
2023-09-29 19:15:2386ec6a796c7066abf8adbf70d6d41894812052e5c1d0150db9a79fd8e9e0e210exe Smoke Loader
2023-09-29 15:29:08d853d86e34e244b40e90535845fa379f8485a594db190a0ff472257f439746d5exe Smoke Loader
2023-09-29 12:39:420d6d48eb967e5e3328ac8bd80dbd0797169feeafff9ec742a60d8690a146f02bexeSmoke Loader
2023-09-29 09:29:12634121b7349c0b191a9f3c581e4811ba888ce556f8f8658308170f32ca7c1761exeSmoke Loader
2023-09-29 08:45:12e0433701a10074ced44e298ba724524c93d9c4389172d082c6f32084c3ef57d1exe Smoke Loader