URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.196.9.34
Firstseen:2024-04-07 23:14:04 UTC
Total malware sites :35
Online malware sites :0 (0%)
Offline Malware sites :35 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-04-07 23:14:09 185.196.9.34SBL640645AS42624 swissnetwork02- GByes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-04-18 10:00:07http://185.196.9.34/k.shOfflineelf shellscript abus3reports
2024-04-18 09:58:06http://185.196.9.34/weedOfflineelf shell abus3reports
2024-04-18 09:58:05http://185.196.9.34/ipcOfflineelf shell abus3reports
2024-04-18 09:58:05http://185.196.9.34/ruckOfflineelf shell abus3reports
2024-04-18 09:58:05http://185.196.9.34/irzOfflineelf shell abus3reports
2024-04-18 09:58:05http://185.196.9.34/goclOfflineelf shell abus3reports
2024-04-18 09:58:04http://185.196.9.34/aaaOfflineelf shell abus3reports
2024-04-16 07:54:05http://185.196.9.34/gOfflineelf shell abus3reports
2024-04-16 07:54:05http://185.196.9.34/bOfflineelf shell abus3reports
2024-04-10 06:51:06http://185.196.9.34/z.shOfflineelf shellscript abus3reports
2024-04-10 06:51:06http://185.196.9.34/wget.shOfflineelf shellscript abus3reports
2024-04-10 06:51:05http://185.196.9.34/w.shOfflineelf shellscript abus3reports
2024-04-10 06:51:05http://185.196.9.34/c.shOfflineelf shellscript abus3reports
2024-04-09 17:33:07http://185.196.9.34/bins/mkwasz.m68kOfflineelf mirai ext BlinkzSec
2024-04-09 17:33:07http://185.196.9.34/bins/mkwasz.sh4Offlineelf mirai ext BlinkzSec
2024-04-09 17:33:07http://185.196.9.34/bins/mkwasz.spcOfflineelf mirai ext BlinkzSec
2024-04-09 17:33:07http://185.196.9.34/bins/mkwasz.ppcOfflineelf mirai ext BlinkzSec
2024-04-09 14:59:14http://185.196.9.34/bins/mkwasz.mipsOfflineelf mirai ext ClearlyNotB
2024-04-09 14:59:14http://185.196.9.34/bins/mkwasz.x86Offlineelf mirai ext ClearlyNotB
2024-04-09 14:59:10http://185.196.9.34/bins/mkwasz.arm7Offlineelf mirai ext ClearlyNotB
2024-04-09 14:59:09http://185.196.9.34/bins/mkwasz.arm6Offlineelf mirai ext ClearlyNotB
2024-04-09 14:59:08http://185.196.9.34/bins/mkwasz.armOfflineelf mirai ext ClearlyNotB
2024-04-09 14:59:06http://185.196.9.34/bins/mkwasz.arm5Offlineelf mirai ext ClearlyNotB
2024-04-09 14:59:05http://185.196.9.34/bins/mkwasz.mpslOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:40http://185.196.9.34/mkwasz.armOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:36http://185.196.9.34/mkwasz.arm5Offlineelf mirai ext ClearlyNotB
2024-04-07 23:14:36http://185.196.9.34/mkwasz.arm7Offlineelf mirai ext ClearlyNotB
2024-04-07 23:14:28http://185.196.9.34/mkwasz.arm6Offlineelf mirai ext ClearlyNotB
2024-04-07 23:14:18http://185.196.9.34/mkwasz.spcOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:18http://185.196.9.34/mkwasz.m68kOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:14http://185.196.9.34/mkwasz.ppcOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:13http://185.196.9.34/mkwasz.sh4Offlineelf mirai ext ClearlyNotB
2024-04-07 23:14:13http://185.196.9.34/mkwasz.mipsOfflineelf mirai ext ClearlyNotB
2024-04-07 23:14:10http://185.196.9.34/mkwasz.x86Offlineelf mirai ext ClearlyNotB
2024-04-07 23:14:09http://185.196.9.34/mkwasz.mpslOfflineelf mirai ext ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-04-18 10:00:07b6efd6fd3c8eee8e592a93b6d28953bb4bf70f25e0c4c4543afea21dc6fa5cf9unknown  
2024-04-18 09:58:054547d8d84bb55bee7195cdf9b74c611e612e9a508657068860a9d9691fcb7aebunknown  
2024-04-18 09:58:056cfe5f67ee1e3b1d389db96f5fe21cfe0b6818c2ba3fc65e77b41c035c500657unknown  
2024-04-18 09:58:05fb7f3d59564f9be9e670302d593263618f7ab5b5a93fbcda40fa8c5b2ed5d998unknown  
2024-04-18 09:58:056b7747c104a548caa8b6c784c105bd95bf7b61949b472348076ba92f82f254ffunknown  
2024-04-18 09:58:05da4826e69b20b7ddad6a80e188987ff8a941c01f209ec9d97ea7ec9cf3c73267unknown  
2024-04-18 09:58:044a5899470543760647631314ecaddb8f905316ba13466e4ec9f2b2fe4d129ce3unknown  
2024-04-16 07:54:05b9a4cb7a563a5babfe2219f7e35abc847c41b56f160d337a6d4c83e500d50b85unknown  
2024-04-16 07:54:05699afb3e975e595670d1c795d31eb164b529b6cffd4a58c6c0557c0241a8b643unknown  
2024-04-10 06:51:06fac6307fe8047c431a856aa2563ec685aa4396b4e57a8075720a0d1b0d2d96a5unknown  
2024-04-10 06:51:067859012a551b6ddc00a85b6d7a554037888557665feddb2b19b1071b2d02a86cunknown  
2024-04-10 06:51:05416af71e57956df5f79fa03a2b321513a23b34f793229b01725fd43b597d19adunknown  
2024-04-09 17:33:0723e88fee2eb424ef2d006031f3dfee321462790bb71a1eb86a5267807d2f0084elfMirai
2024-04-09 17:33:07df9b8275f6aac28b8cde77b390e03a01b2226f611502d8f2c40acca04c694b48elfMirai
2024-04-09 17:33:0722badea9d3f236d37c9f69dd2603f3a328153f8bf557982372fc9c14d8a12923elfMirai
2024-04-09 17:33:07935e8ae2e26ccde9566c293e1892910e3ce000a42dac5e7081c7ebcd21e28e03elfMirai
2024-04-09 14:59:140c46089aff1bf063a775e25d142e3fab2bae72d74e0459d6836fd6b01b254570elfMirai
2024-04-09 14:59:14fef6a415ec1da3a0656c6e073bc8040f631946e46238fbd3ce13d46db691f2b5elfMirai
2024-04-09 14:59:1076709a0f36f86628b370d79d6ae254039f4c84e33e8864b6221c6220a0fe7132elfMirai
2024-04-09 14:59:09a40603cd2201f9e8243af8290bb41d4c161204a2602d3f3b3936a606dd0c9108elfMirai
2024-04-09 14:59:0897c86a17993432e6d800615c00622b8470beb088813b849df5495ce0de092396elfMirai
2024-04-09 14:59:06b5625823cb05d240daef32d9ffa9a013c331e6e3c1fd9adcd14879ceba676767elfMirai
2024-04-09 14:59:053f4f1ee0928b013e28a29838907de1962161236d8d7024d63970283e23cbd2f6elfMirai
2024-04-09 10:58:040c46089aff1bf063a775e25d142e3fab2bae72d74e0459d6836fd6b01b254570elfMirai
2024-04-09 10:46:053f4f1ee0928b013e28a29838907de1962161236d8d7024d63970283e23cbd2f6elfMirai
2024-04-09 10:44:2897c86a17993432e6d800615c00622b8470beb088813b849df5495ce0de092396elfMirai
2024-04-09 10:39:5976709a0f36f86628b370d79d6ae254039f4c84e33e8864b6221c6220a0fe7132elfMirai
2024-04-09 10:39:24b5625823cb05d240daef32d9ffa9a013c331e6e3c1fd9adcd14879ceba676767elfMirai
2024-04-09 10:35:2923e88fee2eb424ef2d006031f3dfee321462790bb71a1eb86a5267807d2f0084elfMirai
2024-04-09 10:30:00fef6a415ec1da3a0656c6e073bc8040f631946e46238fbd3ce13d46db691f2b5elfMirai
2024-04-09 10:23:17df9b8275f6aac28b8cde77b390e03a01b2226f611502d8f2c40acca04c694b48elfMirai
2024-04-09 10:17:51a40603cd2201f9e8243af8290bb41d4c161204a2602d3f3b3936a606dd0c9108elfMirai
2024-04-09 10:16:34935e8ae2e26ccde9566c293e1892910e3ce000a42dac5e7081c7ebcd21e28e03elfMirai
2024-04-07 23:14:40b75f3f2ad1396bb1182cd46b4fb51d4e64c3a25053766782aed13c3abac7b2f9elfMirai
2024-04-07 23:14:36b4dfdf15ba8c47f02167bc82c03ebce13152ec8514dadf0c4aa34eab312040c8elfMirai
2024-04-07 23:14:36893ede0134760aa30a4d839f58caff6a3af6ece7615cf29f68a4e418e555f3a1elfMirai
2024-04-07 23:14:27bc79fbbbf28ed2d664cc188c62e0d0d032f552a67cc5c2167f3440a168e928a8elfMirai
2024-04-07 23:14:18648692859a787b3e323a9174361a51a8ad427ec256e646073a855604536eae59elfMirai
2024-04-07 23:14:1822badea9d3f236d37c9f69dd2603f3a328153f8bf557982372fc9c14d8a12923elfMirai
2024-04-07 23:14:1465b3b54e740385a76ceed3eb80cf5bf17bc48b066c18cc0d209481cdf0ac3d6eelfMirai
2024-04-07 23:14:13399a71ce2377316d7214aa3435ddae89f99a6d8aae93e98349c13d39379ce0e8elfMirai
2024-04-07 23:14:13d326cef338097a99d9fddc323331a7ed6a3f42640598c288bc24e32719d6a0d1elfMirai
2024-04-07 23:14:10b4e6b5b9dca34e60bf3b3f808a94299789da306ad959ae4035fb376e1250c291elfMirai
2024-04-07 23:14:091084de2c6b276091fb6bb724ebd0db0def1f47c4f85eb0704a494b6149961bedelfMirai