URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 141.11.62.4
Firstseen:2025-07-31 05:00:04 UTC
Total malware sites :28
Online malware sites :0 (0%)
Offline Malware sites :28 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-31 05:00:05 141.11.62.4Not listedAS214481 wczapkowicz-as- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-08-10 12:42:35http://141.11.62.4/mpslOfflineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/arm5Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/ppcOfflineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/sh4Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/m68kOfflineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/spcOfflineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/x86_64Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/i586Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:35http://141.11.62.4/arm6Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-10 12:42:32http://141.11.62.4/arm7Offlineelf geofenced GorillaBotnet ua-wget USA botnetkiller
2025-08-09 21:01:03http://141.11.62.4/x86OfflineMozi ext threatquery
2025-08-09 03:01:04http://141.11.62.4/mipsOfflineMozi ext threatquery
2025-08-08 09:04:04http://141.11.62.4/armOfflineMozi ext threatquery
2025-08-02 07:43:04http://141.11.62.4/x86_34.nnOfflineelf geofenced ua-wget USA abuse_ch
2025-08-01 22:00:07http://141.11.62.4/jaws.shOfflinecensys mirai ext sh ua-wget NDA0E
2025-08-01 21:59:08http://141.11.62.4/lol.shOfflinecensys mirai ext sh ua-wget NDA0E
2025-07-31 05:01:07http://141.11.62.4/m68k.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:01:02http://141.11.62.4/arm.nnOfflinearm elf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:12http://141.11.62.4/x86_64.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:12http://141.11.62.4/mipsel.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:09http://141.11.62.4/mips.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:09http://141.11.62.4/sh4.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:09http://141.11.62.4/x86_32.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:06http://141.11.62.4/sparc.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:05http://141.11.62.4/powerpc.nnOfflineelf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:05http://141.11.62.4/arm5.nnOfflinearm elf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:05http://141.11.62.4/arm6.nnOfflinearm elf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller
2025-07-31 05:00:05http://141.11.62.4/arm7.nnOfflinearm elf geofenced GorillaBotnet mirai ext ua-wget USA botnetkiller

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-10 05:36:34874a06388ef6532595962a7d25418b60da0559560a5f296a00ca3fc7846718bfshMirai
2025-08-04 06:26:17a80a827d266f4920137e2c5028b7d360beafff47a5a6341f93f2032ee44c0869shMirai
2025-08-01 22:00:0717b651a167bd77290314f5d828731fc46ba03f460e4b1485244e0b9556225e62shMirai
2025-08-01 21:59:08db32c415d5bb72cbafdf8f149d2c24565304a0e54221321266192ab94e47c55eshMirai
2025-08-01 06:01:49fbe1aaa1037ddceae279745c7ec4435ca2a343e78fa766113e40332b26f15625elfMirai
2025-07-31 05:09:424316a20821a1eba161a7ab18b4a3efa763310cf5e91dff83fb61cbbfba7c5fa6elfMirai
2025-07-31 05:09:30bcaf40809284280b10b48a7b78bb9fbb04f8a0f1341ecddaa18ed286def8f26eelfMirai
2025-07-31 05:09:2768a2d3abee5f7b71c5428ec744712d36c9a24f3a323fad4c4bb3b8cea2993b5aelfMirai
2025-07-31 05:09:127fa61d96545d9723646d109fa0303ea8c97adb12f411f3b44f49e178b7922d74elfMirai
2025-07-31 05:09:09e367518f1343b4196c8e32207ea7fee2ed374fc6cf556768e76365372b2f6af5elfMirai
2025-07-31 05:09:01f1590dbb7f242d7a8212a1108ced0b2feff991ba958b2109e826fa35b6f6fe70elfMirai
2025-07-31 05:01:0286a77643ac33e490cf49512d223e3c9b167337875ea727751cb1560d1a1460e0elfMirai
2025-07-31 05:00:121cc472923e86a7f5753c1289f99df9d37ab5395a3c1b51a41e1f63d8d2dbabe4elfMirai
2025-07-31 05:00:1284e2dcd4f9377d758a3e0ad2f26aff33a990c9967de82beda592e44cca0183ddelfMirai
2025-07-31 05:00:09b2ad71184d7ccc265f7d4f9ba366a5c173eab687e6b52615d409a42dac540288elfMirai
2025-07-31 05:00:091dbe006076a725cf351e32e38688e035b7c3b7f87a3e15937b0bda163b0812c9elfMirai
2025-07-31 05:00:09642e42d38ece15de9f1db5ea1c6690c14fec6e8d7d90f58759402f7197d4d403elfMirai