URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 165.154.224.116
Firstseen:2025-02-05 08:29:03 UTC
Total malware sites :36
Online malware sites :0 (0%)
Offline Malware sites :36 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-02-05 08:29:04 165.154.224.116SBL636305AS142002 SCLOUDPTELTD-AS- HKyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-03-02 17:49:05http://165.154.224.116/jackmymipselOfflineelf gafgyt ext NDA0E
2025-03-02 17:49:05http://165.154.224.116/jackmyi586Offlineelf gafgyt ext NDA0E
2025-03-02 17:49:05http://165.154.224.116/jackmyi686Offlineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmyarmv4Offlineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmym86kOfflineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmysparcOfflineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmymipsOfflineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmypowerpcOfflineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmysh4Offlineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmyx86Offlineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmyarmv6Offlineelf gafgyt ext NDA0E
2025-03-02 17:48:06http://165.154.224.116/jackmyarmv5Offlineelf gafgyt ext NDA0E
2025-02-21 09:16:19http://165.154.224.116/skid.arm4Offlineelf mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:19http://165.154.224.116/skid.mpslOfflineelf mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:18http://165.154.224.116/skid.mipsOfflineelf mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:15http://165.154.224.116/skid.ppcOfflineelf gafgyt ext mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:12http://165.154.224.116/skid.arm5Offlineelf gafgyt ext mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:11http://165.154.224.116/skid.x86Offlineelf gafgyt ext mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:10http://165.154.224.116/skid.sparcOfflineelf gafgyt ext mirai ext ua-wget DaveLikesMalwre
2025-02-21 09:16:06http://165.154.224.116/skid.arm6Offlineelf mirai ext ua-wget DaveLikesMalwre
2025-02-21 07:02:06http://165.154.224.116/skid.shOfflinescript geenensp
2025-02-16 15:49:33http://165.154.224.116/bins/Owari.arm6Offlinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:23http://165.154.224.116/bins/Owari.spcOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:23http://165.154.224.116/bins/Owari.armOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:23http://165.154.224.116/bins/Owari.ppcOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:23http://165.154.224.116/bins/Owari.mpslOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:20http://165.154.224.116/bins/Owari.arm7Offlinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:19http://165.154.224.116/bins/Owari.m68kOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:17http://165.154.224.116/bins/Owari.arm5Offlinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:16http://165.154.224.116/bins/Owari.mipsOfflinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:16http://165.154.224.116/bins/Owari.x86Offlinecensys elf mirai ext opendir NDA0E
2025-02-16 15:49:16http://165.154.224.116/bins/Owari.sh4Offlinecensys elf mirai ext opendir NDA0E
2025-02-16 15:48:04http://165.154.224.116/sensi.shOfflinecensys opendir sh NDA0E
2025-02-09 12:45:09http://165.154.224.116/Jackmyass.zipOfflineelf mirai ext opendir zip DaveLikesMalwre
2025-02-09 12:42:04http://165.154.224.116/bins.shOfflinegafgyt ext mirai ext opendir sh DaveLikesMalwre
2025-02-05 08:29:04http://165.154.224.116/wget.shOfflinemirai ext lontze7

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-03-02 17:49:051af158829c1eaab13fd4f10719306e635e2f1bd391cf09129f2a786ae94cf124elfGafgyt
2025-03-02 17:49:05f419e1c3058d8eb73c33ed7506430774255e85e4c3766bc10cd7e4c308d93d1aelfGafgyt
2025-03-02 17:49:058beb1d3622421d2c846b56b18de9b0f9911afdd1478a22a0a76f05601b692bf2elfGafgyt
2025-03-02 17:48:0640284b65ec9515750764e5204c683dd0177c0ee763224798ad7664f06f464fc1elfGafgyt
2025-03-02 17:48:06810c86165b9b97b45fe988a23542c9b054aae36ad81f1509e63f099aebb600bfelfGafgyt
2025-03-02 17:48:066a0a99ff300be41c905234593ed3abb69b8bb5c9c48449612187036d33c367a0elfGafgyt
2025-03-02 17:48:06352e1c3b2ebfa0d1c3140fbd957d698f71b89200ba6898123a72728c2e481336elfGafgyt
2025-03-02 17:48:060637b641eeb53e69c022b8c24890098b28755b6fa251919a25aa74f82ae4bd17elfGafgyt
2025-03-02 17:48:0694cab9304474a7cb096a2dc91744d562bed82433a4c82be0536bcb46c256cf40elfGafgyt
2025-03-02 17:48:063190f29d355a28b7edee22e65f44bcfba988b9f54771ba34b2d13515164a927delfGafgyt
2025-03-02 17:48:066706d418fc5d93bb87007fc500775335691064abcd69c1dad48cc9e1afd7548celfGafgyt
2025-03-02 17:48:0601fa8871a3c3d8098439db84559377f66898b1d530082d3605e25daa18fdc96celfGafgyt
2025-02-27 00:18:180340ac49b3ffa9b62521f5d0ab751b8b1196e816d644317e7ae7a6166b08eb08shGafgyt
2025-02-26 11:54:35c9cc6bf5a454305d19186e093f1acc4d96ad18580ccc7b7f8c45b53270631068sh 
2025-02-21 09:16:19419e4be21ad59d1e9ce6da2fba63ffb58b20b2d6ffdc2fbff0da5fd2c7df6231elfMirai
2025-02-21 09:16:19989c3cb9bfcbaca0fb1bd52156c201689585e8ddd0e5faafadef66a3d663baa9elfMirai
2025-02-21 09:16:18499c7673bad0592c6204d04eb65ace35d4495681f565b9c9b2af71c3995d70fcelfMirai
2025-02-21 09:16:15545dad63e74a82d2326dc60cf8967f81361432cb7af52758dc649fb28ea357a6elfGafgyt
2025-02-21 09:16:12a4d09679395bfa4cea5ec85160873b636c082d81c13fba19b3888ba341da61a5elfGafgyt
2025-02-21 09:16:1132656786e92d881fa66d660f13e0d43b28ec5c789c65569b2b6053007617256belfGafgyt
2025-02-21 09:16:1076c2be36f26cb0008ac8732c24bf2975d3f96d685cf9128bc899dfba8e9fd30belfGafgyt
2025-02-21 09:16:060fc4ee58bb0d24f0d01d173a669b4e5a9822ef6aca4247d86473e86e63cbddacelfMirai
2025-02-21 07:02:05cdd30d23c1ec48ab87f7e187e107a102926951fce15f555c196921bf94f6875csh 
2025-02-16 15:50:296ece3ff2c410193782e1673288e57be5209e82f95b6f48116e4731cf4c3314ddelfMirai
2025-02-16 15:49:231f415e998ff8387b9763695a8b6ba34d7cab09905abc1b17fce68aaec35bbe26elfMirai
2025-02-16 15:49:23036887384c4ccc99be5ecd93f4bfbdff7ae89e2befe8a6e0da4002f4b6b4daa0elfMirai
2025-02-16 15:49:23a1f2873a9c82219a84dc51930a7db8f2f119d84097f7035885eb7d84cb3ff56delfMirai
2025-02-16 15:49:239e513a071372e653297deaa0814430f3c92b713c28aa668d2e8144d7f0f7949belfMirai
2025-02-16 15:49:209cf181521c21f943284aa1d942839da09bd3354fbc651aa2e4d639f82b12dc33elfMirai
2025-02-16 15:49:19f6be0f2195ee96a5899bc2934980c1925354dbe7cb672d703a982548bd064999elfMirai
2025-02-16 15:49:17534c115b2e19fe425cf5ede924464055ab174cf70a53df204c885075e2f029c5elfMirai
2025-02-16 15:49:164b06a477e6e42b9d1901a55f446f7808048d0d7bb4ea5e5208db91e90a134a0belfMirai
2025-02-16 15:49:160c2b16594a7bd23d9e47decd61a495f0f1ee897d04337fe34d4d7ab630040101elfMirai
2025-02-16 15:49:166e1f0e9f4180def4d3734e5760f4fc9fb5a1230315fbbd72d8a361903f9b8d98elfMirai
2025-02-09 12:45:09e364e875d53565ab11e549e8c37ab7ae17c2d3327a56a6b94465a0c9606731bezip  
2025-02-09 12:42:0427a3f1fe57a508b7cf3dfde7f35725744529b7c29a38e1128682a11c04c69aadshGafgyt