URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.82.202.195
Firstseen:2024-09-28 08:46:04 UTC
Total malware sites :22
Online malware sites :0 (0%)
Offline Malware sites :22 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-09-28 08:46:08 185.82.202.195Not listedAS60117 HS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-02 13:13:13http://185.82.202.195/i586Offlinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:13http://185.82.202.195/i686Offlinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:11http://185.82.202.195/x86Offlinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:11http://185.82.202.195/m68kOfflinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:11http://185.82.202.195/sparcOfflinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:11http://185.82.202.195/sh4Offlinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:10http://185.82.202.195/mipselOfflinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:10http://185.82.202.195/mipsOfflinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-10-02 13:13:10http://185.82.202.195/ppcOfflinebotnet dayzddos dedsec elf gafgyt ext kaiten RyM ua-wget unknown Vixaati Yakuza ClearlyNotB
2024-09-28 08:48:05http://185.82.202.195/roze.m68kOffline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:47:06http://185.82.202.195/roze.sparcOffline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.sh4Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.ppcOffline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.mipselOffline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.armv4Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.armv6Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/update.shOffline36mUsername botnet dayzddos dedsec gafgyt ext kaiten roze RyM sh unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.armv5Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.x86Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.mipsOffline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.i686Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E
2024-09-28 08:46:08http://185.82.202.195/roze.i586Offline36mUsername botnet dayzddos dedsec elf gafgyt ext kaiten roze RyM unknown Vixaati Yakuza NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-02 13:13:132f07180857aa758e73286ded485b3b4a88b97d8b4f861d2800f130de44af1052elfGafgyt
2024-10-02 13:13:139edfff26589c7bea9145e5f0b5f1db94e9c61735d37e1cbdc0290680116f1a98elfGafgyt
2024-10-02 13:13:118084d1049c45e8d45d3d0c94be775524fb3ae7424b1cf380ff1a2dddc67cc8b7elfGafgyt
2024-10-02 13:13:11590224bde28bd1c0668ec90ea466df10c30fde3b056b0e33eedd26c60d2554f1elfGafgyt
2024-10-02 13:13:10564650bbff4ad97729aec4d0be2709b4e960a3d66f41266f0b68692ed7f8d05eelfGafgyt
2024-10-02 13:13:103b7de93864a886f4e4ebaa02c2f61deb108b5477ea6bc3f47d5db5faff4cacadelfGafgyt
2024-10-02 13:13:10d96e411f0a931cc75de7f8f6cf4ddcf375873474e064907c2c71b7db1fc733e8elfGafgyt
2024-10-02 13:13:10bfe52dfd18218c862326f566ce54f710278b21ce07e31420f16f2dfcbdc8ae08elfGafgyt
2024-10-02 13:13:10b66629c8c1e62de5eb149d774df0c06d0747e08cb7fdc7077ab37b5cf5db8de3elfGafgyt
2024-10-02 00:25:28aba479f19dbeff2bb49407fd8e8f4a64d25965c97de3505380114cfa38bd709esh  
2024-09-28 08:48:0585c82b166d6f9ae1f4d00887c8201d3eee53f794c6e477c9c16409d874e12e25elfGafgyt
2024-09-28 08:47:056333e43b7f20ce3e9b9699c8014be217a2299b2802fa2212824ce42fe88e3489elfGafgyt
2024-09-28 08:46:0819bfed4c06a43f996728e05f3dc66a057571850b7bfb0f04ca79bfe33f5b563eelfGafgyt
2024-09-28 08:46:08f7dcfd6aa423591f7e55d4ad23332c5bfb66860d9db2098602c85c9bd714cac0elfGafgyt
2024-09-28 08:46:08b7e3a762c4778eb76bf8b204a49b8d79ad44e716f1f10e2d350d49ffc64ae53delfGafgyt
2024-09-28 08:46:0800db4ce749ee457c599b38d74f2ac957700986caf50b169c3100348642bc1662elfGafgyt
2024-09-28 08:46:0883494ed11fc33a848fd5c8d6fc92d92b9a5a4c712fc9ecfcdb84cef6271ea0bfshGafgyt
2024-09-28 08:46:08c764ef08a7eff4a0ceaeea36fee76ade93d44a0a1fbcf0ae89a75900cb5f4bf1elfGafgyt
2024-09-28 08:46:0853f6f93301c9dc2b088ebe8af20f05dbb8f962129139070741f92dc628d05932elfGafgyt
2024-09-28 08:46:0876861efa25e6e8bfe9eb78b48d0dc58c6dd0e7a8f13d382692887327c07156f1elfGafgyt
2024-09-28 08:46:08173eeb3c41ecd5bd207e4761b2d39c3b916d501a35b9b0718754b894627aedadelfGafgyt
2024-09-28 08:46:08dfb7dc3cee020478bb4356a3ebc93d063e9098d4c383ebbc3c4413a1eaa9f355elfGafgyt
2024-09-28 08:46:07e74a8e093acd847ff86ff9fe6f469c9f22f77d3d898a8a2c56f3952e437ece13elfGafgyt