URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.242.3.121
Firstseen:2026-05-05 16:56:04 UTC
Total malware sites :22
Online malware sites :17 (77%)
Offline Malware sites :5 (23%)
Newest active malware site :2026-05-05 16:56:13 UTC
Oldest active malware site :2026-05-05 16:56:12 UTC (Age: 1 day, 2 hours, 59 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-05 16:56:12 185.242.3.121SBL692424AS60223 NETIFACE-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-05 16:56:13http://185.242.3.121/bins/kaf.mps64Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bots/kaf.mps64Offline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bins/kaf.i386Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bins/kaf.arm5Offline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bots/kaf.mpslOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bins/kaf.s390Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:13http://185.242.3.121/bots/kaf.arm5Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.64Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.mipsOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/unidrop_ultimate.shOffline185-242-3-121 ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.i386Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.x86Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.s390Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.arm7Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.mipsOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.64Offline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.arm7Online185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.ppcOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.mpslOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/kaf.ppcOnline185-242-3-121 mirai ext ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bins/builder_ultimate.shOnline185-242-3-121 ua-wget BlinkzSec
2026-05-05 16:56:12http://185.242.3.121/bots/kaf.x86Offline185-242-3-121 mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-05 16:56:131f819f26b392c592e0a4d605f8a162740ee0111cf0dc3ed122f6ca58ef8af8b8elfMirai
2026-05-05 16:56:131f819f26b392c592e0a4d605f8a162740ee0111cf0dc3ed122f6ca58ef8af8b8elfMirai
2026-05-05 16:56:13493400c4b9a96166e0e47e07fb764dabd027eb5ed4aaa2b4fb64ee843017b763elfMirai
2026-05-05 16:56:13efa60a675a2fb75e906777b19904ca6d984f308bfa8da8ab17982267748aed07elfMirai
2026-05-05 16:56:134bad797de031790695e15319b03e4c1577a30e522db74d569b86308cc00085e7elfMirai
2026-05-05 16:56:136babc31cfd800a42c119843429a7d916278588c5d405860053b9eda021fec760elfMirai
2026-05-05 16:56:13efa60a675a2fb75e906777b19904ca6d984f308bfa8da8ab17982267748aed07elfMirai
2026-05-05 16:56:1227b8f5e7d7559780d72f7b1bdc37a94306ae4fbde984597dc0e8ed9749ea5813elfMirai
2026-05-05 16:56:12a16a6a4686444ca8dc026c0b53a44d8c85e68ceea91e8e3e26317659253621c0elfMirai
2026-05-05 16:56:12b985258b18b12afcf01f535886469fb7733144981aa706e09315bbdae88cc049sh 
2026-05-05 16:56:12493400c4b9a96166e0e47e07fb764dabd027eb5ed4aaa2b4fb64ee843017b763elfMirai
2026-05-05 16:56:12b54cd0c234e41d48539a09f5e85362bf202697db0a1ebf949c57db9e20b908eaelfMirai
2026-05-05 16:56:126babc31cfd800a42c119843429a7d916278588c5d405860053b9eda021fec760elfMirai
2026-05-05 16:56:12152baee5378cfd6cf618cf48828c1b56eb8911b7052a32fb8defbc5777b33f6eelfMirai
2026-05-05 16:56:12a16a6a4686444ca8dc026c0b53a44d8c85e68ceea91e8e3e26317659253621c0elfMirai
2026-05-05 16:56:1227b8f5e7d7559780d72f7b1bdc37a94306ae4fbde984597dc0e8ed9749ea5813elfMirai
2026-05-05 16:56:12152baee5378cfd6cf618cf48828c1b56eb8911b7052a32fb8defbc5777b33f6eelfMirai
2026-05-05 16:56:12a75c22e19a726bb2c1bc3d463c7056a00d00a885fafff57ee8341d26eb382ee3elfMirai
2026-05-05 16:56:124bad797de031790695e15319b03e4c1577a30e522db74d569b86308cc00085e7elfMirai
2026-05-05 16:56:12a75c22e19a726bb2c1bc3d463c7056a00d00a885fafff57ee8341d26eb382ee3elfMirai
2026-05-05 16:56:12759f81ad528b5f831d38d61d0b63f6e22016c7747d2659b3e710902b168e8527sh 
2026-05-05 16:56:12b54cd0c234e41d48539a09f5e85362bf202697db0a1ebf949c57db9e20b908eaelfMirai