URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.112.83.129
Firstseen:2022-05-07 22:02:03 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-05-07 22:02:06 185.112.83.129Not listedAS207569 I-SERVERS-NORTH-EU- FIyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-05-13 19:57:07http://185.112.83.129/x86Offlinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/586Offlinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/sh4Offlinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/i686Offlinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/m68kOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/ppcOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/mipsOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/dssOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/mipselOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/coOfflinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/arm61Offlinecensys elf gafgyt ext ua-wget NDA0E
2025-05-13 19:57:07http://185.112.83.129/sex.shOfflinecensys gafgyt ext sh ua-wget NDA0E
2022-05-07 22:02:07http://185.112.83.129/x01/mipsOfflineelf tolisec
2022-05-07 22:02:07http://185.112.83.129/x01/x86Offlineelf tolisec
2022-05-07 22:02:07http://185.112.83.129/x01/arm5Offlineelf tolisec
2022-05-07 22:02:07http://185.112.83.129/x01/armOfflineelf mirai ext tolisec
2022-05-07 22:02:07http://185.112.83.129/x01/arm6Offlineelf tolisec
2022-05-07 22:02:06http://185.112.83.129/x01/m68kOfflineelf tolisec
2022-05-07 22:02:06http://185.112.83.129/x01/mpslOfflineelf tolisec
2022-05-07 22:02:06http://185.112.83.129/x01/sh4Offlineelf tolisec
2022-05-07 22:02:06http://185.112.83.129/x01/ppcOfflineelf tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-05-13 19:57:0776a75091cca4fb6fdcd7be35483b87a410018fdee0b7b18f67e6be47d398bb8delfGafgyt
2025-05-13 19:57:079ebfaad779077adb8fd3842ea4bf07a817858d675ce3ea1f6dc7231265f90444elfGafgyt
2025-05-13 19:57:07c3199f69756b04d884b11b603493d351c45882996ef157eda8afff314a56008aelfGafgyt
2025-05-13 19:57:0779607790181a99872404d10746f3a1af56e35e765cf7b5f5cc6c6e1f98e5c98belfGafgyt
2025-05-13 19:57:071e39836f4c38ba0321f719952efebaa7b58ffa3c878409221543c5567f194f46elfGafgyt
2025-05-13 19:57:076013868712b5796d1abc917c8ef745f2af6dcb80324bc37c1485af516e03b3daelfGafgyt
2025-05-13 19:57:076c2ee8d063cef58ee749b49720bedd2118caf76814984543f7d597a75a89aaa5elfGafgyt
2025-05-13 19:57:07c9a944bf6439e5b8fd51684d714585d746620799841bd1edadef8c11cbf64ff4elfGafgyt
2025-05-13 19:57:07a16a028ad203ac4b0befac274acf85188b35ff384f8523491eff21215baaa6f3elfGafgyt
2025-05-13 19:57:074153c92003eb618c248a36e6717d4f9e61e9b6678e0abd0d9d1a2ddb98cd04feelfGafgyt
2025-05-13 19:57:07cac5cff36f70ba090c4a3813a637753cc1df574bac9e77063d1793fdb9626bb3elfGafgyt
2025-05-13 19:57:070894228dc08d24feaa0f0fd68999c2fad5562d10c10a109d1dd0417598bb11b5shGafgyt
2022-05-07 22:02:079f19f7fb64efec258f4279eca7384a582fa8650bb4ad98370cc087fe39e5ed10elf  
2022-05-07 22:02:07ce3f6129d865e1e3e656341a32391905c4866fc01ca481657cf92a6a6c775234elf  
2022-05-07 22:02:076348fb429ffbf9c6f25997038058e8bc9faf5e70b79ccb0e4bba3506c6391419elf  
2022-05-07 22:02:0784d66c411e01e733fe5d71c79f5abbfcfc4259cc8927326747654f9415d7ff9delfMirai
2022-05-07 22:02:06c45e43ea8b1adb83c6355425e0b7fdd4e5005656e1d427625673c420ea35ee27elf  
2022-05-07 22:02:05ec15074bcb7503e906702f96c47e43988a09d9df4e9a6445bf28b9e2883a5e60elf  
2022-05-07 22:02:054257b766e862d7584d76146d07cf5b232952d24a61dbd75373959dcec518dfa2elf  
2022-05-07 22:02:055e8fcc4abe7a6e37a8c1e99e4569a456cba37fe184c193d70c169ede4efd67a9elf  
2022-05-07 22:02:057ef6674363d4d85b6c948138ee4bc3b6fb8955fdf8546eab0eb7d1cc2c525c4felf