URLhaus Database

You are currently viewing the URLhaus database entry for http://195.178.136.19/1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3710936
URL: http://195.178.136.19/1
URL Status:flame Online (spreading malware for 2 months, 7 days, 6 hours, 47 minutes)
Host: 195.178.136.19
Date added:2025-11-18 05:01:06 UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2025-11-18 05:02:16 UTC to abuse{at}uran[dot]ua)
Tags:dropped-by-Phorpiex

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-061unknown b0a330e89e8ee3c959e5aa264762e155babc41156f3fbaf0db05feca2915ac31n/a 
2025-12-041unknown c16de87f223c03005573504ef6142e44606e07a41e74e7701309ec2ad590f5aen/a 
2025-11-271unknown 4d1466837799695c0ff351397bef4dad859d942ba589d61eabadf89913ef8dafn/a 
2025-11-181unknown 659d075ec66659a4db5bee1e1c8264cdfb637679df4064a7e81ae16f53012afcVirustotal results 0.00%