URLhaus Database

You are currently viewing the URLhaus database entry for http://216.107.139.197/WSW0 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3813818
URL: http://216.107.139.197/WSW0
URL Status:flame Online (spreading malware for 2 months, 27 days, 17 hours, 13 minutes)
Host: 216.107.139.197
Date added:2026-04-07 19:43:11 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-04-07 19:44:11 UTC to abuse{at}ipxo[dot]com,report{at}abuseradar[dot]com)
Tags:sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-04WSW0sh 8cbe62af6851946174acb28c1d7da9170985d32aa1b42abe4dbe231d5144156bn/a
2026-07-04WSW0sh 2bd0a82af6732a32911224e6392b234b61d6485875cea8d848a88a012591256an/a
2026-07-03WSW0sh 5f21261f94d4c0503a146fccdc0bb8f92d49c379917424b6dace70848a76e784n/a
2026-07-03WSW0sh e031de762e54fe17c46c8a1936eba20787368ad79f046d762542ca487d7ec3d2n/a
2026-07-02WSW0sh add9ff4b6e73395939d91d9956fb79aae3ccf42522e8b5954d20a59f7f70ca5an/a
2026-07-02WSW0sh bccabc4c81f9fba1e816e1e2dc52dcf4c226c19716c28bf4a2efc73d04bd8a71n/a
2026-07-02WSW0sh 5380bc5893d043bbbc7680d359e80ae7464b729fd128d313a56327a245c8e0b7n/a
2026-07-02WSW0sh 871e5390aa140633638e9a377ed9c3bb38adbe51152bd363d809716aa581cd47n/a
2026-06-30WSW0sh 2d9945bba8207d419dca32e5c2ecc821f3eedd5c48bc1ebfe754133c56a17828n/a
2026-06-30WSW0sh 61b7c0fce00635d5f464047012896695dc5e1cb68e944c48322cea54a6037dfdn/a
2026-06-29WSW0sh 9a1f56ab6819f79431bbe96f4a7b3ea8b565ef5680f4c46f44a57782f609a73dn/a
2026-06-29WSW0sh 5e83283481ef1ed7877d832ae3ad53d836a3309b96d8ade1e56dd1726cd6fbe0n/a
2026-06-28WSW0sh 3f4d7beb1a530f390ee842f54cbea4802a4ff26366a6cc4c5de673879b1e437bn/a
2026-06-28WSW0sh d85b4e434178bce4b223c5e9416115b9b54d932d95334d75f0e5251b40bd3fb6n/a
2026-06-28WSW0sh cd85f90ee6a46a3e2dcca1233164f584ff018ff552b12a9e8f20eaaf761a29a1n/a
2026-06-27WSW0unknown 3a2f3acab22dcf366f9ca8b9657aaa5bb84abbf76d4fadb0003bf7cb7af48d92n/a 
2026-06-27WSW0sh bca3e5ca3be21f841fb6f5e1bd8c0bac3850a68cdd517059783978f879b5e669n/a
2026-06-26WSW0sh f9911fdac209474def68080e7f6dea341390bf9fcbf72bcf73f7d111a3b328c3n/a
2026-06-24WSW0sh 76ffbf5212a8157868af8191045876b74c1640dec4fec22d27fe28b797a2b97dn/a
2026-06-22WSW0sh 7a14e4c99413fb0873b9497a7e2981335514434a9c1b922c9c48ce969be11c4cn/a
2026-06-21WSW0sh 41a9d327fd31b4b512dd4b916db3e0458b5819303d940e56005be135f9872ee3n/a
2026-06-20WSW0sh 162a0cbd0423f4bfc77c9034caf05292492f121c5bd9a71a739ce16dff0235edn/a
2026-06-19WSW0sh a4fa89459c397c5b38cbfebab5bcd9506fb42e26ac43f85c84153a3be074a206n/a
2026-06-18WSW0sh ab28afe98dc7637499f6bd254e6202ff8f5797e595e4699ee7ba2632ba0b291dn/a
2026-06-18WSW0sh 91896c01b2749a736056c313bb852dad081180b01914e1cda575a644daa8238cn/a
2026-06-17WSW0sh d9f8e0d3cac3ba5e8b4244d21093a3a69578fd55b2b4213b5296c2f9ffa44018n/a
2026-06-17WSW0sh f5856ea37a4c461ea5b8a0d177fc8e657cc002b6bd750d3984aa8e3cb2b6df45n/a
2026-06-17WSW0sh 545c9c7d09697456f13ffb527180f9a00aea7ee53279c6d9d9b76eae32e06384n/a
2026-06-16WSW0sh c73399fceb767ad85b497a8a102dac689a5fdcf0cf614b863e4d08904f63fca8n/a
2026-06-13WSW0sh 20cefb1a22a2b1f9f33bf9e04478491d1e7577dd2d17e331e0dddfecd88b0e48n/a
2026-06-10WSW0sh 5b8c3be74d3fd23450b9f1fbf74fd3b0211d1df0c743f04d3961fc72c27ce7cbn/a
2026-05-31WSW0sh fc05f3d67d42376c732be5fb967a80eaf235995a45cd508354306b57f080697dn/a
2026-05-30WSW0sh a34e0339723013e09e963ca5e6b23b1dc490f8ad5493f66606dfe131abb26a1an/a
2026-05-24WSW0sh 02e448fd1c311391a9b3f50cc7789534e46491e1946d9bd2ce7117b4aed575e0n/a
2026-05-20WSW0sh afc858fd5fb70e930b5272ad910a503403e90dd97265d38772d426e450b373d8n/a
2026-05-12WSW0sh a464fc665f3c380c70d724b8dd20fcfaec823a40dde38314ca845410891241c1n/a
2026-04-07WSW0sh 776b383cdfb704ff81b0db67e14d0d65db9cf107db70ce4023aac9efd5320d0an/a