URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.244.36.205
Firstseen:2024-06-10 10:22:04 UTC
Total malware sites :46
Online malware sites :0 (0%)
Offline Malware sites :46 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-06-10 10:22:09 185.244.36.205slot0.dating-notify.comNot listedAS62068 SpectraIP- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-06-15 14:38:04http://185.244.36.205/i586?ddosOfflineddos elf mirai ext Gandylyan1
2024-06-11 05:51:09http://185.244.36.205/x86_64Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:09http://185.244.36.205/arm6Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:09http://185.244.36.205/i586Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:09http://185.244.36.205/arm7Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/multiOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/bxOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/lllOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/zzOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/goclOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/irzOfflineshellscript LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/mpslOfflineelf mirai ext LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/mipsOfflineelf mirai ext LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/arm5Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/arm4Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:08http://185.244.36.205/i686Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/av.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/xaxaOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/bOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/tplinkOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/w.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/ruckOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/fdgsfgOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/test.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/fbOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/linksysOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/k.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/aaaOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/sh4Offlineelf mirai ext LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/ipcOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/sdtOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/vcOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/weedOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/totoOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/asdOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/jawsOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/z.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/wget.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/c.shOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/magOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/liOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/gOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/create.pyOfflineshellscript LemonHaze420__
2024-06-11 05:51:06http://185.244.36.205/f5Offlineshellscript LemonHaze420__
2024-06-10 10:22:09http://185.244.36.205/hmipsOfflineelf mirai ext tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-06-15 14:38:04d26f2b696a5da973a8809414703091170e940e738e5471fec5f80f0c9ae3f26celfMirai
2024-06-13 20:25:40c5175891515f704a54d006a99dde4b2f8bc71439b6565e8bba36b9264956742delf  
2024-06-13 20:07:438351842d2acc77d8c5d0d19e0f8ad076c4a6ad800b6120a016abf6d4a776eb63elf  
2024-06-13 20:05:236dc23908a245b2673d6c4994ebc3057c64898ed92c720ff9aa648e89161c2f3eelf  
2024-06-13 20:03:44a81ffa92f2a1a47410815b3ac845335d06e9896468c5ae81763e88dc0946bc0eelf  
2024-06-13 20:01:3414fcc4c34928e13fedcde28f5e4a941e2de41f8b51b8e85c5ef41693d208487delf  
2024-06-11 05:51:09361cd32a750b89857322f54b665f7f8849407ba09074e6303be0f26a351f39b5elfMirai
2024-06-11 05:51:09d26f2b696a5da973a8809414703091170e940e738e5471fec5f80f0c9ae3f26celfMirai
2024-06-11 05:51:0913966994581adf90c88d36fff75eb33c4a79557cf55fd616124a8c77f883e983elfMirai
2024-06-11 05:51:098ed5281c024dc7cf99273c32faa92e358392272a01898958399e324e666c4fd4elfMirai
2024-06-11 05:51:086845e34952a416113dbc6fbffae8245d708c9bab6dc801c16f34a84744a3b7ccelfMirai
2024-06-11 05:51:08d2053d4c1f448d774aa6f7f0d36ee486a9801218a3b654e71726a46028b2bb46elfMirai
2024-06-11 05:51:0860be4a7179ddc4d9f12fba876443b3d782508b26fd3a93f89c4d128396abcb3eelfMirai
2024-06-11 05:51:08819e3765d5c40a66951c194f67cdb783e1a711cc3499dd44a43d1cfdec06af4delfMirai
2024-06-11 05:51:086fdf5b4b08a5894339c26249e190ce627b9585af846573098bed2c050d0ae80belfMirai
2024-06-10 17:56:58d2053d4c1f448d774aa6f7f0d36ee486a9801218a3b654e71726a46028b2bb46elfMirai
2024-06-10 15:03:0052112737d26b291edc72bc480b3ee10aace9c9dfc7c92ce97ebea08461fdca64elf  
2024-06-10 12:58:13e9a41f7f329c5018df5a8793565b314964075ae40271a765662d0180b5beecc2elfMirai
2024-06-10 10:22:05f35ab105bd6d1a2ba7a41a858dbe43411b038cc08166fe697058b753bb21f875elfMirai