URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 154.213.190.241
Firstseen:2024-12-24 18:56:03 UTC
Total malware sites :24
Online malware sites :0 (0%)
Offline Malware sites :24 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-12-24 18:56:05 154.213.190.241Not listedAS54801 ZILLION-NETWORK- JPyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-01-06 23:24:21http://154.213.190.241/main_ppcOfflineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:20http://154.213.190.241/main_x86_64Offlineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:19http://154.213.190.241/main_sh4Offlineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:19http://154.213.190.241/main_mpslOfflineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:14http://154.213.190.241/main_m68kOfflineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:13http://154.213.190.241/main_arm5Offlineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:13http://154.213.190.241/main_armOfflineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:13http://154.213.190.241/main_arm6Offlineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:13http://154.213.190.241/main_mipsOfflineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:12http://154.213.190.241/main_x86Offlineelf mirai ext ua-wget ClearlyNotB
2025-01-06 23:24:12http://154.213.190.241/main_arm7Offlineelf mirai ext ua-wget ClearlyNotB
2024-12-26 07:20:08http://154.213.190.241/c.shOfflinemirai ext sh NDA0E
2024-12-26 07:20:08http://154.213.190.241/w.shOfflinemirai ext sh NDA0E
2024-12-24 18:59:05http://154.213.190.241/lmaoWTF/loligang.mipsOfflineelf mirai ext tolisec
2024-12-24 18:59:05http://154.213.190.241/lmaoWTF/loligang.sh4Offlineelf mirai ext tolisec
2024-12-24 18:59:05http://154.213.190.241/lmaoWTF/loligang.arm7Offlineelf mirai ext tolisec
2024-12-24 18:58:05http://154.213.190.241/lmaoWTF/loligang.x86Offlineelf mirai ext tolisec
2024-12-24 18:58:05http://154.213.190.241/lmaoWTF/loligang.arm6Offlineelf mirai ext tolisec
2024-12-24 18:58:05http://154.213.190.241/lmaoWTF/loligang.mpslOfflineelf mirai ext tolisec
2024-12-24 18:57:05http://154.213.190.241/lmaoWTF/loligang.arm5Offlineelf mirai ext tolisec
2024-12-24 18:56:05http://154.213.190.241/lmaoWTF/loligang.spcOfflineelf mirai ext tolisec
2024-12-24 18:56:05http://154.213.190.241/lmaoWTF/loligang.ppcOfflineelf mirai ext tolisec
2024-12-24 18:56:05http://154.213.190.241/lmaoWTF/loligang.m68kOfflineelf mirai ext tolisec
2024-12-24 18:56:05http://154.213.190.241/lmaoWTF/loligang.armOfflineelf mirai ext tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-01-06 23:24:21d924f01dbade7db2522a5fe633c58332db991b2afe2ce452f7d022d86aa71330elfMirai
2025-01-06 23:24:193c128c038c590da4340ebeb820263d35d94e64048904ef163ace3ad2b6113e2delfMirai
2025-01-06 23:24:197b69d7bde22e59facdc40a851d613a9894384173c05799c79e28586c45e793d2elfMirai
2025-01-06 23:24:18dc26d4dccb412c0413975d83df2b85b5452d7add623751474e7d3a2599d13031elfMirai
2025-01-06 23:24:14358d2d0e1f38afb2fdd1f0c42fcd0934d66a919a64edc2d0b501b2c1c4fb87a9elfMirai
2025-01-06 23:24:13fe73968ca9b16bca94a1e92048a4111a5a656926bd162acfd25cff5537f664a4elfMirai
2025-01-06 23:24:12012b566e1b0b78309ba7ddaa510c3d6050972aac3e75df7b7b2ca6b6806308b8elfMirai
2025-01-06 23:24:12e70f021ab1e3b3964a4f37ffd32891c1d613e00110a76fd3ba2c46577402413delfMirai
2025-01-06 23:24:1236294b4f93241367d71c5189d4849e26fb23d72096e9ca2924e72532054a2fdfelfMirai
2025-01-06 23:24:12b314520fb598da105e05e9c9d502fe0b0e0e78e569e9efef32e3fb01a68e2ccfelfMirai
2025-01-06 23:24:11ef2e57ce096326af889cc8e26be567480fe1fa0a0c7685605fed1e2d3a563c3delfMirai
2024-12-26 07:20:08faec6092fe6041087e23edc4560474ed1361624873d6284bc49641f743870c87shMirai
2024-12-26 07:20:08c7d18d0b3c801da47bd8d23e715cad68b43858ba3c5b137e73869a9a2ba9b93fshMirai
2024-12-24 18:59:0571d3a997c01de5190eda846e095db2c2a49514502c0ff1a552794bf33d11d19belfMirai
2024-12-24 18:59:0500341737153d84428e9c418eba3afbe1b682f7f35cba431f2166ba403de9af3aelfMirai
2024-12-24 18:59:054f994fdc0a89d2277f7fe89448c036337ca33cfb66b9e2d5058e0e37f9d2bda6elfMirai
2024-12-24 18:58:05de9d9fd7681fc41b0d746e329ddeae164410684f58105696ae0f1515684c02f8elfMirai
2024-12-24 18:58:05fb762dc466481fcf19ee9698f1b627e9b221d8877a99e07f6856a813c2f6bceaelfMirai
2024-12-24 18:58:052e6870fb45436c54e458c56af1340d96ad8f61c3226b4de21e7cce3901577195elfMirai
2024-12-24 18:57:05a560655939c4ccdf5f4c29fa53548d9209784062b9ad203c9f0693ca48c6b964elfMirai
2024-12-24 18:56:055f18265ba96b1d55399624190fb7622892bae4704c85255dc00b8e09718d0c4eelfMirai
2024-12-24 18:56:05567485fc8b49fbadd83eddf0748b78c1aa55c061470c3dc4584898fb16005cbdelfMirai
2024-12-24 18:56:05c8bac3a2e507a45cedb6c8c445784e73f2eafbf6a493c993c075ff300aa4a644elfMirai
2024-12-24 18:56:055bc6d389c73199f180528757a9d70b3cb6d71d132efa94c19719eb6928caa369elfMirai