URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 176.65.143.172
Firstseen:2025-03-29 15:48:03 UTC
Total malware sites :24
Online malware sites :0 (0%)
Offline Malware sites :24 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-04-05 14:08:05http://176.65.143.172/i-5.8-6.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:08:05http://176.65.143.172/a-r.m-7.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:08:05http://176.65.143.172/a-r.m-6.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:08:04http://176.65.143.172/s-h.4-.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/a-r.m-5.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/x-3.2-.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/p-p.c-.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/m-i.p-s.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/m-p.s-l.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/m-6.8-k.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-04-05 14:07:05http://176.65.143.172/x-8.6-.SakuraOfflineelf gafgyt ext ua-wget ClearlyNotB
2025-03-29 15:48:04http://176.65.143.172/ISIS.shOfflinecensys gafgyt ext sh NDA0E
2025-03-29 15:48:03http://176.65.143.172/a-r.m-6.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/a-r.m-7.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/m-6.8-k.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/a-r.m-4.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/i-5.8-6.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/p-p.c-.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/s-h.4-.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/x-8.6-.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/m-p.s-l.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/m-i.p-s.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/a-r.m-5.ISISOfflinecensys elf gafgyt ext NDA0E
2025-03-29 15:48:03http://176.65.143.172/x-3.2-.ISISOfflinecensys elf gafgyt ext NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-04-10 09:03:3465c425de48067e59a8050a7c661c58b094c0e113ae57df01bc743f6833e2be00elfGafgyt
2025-04-10 08:57:02ea64b76a0290db2e306762b3ab6ee7af51009328f17d5f35fe5b7a42042c4a6aelfGafgyt
2025-04-10 08:55:53585af71cafd52836796d3285345090c5f9e806983070b033292816626fb843b7elfGafgyt
2025-04-10 08:52:17c040c79ae778f6d24c0a3b0d46d3bdc5bf36ef599976843054080df72423426aelfGafgyt
2025-04-10 08:49:5265c425de48067e59a8050a7c661c58b094c0e113ae57df01bc743f6833e2be00elfGafgyt
2025-04-10 08:45:59c2cd5138a78d2aa5d481400bab9e0e7cf1145bdd2a86b32079b8fb38cc38af20elfGafgyt
2025-04-10 08:38:198ce8b1f6fd318f03410cd945991afcddb20fa093a316d607bbea0ccba455988dshGafgyt
2025-04-10 08:34:475ab7d0747d7abb86b1b3642e6aeb7b6518981615158bc4e0c0473a96b1b76e2delfGafgyt
2025-04-10 08:34:221c6410cee2f745fa52cdfb349adbd801650a1fa1dd1a08ed60adeed491c9df81elfGafgyt
2025-04-10 08:34:0884f198dba0d95044db735cabd182ce7a633a22f1add39dccda481f9a9d607712elfGafgyt
2025-04-10 08:32:11deba9d554691fac161260399758e6c04ac8e9be64d8adbc0d1d5f87d11a9411celfGafgyt
2025-04-10 08:29:33c9aa871ebf966c38b24b140853a18c66b023de4b803cd214e166a92db11a7ec8elfGafgyt
2025-04-10 08:28:152bf9715f2071b8504588a7e001b843c7b2bb0dbd8cced6406f0e10dd32850addelfGafgyt
2025-04-10 02:12:27cd4e6180e020341cebc37f06fd33b9ab26984956b3f835e3e92f25129449cb80elfGafgyt
2025-04-10 01:55:42caeeb89d86c41917e89af2a3ba5ffac7a5c758041d47dfa22e8079f52438c7e5elfGafgyt
2025-04-10 01:50:156ea95278d9a4b61a6b32bb5bca72893319c198a4d3608896cb8eba07cc4d4ce1elfGafgyt
2025-04-10 01:44:50afe225af0f53016f936302844b777bd7525f5d14f3ff191a610e3eee04f16120elfGafgyt
2025-04-10 01:37:4324625dd7724646688061d9cc4af9f6706ca33de589a89897d7cf81dfc5ced808elfGafgyt
2025-04-10 01:34:023dc765bd2cf39ce4462b6d753ac9ff57e9fac40d2a931b52184184a0186f867celfGafgyt
2025-04-10 01:24:010b20c38643f932823b42b4f2ac60def86ef6b4e33c92b7f27e556cce21070ea0elfGafgyt
2025-04-10 01:17:1964b1edbe4c8b25b5780ce213a28133a7841447b7afbfcab2e288ec0814c29f74elfGafgyt
2025-04-10 01:08:32651493d85dd7df04b0f4e9a0ff8e64db91f2137bd38165fb3d74d4a99d748e90elfGafgyt
2025-04-10 00:52:3424625dd7724646688061d9cc4af9f6706ca33de589a89897d7cf81dfc5ced808elfGafgyt
2025-04-10 00:08:445b1136585bbad140e0464835a1b3422fa62d5884b4caec5fb6884418fd3eefe7elfGafgyt
2025-04-10 00:06:04973ea7b64d0260394ec4c03fe8e7b30f3b29e0f240dc7cc884dc9fb3d0863083elfGafgyt
2025-04-09 23:52:2501c48a883b0b7520ae59f37a35d65d96a9bbeec4d473b90fb2ec2bf6b918af87elfGafgyt
2025-04-09 23:35:32b0e09abb957778f2f24e44bd2635f7b222e800f72d0d71661cee37cba4f2ffc1elfGafgyt
2025-04-09 23:27:0275e78c307909080e3122089e55e47f2f5a13fa68ef6dbdd3262331bc0979aeb9elfGafgyt
2025-04-09 23:04:0035d09a404cf802f70b75761ddfa77b0f572cd77e3ae44ff91f2cf6fc4090eaa4elfGafgyt
2025-04-05 14:08:051b441c30a6ed16dd4f06b3e76ed0554b7fb2883d7983e44940f7d98a58533dc5elfGafgyt
2025-04-05 14:08:055a5e14c6ed7ca7854b21b1bc192bb5461596ef0a83faac403a7666b547d5cf17elfGafgyt
2025-04-05 14:08:042b0a7ea88cdb935858b511b5ef16fa9d20cf155bccb874dacf1ca6ad3158d14felfGafgyt
2025-04-05 14:08:0415be2df7806bd22fb54d384f933cca600e7c1e4201feb0605f211f25107de6e2elfGafgyt
2025-04-05 14:07:05b42d51a9a664eab4d24d9c271ff7c356af41685a27f0697aa1dbf3733f698259elfGafgyt
2025-04-05 14:07:05de487f4cd4f1c3dd586a6226eb6a97ab96ae9d3523a2b0ecc5958ffb0af9cadeelfGafgyt
2025-04-05 14:07:05ebc3fc4a2ddef6f05df0469c98d2e7656d49955daffadb5ce3e3129ec4fc4bbaelfGafgyt
2025-04-05 14:07:05d5697f2baea2498685a32a09c62f1c029adcb89e86640b50cfbe2959cabd500celfGafgyt
2025-04-05 14:07:0555d5c803f33331b27ac9c1faf8b2271dff6d7b4063284cf6e8fb73df503a0556elfGafgyt
2025-04-05 14:07:055d458eec4ca82aa5635ea6aa6018fefbfce9ae1dba244a74810dda5c1cfe6d40elfGafgyt
2025-04-05 14:07:055707aa4a13afdb3070ca1d0dd0d2d1e04afedeee03c08fa2b291f46012edb592elfGafgyt
2025-03-29 15:48:04665618db858c303cc4d0085e31db15fcc2bdf10a66e12b14c3ee1fbee962ba5fsh