URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tomwallner.icu
Domain registrar:NICENIC -
Domain registration date:2023-11-17 06:00:02 UTC
Abuse complaint sent to registrar: Yes (2023-11-25 04:31:02 UTC to support{at}nicenic[dot]net)
Domain registry:Shortdot -
Abuse complaint sent to registry: Yes (2023-11-25 04:31:02 UTC to abuse{at}nic[dot]icu)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-11-25 04:28:04 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-25 06:53:18 212.193.56.133325171.simplecloud.ruNot listedAS201848 TRADERSOFT- RUno
2023-11-25 04:28:36 185.185.69.247Not listedAS35278 SPRINTHOST- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-11-25 04:28:36http://tomwallner.icu/syncUpd.exeOffline32 exe MarsStealer Stealc zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-11-28 10:18:5505d71b72700168dae4fb32608a7fddda752450ec505a66427d3ea754ee558d73exe  
2023-11-28 10:02:27378627cc0c16e69b6a38a07a10f28309e72dfba6934281ebe3097f3de6f98befexe MarsStealer
2023-11-28 09:49:59fbfad384a7eee6d993c8ccf9319d877a1d66a3a800555ccdb1415b1ecf5561ceexe  
2023-11-28 08:04:4952d40579de934fa6bcafcc0ff3aa5d91b0a8e0e8315a5dd21bc0a8b2acb353bbexe Stealc
2023-11-28 06:06:507e6bc3e9eca1a4e48a99f4515625e80b315d2f59c67aded93552fa1ac53d9d3eexe Stealc
2023-11-28 05:07:0417f07c0ac4ab2b76c83dc99dffef121491d75e3d20924f4e13cec2911a89b2d7exe Stealc
2023-11-28 00:39:33739b987b631ce71d9f7bd5d14e6b90e455eee530afb1a9da99e5db6e46e0b22dexe MarsStealer
2023-11-27 20:39:25dfd340417fd62fd125a02adfc8a1eb2710560cbaeb40fe739b604a61d0492eefexe Stealc
2023-11-27 19:47:24276a494257d6f269ff804855f69819a077a5b803723006b97c878050f3ecfe37exe MarsStealer
2023-11-27 19:18:11be38b4ae39481469300313d29ff7cdc5119a8715f6c3d761edb3f6268a25ace6exe MarsStealer
2023-11-27 16:29:187746ef4e83466edadcdf488a92a9f402ebb0a85699193faa820cdd8c31b3a46fexe MarsStealer
2023-11-27 15:23:44281fc0a9e923fe6437cd859129f2a6ccd1b800003def3969084ec95eb2d1ca2cexe MarsStealer
2023-11-27 13:41:23afbc810d7c0e77e8324975689d6e9546b5ac7e2eab6bb244ef594383f4fb79dbexeStealc
2023-11-27 11:08:425fbf551bb9c2fe4824e7bf70b3b68c9b969cf14d8e0e618db9ddebbe9d3b9c7cexeStealc
2023-11-27 07:47:46090004e81007ac852dacb163e2109086e471ef1902c2454fbf9e287e6ba6829fexeStealc
2023-11-27 06:11:411241aa835ecac8a2d31c40436a38f757a5a213b790684edb42ee1235b46a9749exeStealc
2023-11-27 04:17:524f9965ffa4c2eb107233153ec81642cf068f1d1061704081f0c5487e95968307exeStealc
2023-11-26 23:00:494253324c8e70c2ce1d4c4f7013b1f7d454b8f9ad6d8daf3142ce150e01093aeaexeStealc
2023-11-26 22:29:2678a2bba2b5340b176b67cb9c6d9fd1c984a4bb4d0ee6a041256b4dc733acefb2exeStealc
2023-11-26 17:26:05201129beba2cd919f5684d365e95a83cdeb5e1b7f407ae63a3bad3d0f6e6bd42exeStealc
2023-11-26 14:25:301aaae4cf30e28d2bfea3d35f7f88f5258aa6fbb7bc87bb662bbb0aae1f7f7fa9exe MarsStealer
2023-11-26 14:00:5306efb9f04aa620775acf82f5f8cbe09c6d3d35e3740c8bc7068f2a72b2923b3eexeStealc
2023-11-26 13:22:02112e5f2e5c1643920242b652487945e7fba17ff98e864dbad5b2535045d940c5exeStealc
2023-11-26 12:17:57d0b64df818cec79d629e729f725cbf4ed071da6fe4b3b040240b2e044868896cexeStealc
2023-11-26 09:35:09a4c64edea682e7e5c213f735a270db10a71a8f4c9a0bfe6b2a93f778e327bf88exeStealc
2023-11-26 07:46:208f2cbb17f7a036d63725c23212b14b4cb4ba51bbd5ff171ee36975c85381c33fexe Stealc
2023-11-26 07:17:44847d0b4575b0c99e33d08eb0622faf2b784d20df07ae60f7ee50f6237b44464fexe  
2023-11-25 22:51:206fe632c42fffa6b2bd4c0393f7fecc7a79d4e20c70ecdd6f1bf5c8da0dfece56exe MarsStealer
2023-11-25 22:38:43484da5003c2635306e7fed565b9b0f53186ccaf21888b4050ab5ee3116c09c4eexeStealc
2023-11-25 20:01:567a1c58744437d69cec8e0e632c386b9ae03a9ca53419a11da75c66ad69473a4aexe MarsStealer
2023-11-25 18:01:54ac52a59fc88a6ec3cb00e0ef0e20cfe8df14a85b46b306e246fcc7a8c4212227exe Stealc
2023-11-25 17:52:45f5ca6082e4209cf1d051a97d5783202dd0547f91d14d745728c103178b413723exe Stealc
2023-11-25 15:15:131004e1aa6d023b53325d5d8f9aeec8d7e13476b8e3810ea1584641a134da5619exeStealc
2023-11-25 13:03:07b85db01b8bdfbd02ff27e9a69b7da8030ffaba034ee275fea247c1b1289ad0cbexe MarsStealer
2023-11-25 12:27:077729e5b688bdac64950e3245bcc28e027c34a4528070cc014b8e3fc061ae56b9exeStealc
2023-11-25 09:20:08fc640eccc218468f096e9d977b7d2c94bf56877089b64d4f3f56ed894dda0cdfexeStealc
2023-11-25 08:11:3549b9bed8c75d31a496808f435537937b8d7a08e86456ceae55a59c88a660a3bfexeStealc
2023-11-25 04:37:146b35b46a864d2ee03b85ba71e118fd1f3bf9e820fcc5d6aa5a7b745d75472009exeStealc