URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.213.240.242
Firstseen:2025-07-22 05:43:05 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-22 05:43:07 185.213.240.242Not listedAS215703 FREAKHOSTING- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-07-22 07:04:06http://185.213.240.242/1.shOfflinemirai ext opendir sh ua-wget botnetkiller
2025-07-22 07:03:05http://185.213.240.242/o.xmlOfflineopendir sh xml botnetkiller
2025-07-22 05:45:13http://185.213.240.242/bins/morte.arm7Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:45:13http://185.213.240.242/bins/morte.m68kOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:45:13http://185.213.240.242/bins/morte.x86_64Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:45:06http://185.213.240.242/bins/debugOfflinemirai ext opendir ua-wget abuse_ch
2025-07-22 05:44:07http://185.213.240.242/bins/morte.spcOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:44:06http://185.213.240.242/bins/morte.mpslOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:44:06http://185.213.240.242/bins/morte.armOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:44:06http://185.213.240.242/bins/morte.arcOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:16http://185.213.240.242/bins/morte.arm5Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:15http://185.213.240.242/bins/morte.i468Offlineelf opendir ua-wget abuse_ch
2025-07-22 05:43:14http://185.213.240.242/bins/morte.ppcOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:11http://185.213.240.242/bins/o.xmlOfflineopendir ua-wget abuse_ch
2025-07-22 05:43:11http://185.213.240.242/bins/morte.arm6Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:11http://185.213.240.242/bins/morte.i686Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:07http://185.213.240.242/bins/morte.sh4Offlineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:07http://185.213.240.242/bins/morte.mipsOfflineelf mirai ext opendir ua-wget abuse_ch
2025-07-22 05:43:07http://185.213.240.242/bins/morte.x86Offlineelf mirai ext opendir ua-wget abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-07-22 07:04:06ba00792f880e3821207ce96396089fa0213bff59a549e44879315582cbdc60c2shMirai
2025-07-22 07:03:04ee9919f2c66a01a9d93867c16544304ff3015dce1657fa1e83e255eefad37b9bsh 
2025-07-22 05:45:13f668ad9e7208fb93503504745e844534c2f1cd03bb8be6580ceb107b2f3e5c1felfMirai
2025-07-22 05:45:13b34ab7b3235520d509129dbf8ce61fa4aaf07c689caf1086678d209c2bdfb15felfMirai
2025-07-22 05:45:130f3d5843dbea20320950015e6b16d397ead64d3a0cc0c0c9d236ab0c329e5c3celfMirai
2025-07-22 05:45:06369a9d2f679ba942537f53f7a9552a1563dd67fb6287dceb4539189907ff30fbelfMirai
2025-07-22 05:44:07600fc077b364f1e19774afc961c350ca78168a7c89985b8d649d18a784bb54caelfMirai
2025-07-22 05:44:06bc7ba0be21d0bd4d5f8ffba11fb517a6128ed67aaee485f4e9ad55ebb206dfd7elfMirai
2025-07-22 05:44:061e084f768e6f712bd7a6550bfd1d6651475110be15afdaf20ea165035e41825belfMirai
2025-07-22 05:44:066a381680badfe72a680a7ebbac5a87b69b92bef8cf495dea18c08768ae4a8104elfMirai
2025-07-22 05:43:16bb58685e750ea7ea86ef5e8e0272309259225751e891a8180edeb43f00e12237elfMirai
2025-07-22 05:43:144c2307922752b1dda4168efb06f7f577df1e1a6b559b16e290533fa875bbfb67elfMirai
2025-07-22 05:43:11ee9919f2c66a01a9d93867c16544304ff3015dce1657fa1e83e255eefad37b9bsh 
2025-07-22 05:43:11fc5cd925ce297000ca57784ead53c74be59b7f1947fe30fc596b8288b58e34acelfMirai
2025-07-22 05:43:11ec6877d780e5c08a52316ed53c1e24688df1bb77573a73552807b446682303e1elfMirai
2025-07-22 05:43:07aeaca0a823b1c1ba1fef65021e4435d355d8da6763b976bfecfe002a17023b80elfMirai
2025-07-22 05:43:07db7c3f4a4d9955f60e2428d33081b7516d2b05a554549ef7435ad5f0da26aebcelfMirai
2025-07-22 05:43:076b89288f82c10313cc04d6801994f61ae0f454a8e49ae902416549475d22563eelfMirai