URLhaus Database

You are currently viewing the URLhaus database entry for http://188.132.232.81/p which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3856423
URL: http://188.132.232.81/p
URL Status:flame Online (spreading malware for 3 days, 12 hours, 37 minutes)
Host: 188.132.232.81
Date added:2026-05-31 12:17:14 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-06-02 01:25:14 UTC to info{at}sunucun[dot]com[dot]tr)
Tags:sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-03psh ef42b30b9b8eb300a1ea698fe205f494a9017ddf07ee984aad6763db9ce64c83n/a
2026-06-03psh fb52958eb7a003540263b299b0efc77ce3263fc090f666ec00a832fa9a546e38n/a
2026-06-03psh 2bc71a7b91df434f8997e729d60448c0f405b63cd1a1e3ef84c63c30284f9653n/a
2026-06-03psh 4a703ea539520212ceb479a73e82e5398589b40d8bcbe7e8ad86f02327ce8555n/a
2026-06-03psh 7681e29bcb8b6f448cf99cff2c25ae3fa76cde3e67bd36681280ea333fa20636n/a
2026-06-02psh f7d98e451b7acb40adea1b84e5df78431e8bf128a7d48dcb5222e4150dd2e805n/a
2026-06-02psh 068adfbbe938f346f821e1422a9f533a7bb542bcda433f4807a1a1cd44e39b9dn/a
2026-06-02psh 8561c900bf144fcdf512eefa9cdb8c7c22b1ff4007707a242c1d3f1b332cd558n/a