URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 142.132.181.168
Firstseen:2025-08-14 08:40:05 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-14 08:40:12 142.132.181.168static.168.181.132.142.clients.your-server.deNot listedAS24940 HETZNER-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-08-16 13:51:38http://142.132.181.168/systemcl/arcOfflineelf ua-wget abuse_ch
2025-08-14 14:52:20http://142.132.181.168/test.shOfflineDEU geofenced mirai ext sh ua-wget BlinkzSec
2025-08-14 08:40:25http://142.132.181.168/systemcl/armOfflinearm elf geofenced mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:14http://142.132.181.168/systemcl/x86_64Offlinearc elf geofenced mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/spcOfflineelf geofenced mirai ext sparc ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/sh4Offlineelf geofenced mirai ext SuperH ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/mpslOfflineelf geofenced mips mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/m68kOfflineelf geofenced m68k mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/x86Offlineelf geofenced mirai ext ua-wget USA x86 botnetkiller
2025-08-14 08:40:13http://142.132.181.168/w.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/arm6Offlinearm elf geofenced mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/arm5Offlinearm elf geofenced mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/wget.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/arm7Offlinearm elf geofenced mirai ext ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/systemcl/ppcOfflineelf geofenced mirai ext PowerPC ua-wget USA botnetkiller
2025-08-14 08:40:13http://142.132.181.168/c.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-14 08:40:12http://142.132.181.168/systemcl/mipsOfflineelf geofenced mips mirai ext ua-wget USA botnetkiller

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-14 14:56:120b315ad36875afeaf0dbff836b77a30e8ee5c70ffbc0764a6401005bab25c6f5shMirai
2025-08-14 08:40:25a2812bf91c1836b0749615f8c92f49b055ed1152a0cfcb03cffb4473388ae1f9elfMirai
2025-08-14 08:40:1447a0fa2b9aa3ebdb48324d5ad43903187a528176193716db81991191b3d3b230elfMirai
2025-08-14 08:40:131745a1dc09e108e719186017f4d6f10e1835aa4ba3f74b50b8394e3268c66524elfMirai
2025-08-14 08:40:13450e016bf853294e42f81a18c3de0a47fa376c8116be1ecb349404afb9702266shMirai
2025-08-14 08:40:13467ca3ecdb388a31f9687f3f93134ae992fbfbe2936cfbd700c3d198b3b65ecbelfMirai
2025-08-14 08:40:1318104b6d2fb295f9eead6d523eec2b7e5fe710a02ad85ba30a971eb99b5ca8edshMirai
2025-08-14 08:40:132b4e44a8a37c63ce0a2c007bb22d903ae9d13b643b6b556f4d15199926cdd54celfMirai
2025-08-14 08:40:132e9b4bb064c078485eab38389da45cfecd1f865d77cd5c199ae3c2fe195daf72elfMirai
2025-08-14 08:40:1319abfca0200531ee5ddc2dd7bc4454af84d9ffe0ef2e12cd2a54fc828ebdc659elfMirai
2025-08-14 08:40:137365564e3fc5bc60caa91eb8b6b87a6d8da423389be87134899fcd0caaeb3242elfMirai
2025-08-14 08:40:13b5d5a320320766751e9a1e31bc6ff850196e0c3f0b5baee15eee600b8a3cdae2elfMirai
2025-08-14 08:40:12ad42066092b60784e1579fb3742cf3a41450dacc13b254e9c3a0c5b84aaf0db4elfMirai
2025-08-14 08:40:1255e61e45a049b566b402cfee016231b19c53db0a96d71b07cbbe1523206bdafashMirai
2025-08-14 08:40:12abfd19ac36a02a8d3552a65a6e023b7499af427f7ea558cbc5064b8475bd955eelfMirai
2025-08-14 08:40:127a4627901da5e02ceacaf688cc103b4944a3cf75b4f1f4316ee638893eaa4104elfMirai