URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 152.42.179.215
Firstseen:2025-07-14 14:41:05 UTC
Total malware sites :24
Online malware sites :0 (0%)
Offline Malware sites :24 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-14 14:41:08 152.42.179.215Not listedAS14061 DIGITALOCEAN-ASN- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-07-17 04:53:16http://152.42.179.215:5566/mipselOfflineelf mips mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:16http://152.42.179.215:5566/arcOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:15http://152.42.179.215:5566/armv5lOfflineelf gafgyt ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:15http://152.42.179.215:5566/mipsOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:14http://152.42.179.215:5566/armv6lOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:13http://152.42.179.215:5566/x86_64Offlineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:13http://152.42.179.215:5566/armv4lOfflineelf gafgyt ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:13http://152.42.179.215:5566/powerpcOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:13http://152.42.179.215:5566/sh4Offlineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:12http://152.42.179.215:5566/armv7lOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:11http://152.42.179.215:5566/m68kOfflineelf mirai ext ua-wget xqtsmvjnxuurv
2025-07-17 04:53:07http://152.42.179.215:5566/cat.shOfflinesh ua-wget xqtsmvjnxuurv
2025-07-14 14:42:06http://152.42.179.215/cat.shOfflinecensys opendir sh ua-wget NDA0E
2025-07-14 14:41:15http://152.42.179.215/armv6lOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:15http://152.42.179.215/armv4lOfflinecensys elf gafgyt ext opendir ua-wget NDA0E
2025-07-14 14:41:15http://152.42.179.215/sh4Offlinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:15http://152.42.179.215/armv7lOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:14http://152.42.179.215/mipselOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:10http://152.42.179.215/m68kOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:09http://152.42.179.215/x86_64Offlinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:09http://152.42.179.215/armv5lOfflinecensys elf gafgyt ext opendir ua-wget NDA0E
2025-07-14 14:41:09http://152.42.179.215/mipsOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:09http://152.42.179.215/arcOfflinecensys elf mirai ext opendir ua-wget NDA0E
2025-07-14 14:41:08http://152.42.179.215/powerpcOfflinecensys elf mirai ext opendir ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-07-17 04:53:16b4ec0a24a1a7f3cf122ed7e4fd26dfcef76b7ee584cb9f76dbe74328e3818e21elfMirai
2025-07-17 04:53:16d990739a9c0201352f00c430ecb52ad4687e79b6e15cdeea9b3117050136840felfMirai
2025-07-17 04:53:15fc8f7317fbd6cb15a91eaf56b68b0c950ad9869402e3355f65a648ab32cf4518elfGafgyt
2025-07-17 04:53:15a0a73ee1bcdd616747ff61c349588e22aa8077272538f53e2c67ec6a2f59559felfMirai
2025-07-17 04:53:146e425c183e177ee950d8148c6d316b6f9060175d68a48e9b545cb93df230efc7elfMirai
2025-07-17 04:53:13f2e1f4d7bb16bd9e6f4eb92a3cc7fb680cedfd6942ba1ec67d62408faea08d90elfMirai
2025-07-17 04:53:138657b9817f6837c7b959988ccc81417dba448785fbcb68764a3ec433375147b3elfGafgyt
2025-07-17 04:53:139d5863348f4b5d2f877151d365bc192a1ff4df74c330b5c7afea2034ce6eb053elfMirai
2025-07-17 04:53:13f75cf6f032a015fd51dee0e002a2ea73c09e494c6e9605499daccd1842dcdaf1elfMirai
2025-07-17 04:53:12bad258d045c59c0f2ccc8f7c1284e7bc9527768057833232579d9d0e8c309926elfMirai
2025-07-17 04:53:114825a4b2532117cf3e0eac787945eb4fd40137c263589a8e7d8ae8ab00cfd28delfMirai
2025-07-17 04:53:078406757ba3346f7b91b72e9524acd7e1e44a21834021165603b624c2765e2fdcsh 
2025-07-14 14:42:068406757ba3346f7b91b72e9524acd7e1e44a21834021165603b624c2765e2fdcsh 
2025-07-14 14:41:156e425c183e177ee950d8148c6d316b6f9060175d68a48e9b545cb93df230efc7elfMirai
2025-07-14 14:41:158657b9817f6837c7b959988ccc81417dba448785fbcb68764a3ec433375147b3elfGafgyt
2025-07-14 14:41:15f75cf6f032a015fd51dee0e002a2ea73c09e494c6e9605499daccd1842dcdaf1elfMirai
2025-07-14 14:41:15bad258d045c59c0f2ccc8f7c1284e7bc9527768057833232579d9d0e8c309926elfMirai
2025-07-14 14:41:14b4ec0a24a1a7f3cf122ed7e4fd26dfcef76b7ee584cb9f76dbe74328e3818e21elfMirai
2025-07-14 14:41:104825a4b2532117cf3e0eac787945eb4fd40137c263589a8e7d8ae8ab00cfd28delfMirai
2025-07-14 14:41:09f2e1f4d7bb16bd9e6f4eb92a3cc7fb680cedfd6942ba1ec67d62408faea08d90elfMirai
2025-07-14 14:41:09fc8f7317fbd6cb15a91eaf56b68b0c950ad9869402e3355f65a648ab32cf4518elfGafgyt
2025-07-14 14:41:09a0a73ee1bcdd616747ff61c349588e22aa8077272538f53e2c67ec6a2f59559felfMirai
2025-07-14 14:41:089d5863348f4b5d2f877151d365bc192a1ff4df74c330b5c7afea2034ce6eb053elfMirai
2025-07-14 14:41:08d990739a9c0201352f00c430ecb52ad4687e79b6e15cdeea9b3117050136840felfMirai