URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 176.65.139.161
Firstseen:2026-05-01 14:52:05 UTC
Total malware sites :15
Online malware sites :14 (93%)
Offline Malware sites :1 (7%)
Newest active malware site :2026-05-02 15:40:25 UTC
Oldest active malware site :2026-05-02 15:39:15 UTC (Age: 2 days, 3 hours, 33 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-01 14:52:07 176.65.139.161SBL679274AS214472 STORMINDUSTRIES- LUyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-02 15:40:25http://176.65.139.161/manji.mpslOnline176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:40:22http://176.65.139.161/manji.m68kOnline176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:40:22http://176.65.139.161/manji.mipsOnline176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:40:16http://176.65.139.161/manji.ppcOnline176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:40:14http://176.65.139.161/manji.i686Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.ppc440Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.arm6Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.x86Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.arm7Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.arm5Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.i486Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.arm4Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.sh4Online176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-02 15:39:15http://176.65.139.161/manji.spcOnline176-65-139-161 elf mirai ext ua-wget BlinkzSec
2026-05-01 14:52:07http://176.65.139.161/kamru.shOfflinescript geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-02 15:40:25919d9db8d72737fccfa0f17f8eb56742a65c5e5cec4d1c19bb069b3c3d87779celfMirai
2026-05-02 15:40:21662b2bfea7b4cd7139eb0bf2c4781627de604d5c3ec0d674d2530b63e8ae3798elfMirai
2026-05-02 15:40:21eb14b2bbde777cbc61c7ed9cac30eaa54394f5e08cd9142071ab96f829ec01b0elfMirai
2026-05-02 15:40:166a7d0c50dfa8efb79a43e25a94c58f52205c9ca90d8df05d5a19e4069af8da9felfMirai
2026-05-02 15:40:147ff1509b01fd88eb09fc5425c2630041d1fed0a2ac6ada059651573ead3482b0elfMirai
2026-05-02 15:39:151c0e1b3dd158a38c63ea48fe60ab5e393549a4198469de0d1492e32ce2a18e7aelfMirai
2026-05-02 15:39:158e6e35d70f33b4a2500f5586746fc29b4b0d258033dec94e124fdfe14768e948elfMirai
2026-05-02 15:39:1579ee6da78b120dee0450a253ade0600b3ef1b0e29304f216e402fddfebcbcdbbelfMirai
2026-05-02 15:39:15667eaa7342acf5aa891c6a547a375ee926c1eebd1e6840549ed140fb4f30874delfMirai
2026-05-02 15:39:157221afe7676f43d7fea393f23347e75aacd98b70700ca9eb15e0d2099fcfd8eeelfMirai
2026-05-02 15:39:158b96d1cd639abd25c05a3136302fea01282a877d461f32d981a88f430124abbfelfMirai
2026-05-02 15:39:15ca42cb004c85d431cf92b6cf855194354bbbf794e24e19ecfaaa58b962764803elfMirai
2026-05-02 15:39:1459789120077ae85862a4ff4c017c06c1bd33d30561f551bf84f7efd8d40ba755elfMirai
2026-05-02 15:39:14adb81bbaeed04a9b0026d6521d6639452a83af1b0286ea129da7f5edae1dcb99elfMirai
2026-05-01 18:27:46b7d8c602e19344b7ed2cb6c13e3d4a8a2c3ec4d2106227e73cbe8916a3201f29sh 
2026-05-01 14:52:06530d9ed2b62d1bfc5fdb39938e26d059cddfb65e0f7ae6df4ab971a15829e63csh