URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.216.70.121
Firstseen:2024-07-01 10:35:11 UTC
Total malware sites :47
Online malware sites :0 (0%)
Offline Malware sites :47 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-07-01 10:35:17 185.216.70.121Not listedAS16509 AMAZON-02- BGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-16 11:32:12http://185.216.70.121/garm5Offlineelf mirai ext tolisec
2024-07-16 11:32:12http://185.216.70.121/garm7Offlineelf mirai ext tolisec
2024-07-16 11:32:12http://185.216.70.121/garm6Offlineelf mirai ext tolisec
2024-07-16 10:49:05http://185.216.70.121/x86_64?ddosOfflineddos elf mirai ext Gandylyan1
2024-07-13 16:59:05http://185.216.70.121/sh4Offlineelf mirai ext BlinkzSec
2024-07-11 09:14:06http://185.216.70.121/mips?ddosOfflineddos elf mirai ext Gandylyan1
2024-07-04 12:35:37http://185.216.70.121/test.shOfflineshellscript LemonHaze420__
2024-07-04 12:35:08http://185.216.70.121/totoOfflineshellscript LemonHaze420__
2024-07-04 12:34:23http://185.216.70.121/arm7Offlineelf mirai ext LemonHaze420__
2024-07-04 12:33:39http://185.216.70.121/c.shOfflineshellscript LemonHaze420__
2024-07-04 12:32:49http://185.216.70.121/f5Offlineshellscript LemonHaze420__
2024-07-04 12:32:45http://185.216.70.121/ruckOfflineshellscript LemonHaze420__
2024-07-04 12:31:49http://185.216.70.121/create.pyOfflineshellscript LemonHaze420__
2024-07-04 12:31:30http://185.216.70.121/z.shOfflineshellscript LemonHaze420__
2024-07-04 12:31:15http://185.216.70.121/w.shOfflineshellscript LemonHaze420__
2024-07-04 12:30:55http://185.216.70.121/vcOfflineshellscript LemonHaze420__
2024-07-04 12:30:52http://185.216.70.121/fdgsfgOfflineshellscript LemonHaze420__
2024-07-04 12:29:52http://185.216.70.121/bxOfflineshellscript LemonHaze420__
2024-07-04 12:29:14http://185.216.70.121/fbOfflineshellscript LemonHaze420__
2024-07-04 12:29:06http://185.216.70.121/bOfflineshellscript LemonHaze420__
2024-07-04 12:27:27http://185.216.70.121/gOfflineshellscript LemonHaze420__
2024-07-04 12:27:24http://185.216.70.121/multiOfflineshellscript LemonHaze420__
2024-07-04 12:27:18http://185.216.70.121/goclOfflineshellscript LemonHaze420__
2024-07-04 12:27:03http://185.216.70.121/zzOfflineshellscript LemonHaze420__
2024-07-04 12:26:49http://185.216.70.121/asdOfflineshellscript LemonHaze420__
2024-07-04 12:26:00http://185.216.70.121/magOfflineshellscript LemonHaze420__
2024-07-04 12:25:37http://185.216.70.121/irzOfflineshellscript LemonHaze420__
2024-07-04 12:24:38http://185.216.70.121/adbOfflineshellscript LemonHaze420__
2024-07-04 12:23:54http://185.216.70.121/linksysOfflineshellscript LemonHaze420__
2024-07-04 12:23:34http://185.216.70.121/k.shOfflineshellscript LemonHaze420__
2024-07-04 12:23:03http://185.216.70.121/av.shOfflineshellscript LemonHaze420__
2024-07-04 12:22:29http://185.216.70.121/lllOfflineshellscript LemonHaze420__
2024-07-04 12:22:25http://185.216.70.121/ipcOfflineshellscript LemonHaze420__
2024-07-04 12:22:16http://185.216.70.121/xaxaOfflineshellscript LemonHaze420__
2024-07-04 12:22:08http://185.216.70.121/sdtOfflineshellscript LemonHaze420__
2024-07-04 12:22:02http://185.216.70.121/weedOfflineshellscript LemonHaze420__
2024-07-04 12:21:56http://185.216.70.121/aaaOfflineshellscript LemonHaze420__
2024-07-04 12:20:51http://185.216.70.121/liOfflineshellscript LemonHaze420__
2024-07-04 12:20:50http://185.216.70.121/jawsOfflineshellscript LemonHaze420__
2024-07-04 08:40:27http://185.216.70.121/arm6Offlineddos elf mirai ext Gandylyan1
2024-07-04 06:09:07http://185.216.70.121/shOfflineshellscript LemonHaze420_
2024-07-02 09:29:34http://185.216.70.121/arm5Offlinemirai ext ua-wget Gandylyan1
2024-07-01 10:37:04http://185.216.70.121/wget.shOfflineshellscript ua-wget Gandylyan1
2024-07-01 10:36:10http://185.216.70.121/mpslOfflineddos elf mirai ext Gandylyan1
2024-07-01 10:36:10http://185.216.70.121/arm4Offlineddos elf mirai ext Gandylyan1
2024-07-01 10:36:10http://185.216.70.121/x86_64Offlineddos elf mirai ext Gandylyan1
2024-07-01 10:35:17http://185.216.70.121/mipsOfflineddos elf mirai ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-16 11:32:12f148725f1d1975b9e28de94ee949d807b74665dd90548c6e7c856cb799b13456elfMirai
2024-07-16 11:32:1217e53f4afdb4bfb4a4676773d7ef13e15fdfa03b5b729365cc5332ab061a53aaelfMirai
2024-07-16 11:32:1236d0949565076606f4dc9f0637cd013b3501c1b6bfbe9eee71fbcba5006540e5elfMirai
2024-07-16 10:49:0541d929594aa4596c02f4a18c67df7b33d03562f8796c47edac96740736dfeb66elfMirai
2024-07-15 23:31:0541d929594aa4596c02f4a18c67df7b33d03562f8796c47edac96740736dfeb66elfMirai
2024-07-15 22:19:076e495738345ca2d08ba306ecd9f7bdaa8f6f5da5810a992a84673e1af849e0f8elfMirai
2024-07-15 16:44:13aaebd5ce33a16ff0ed11a1d7044d227a992354964e1c5b2d544ce277bdd5151eelf  
2024-07-15 04:43:28c0fb8e8e7763544e9358a0d9d956c4b7032ae291d176f503cb2122328a742a3felf  
2024-07-15 04:37:54c0fb8e8e7763544e9358a0d9d956c4b7032ae291d176f503cb2122328a742a3felf  
2024-07-15 02:29:55973b4af7dda7e7ced50058ab3759fa1c46f55d69f32d17191026fe4b168cee1felfMirai
2024-07-15 02:02:0226afc4e001c68cee5fbd998037dd71cfb0f7fcdb1452efb98c52a760891ecf82elfMirai
2024-07-14 05:53:2238a60429e9507fddd32c964e5cf66df119f0d7c476f07b00316f05a0b3d8e38csh  
2024-07-13 16:59:051a2a05a8c9e1001001586ef3d1d4e2b04006790754b964da2016a7a915f510ddelfMirai
2024-07-13 08:27:343ed9d6a4a1975c8081f34181a13fbb901049d08a962581452b14ca359276edddelf  
2024-07-13 07:51:08cbb23949b84aa62946c11b56d78afc437ae26fd8d2fc3e282d581f3b81d5aef6elf  
2024-07-13 07:13:35f8a13444d547cc66edf294be9c921191b8c95a4f794d7dbe259233c10314df17elf  
2024-07-11 15:04:1633bd3c766e25c5a9fcbd4bfd5008a30b09c25789b92b870634c53373271a5e1celfMirai
2024-07-11 14:26:03941501fd41ef0287f1f07e18cde618904fc76f914ec465492fb51e85e9d75bb5elfMirai
2024-07-11 14:23:460c2a4ce46a5fb7fc44519dbaead276386be646bc8cacd20554947e15087a6f2felf  
2024-07-11 14:09:44aa53a0548ff8535f3382b471d4e9edc5bafdfb02b2f4c908419807ded903c775elfMirai
2024-07-11 14:09:27aa53a0548ff8535f3382b471d4e9edc5bafdfb02b2f4c908419807ded903c775elfMirai
2024-07-11 14:08:016abcbc5fe4220cc71628ab9f19b20805656d46f91d45ba6065f30ddcfd06dc8delf  
2024-07-11 14:07:236abcbc5fe4220cc71628ab9f19b20805656d46f91d45ba6065f30ddcfd06dc8delf  
2024-07-11 14:01:250bc870cba8b03d4d0d557bb82094132ae717005a246db85add727fc9971caa68elfMirai
2024-07-11 12:34:03b8c8043bfaadea35dfa74ecf057c851d03b7760c7e389e5d1f9173346702da12elf  
2024-07-11 12:30:1716c86a59f2a5be728c4deb339e6aa4b79040a38f216514bb36c8e07dec8ddd07elf  
2024-07-11 12:29:5616c86a59f2a5be728c4deb339e6aa4b79040a38f216514bb36c8e07dec8ddd07elf  
2024-07-11 12:23:30cbb23949b84aa62946c11b56d78afc437ae26fd8d2fc3e282d581f3b81d5aef6elf  
2024-07-11 12:23:16d182a7dfb900faf985a73b01cc89d83eb01f847ba24101a54a64aa1dc7883eddelf  
2024-07-11 12:19:14ca2a01d29551fe56d6701c1f97757a2437f2ac5450cf10cfd4ad7e59edd61d7celf  
2024-07-11 09:14:067819e1b9db785e16d3ff1c25343432f55f5ab0459a09aae177a4162f05061feaelf  
2024-07-10 22:34:590bc032e0225469afebe91c4892390240af9bded4677329cb924815b4db9cd8afelf  
2024-07-10 22:13:167819e1b9db785e16d3ff1c25343432f55f5ab0459a09aae177a4162f05061feaelf  
2024-07-10 21:23:309d5823f05d4eac45bacb89901a10ee531ae50490258fef08ffa7adf79594cc08elfMirai
2024-07-10 20:56:074bfd146a7dc3c2080a0944752266bbc4df9544e54bbdc37c428b938b2acb0394elf  
2024-07-10 20:43:501e2e5738174a8d0015a1e6de23371491a5802f9ff6ba80521e8b315b9c74f8c2elfMirai
2024-07-10 20:27:41af6fd795c58eeac8394eeada56007160fe8e9f8172d473f15b47feaf57304364elfMirai
2024-07-10 16:54:4137513f22ab1f79e7a9c29fc563a7d38de45b9cf95e3537c1000e8aefdc089bb0elfMirai
2024-07-04 08:40:27d0534978b2c02fe70e4c60c9f337d647b5b27def606d0744030b801195ee4544elfMirai
2024-07-03 19:35:0221f70e763eba1af39ba020313bade4a8b591dfe333867f5e6ae184ab3ef243bdelfMirai
2024-07-01 10:36:1018f7948a9dffdacbd6e48476d36d43836c28fd810140a98b63d1434d5c3d617delfMirai
2024-07-01 10:36:107fbc24fea9f2259997f051bfdd08ea74867d19c4fe2a112818624f1a31cf52c5elfMirai
2024-07-01 10:36:10c625fb48a964ca980dbccc9c1a7ec66f30a145e3bc819281e980a2376a690cc8elfMirai
2024-07-01 10:35:133885266ce83f209f472809c88e620048b6b9a88375fbcc3b824bbff63e542871elfMirai