URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 158.94.210.195
Firstseen:2026-02-08 10:05:05 UTC
Total malware sites :32
Online malware sites :27 (84%)
Offline Malware sites :5 (16%)
Newest active malware site :2026-02-08 16:47:10 UTC
Oldest active malware site :2026-02-08 10:05:18 UTC (Age: 14 hours, 30 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-02-08 10:05:18 158.94.210.195SBL686264AS202412 OMEGATECH-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-02-08 18:01:14http://158.94.210.195/bins/sora.i468Offlineelf ua-wget abuse_ch
2026-02-08 18:01:14http://158.94.210.195/bins/sora.arm4Offlineelf ua-wget abuse_ch
2026-02-08 18:01:14http://158.94.210.195/bins/sora.ppc440fpOfflineelf ua-wget abuse_ch
2026-02-08 16:47:10http://158.94.210.195/realtekOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:47:10http://158.94.210.195/binOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:47:10http://158.94.210.195/payOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:19http://158.94.210.195/hnapOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/zteOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/gpon443Onlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/sora.shOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/pulseOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/lgOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/thinkphpOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/huaweiOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/jawsOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/awsOfflinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:18http://158.94.210.195/zyxelOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:17http://158.94.210.195/goaheadOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 16:46:17http://158.94.210.195/yarnOnlinemirai ext sh ua-wget BlinkzSec
2026-02-08 10:06:23http://158.94.210.195/bins/sora.i686Offlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:06:20http://158.94.210.195/bins/sora.arm6Onlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:19http://158.94.210.195/bins/sora.sh4Onlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.arm7Onlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.mpslOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.spcOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.m68kOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.ppcOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.armOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.x86Onlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.arm5Onlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.mipsOnlineelf mirai ext ua-wget ClearlyNotB
2026-02-08 10:05:18http://158.94.210.195/bins/sora.x86_64Onlineelf mirai ext ua-wget ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-02-09 00:29:471b79fffd04abb8fc80bfdbe6fcd18d54a08103cbc1d2be2be5c0fa21c9f6ddb5elf 
2026-02-09 00:20:42723141d159f1c15d4a2ad22050e46f10fdbde63a666d8e4badaf09054bdfa5e0elfMirai
2026-02-09 00:19:083a2b49c91728113e0e48ab09a67afad0eb79f46ecf1ef6a2cef5efdb43046734elfMirai
2026-02-09 00:18:504df635e4868cdfa338a59a65846ff53e2550baad7ca1ccbb7601a1b010434499elfMirai
2026-02-09 00:05:488f2389f85adaf6ddcbd96333e0e311509b3a46e5a0e117b874d7f917360dace0elfMirai
2026-02-08 19:32:34f71af0c04e48969d957c40b4d969ab6f3c8f5a62c03200476d307078d2291135elfMirai
2026-02-08 19:29:45ca4bc53027168ab2d4729c60e831c4391b3180ff78817870d86c467b43c0b871elfMirai
2026-02-08 19:26:529ed3d57eea43c1ea7a88c8e46ba71176eab171e28521c26c5a8e5496b64dc429elfMirai
2026-02-08 19:11:47dd2c4fe7a4f215ff4c9e8a8153285e99567a90fda86d654f1e75808c087aca79elfMirai
2026-02-08 19:08:496836176744c4e34d89369adde6de90be16edc086fe5fae6f11cbe464ce069d00elfMirai
2026-02-08 16:47:1047d237f1c2ad93a523eecbc56b713c305bf96941ebdf94d0643c54ddc421e30cshMirai
2026-02-08 16:47:10acf5cf671ac77737d9c62430cd9e0c19779aa6ed6cf52cf72cafd217a22ccdc1shMirai
2026-02-08 16:47:10acf5cf671ac77737d9c62430cd9e0c19779aa6ed6cf52cf72cafd217a22ccdc1shMirai
2026-02-08 16:46:19c09aa72d6896817ded85003d6741b26ab3b325b0a54f575efe26be983b7874c4shMirai
2026-02-08 16:46:1882dd751218634bf77aab81ae285a801e7842bc9ea44e5c9285f158a7420cf854shMirai
2026-02-08 16:46:1877724279d46695ca979728770a3fd506bf3d3ed1a68161e3b959c79de044376ashMirai
2026-02-08 16:46:18302ba0bcaff824c20e1c08e08881e910829194bffe73e69e5f0f28e06146c075shMirai
2026-02-08 16:46:18acf5cf671ac77737d9c62430cd9e0c19779aa6ed6cf52cf72cafd217a22ccdc1shMirai
2026-02-08 16:46:1880cf925bd4f03b06764e32f51d9478a349f1053ee65042659f0b04e6d0a653b4shMirai
2026-02-08 16:46:188c577fa00743f9da931ae7b5d5bc5e4579eb5cdae9a45072bc77fe879fb3d4dashMirai
2026-02-08 16:46:184122ddc6ca9b9ce83bf29a2f98a946fb2115faa1f097f665b833fc7aecd912aashMirai
2026-02-08 16:46:18775a32a456bd818cee2b21495e177f3e7f90044241018c948bf2493d6a4539bfshMirai
2026-02-08 16:46:17acf5cf671ac77737d9c62430cd9e0c19779aa6ed6cf52cf72cafd217a22ccdc1shMirai
2026-02-08 16:46:17dfb29329607e0c1f0aca8c45b3f12669234c9f88a2f6404c5d333a7cf73abcf7shMirai
2026-02-08 16:46:178deb25a6fffc878eb8442e9132cba35ceb104a4baf54e42098c633e79ad80a16shMirai
2026-02-08 16:46:17d6ff2fe9f33279b0d595d2bcdbb86ece447a03e8ce558e9a3b7dc12272ba5f6fshMirai
2026-02-08 10:06:23ee98b5fd6ee15fe38e33baf14028d87592a86b3efa666d411bc283214b34dac2elfMirai
2026-02-08 10:06:203a9659465e555c2e7d6ded5e96b14301a7a1fadc539ea6a32383db5250cd5778elfMirai
2026-02-08 10:05:197754516998ed27fc3572da4127e51c381f0ceba586e0b32da846c14fd604cb00elfMirai
2026-02-08 10:05:1832de63a0ea3a16d33fa478b59d9ac4ca503eabff97a35c5a4d9fa6e841479c28elfMirai
2026-02-08 10:05:18163a4b5be84e43243e6ccf8c9244e24e04c3429308a563ab20423f2970c65c33elfMirai
2026-02-08 10:05:18824247c83d959b72bf2287af03ea5a96c496ff7eb077596e4d363e3e04994cedelfMirai
2026-02-08 10:05:187dcbe81f748cc63db9d293c2dedebb86a9fd2299d9bd50043437c5a75107a64belfMirai
2026-02-08 10:05:1896a33a462b4026fa48a0bf747fa37915c04d4bce7f9052effe1767559bf6fa24elfMirai
2026-02-08 10:05:1839c58becb00768a1fc5b97703ad0f6e9277d266d50d6dfa182e6a028af5ec64aelfMirai
2026-02-08 10:05:18725e13862af947197344fcb7ab345488a74762b936e841237df7f433fcbc31d8elfMirai
2026-02-08 10:05:185408fbe38b20d2a90df7f4da3f41224a7769ea9ed5ca00442c344afb64cc8306elfMirai
2026-02-08 10:05:18a4eec9df7699817f8b3ee6241d863b49c1c7bf727b51ea777962b6c5c42ddf99elfMirai
2026-02-08 10:05:17dec39ef87e6860891a50f3184cb34a0d6b9f80400091f181c68cefb2cdb3e4a4elfMirai