URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 193.56.3.121
Firstseen:2025-02-15 13:31:03 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-02-15 13:31:10 193.56.3.121Not listedAS50053 VDSKA-AS- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-02-15 13:41:03http://193.56.3.121/hOfflinemirai ext sh ua-wget DaveLikesMalwre
2025-02-15 13:40:04http://193.56.3.121/m.shOfflinemirai ext sh ua-wget DaveLikesMalwre
2025-02-15 13:40:04http://193.56.3.121/nas.shOfflinemirai ext sh ua-wget DaveLikesMalwre
2025-02-15 13:32:05http://193.56.3.121/armOfflineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:32:05http://193.56.3.121/arm6Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:12http://193.56.3.121/arm5Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:11http://193.56.3.121/mipsOfflineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/arm7Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/garm6Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/garm5Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/mpslOfflineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/gx86Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/garm7Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/garmOfflineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/gmipsOfflineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/x86Offlineelf mirai ext ua-wget ClearlyNotB
2025-02-15 13:31:10http://193.56.3.121/gmpslOfflineelf mirai ext ua-wget ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-02-15 13:41:0335fa77ae3443e0693e8ec819025d8bb29a7ad1867ddf1872797badc57f12f80bshMirai
2025-02-15 13:40:043437a31aa8fc8deb7f1191cc1e3bf18be01cf8614e6991418ae2859f124293a3shMirai
2025-02-15 13:40:0491412aba19744246983d438e0897dbffcf3278117ed8a7e00d2ac3c28911af8eshMirai
2025-02-15 13:32:04821e86729bd7cccffaba7ebd26bb6321d4c003dec9321ceb3c53ab5c1a5db7f3elfMirai
2025-02-15 13:32:0483b899e70d4616f3a8a0ae24aa3966d80df41b7610eac13e91e87a2c1c204cafelfMirai
2025-02-15 13:31:11e8ea0fae9e7cc8cd5c0cd7c65d86a31fd180876fb48f21bbb92ec469acd9f972elfMirai
2025-02-15 13:31:10b5313f10a15b85303d4c3d36380f5034c0faf97136ff28424151895350f8cf95elfMirai
2025-02-15 13:31:10f4736182c49622c71223d9f9a4018154a2405434e436fa6f4e9634ca60d7c7e5elfMirai
2025-02-15 13:31:100477ce2edc9366a3952e2c67bf11e49d268b21a4d82b429ebce649c07cc74e7aelfMirai
2025-02-15 13:31:100d6a4a50596d9bdf0f74c8469dcbafc528d43bc76b620b50c97d2e3255cfea6belfMirai
2025-02-15 13:31:098b95089c886dd6afa9fe14e130ecaa63e60f52d68a83f2434921643165664c37elfMirai
2025-02-15 13:31:09bd060089a4b8abeef358e9085c673e69773e8fb29b92c0b7d0ba0064c5bf11ebelfMirai
2025-02-15 13:31:09c4c890dabf8056176ddb55b60c226356708ec952a32b283858f19db58c3622c7elfMirai
2025-02-15 13:31:09019c369ae811f2300508a5ce2711338092d0d2a88415dc80a1dc2e3425b7d38belfMirai
2025-02-15 13:31:09d5833335a8316968d5496422a83b0af3580bedd0f57e59c737ddf6f63036d825elfMirai
2025-02-15 13:31:092c12ed08b1c5c5ac60171b5132b93e146dac600a0ab8efdb3ff304f9a875e4a4elfMirai
2025-02-15 13:31:095f8efb6e6e0b582872c9e124c22c9168b07ee9543215fd125352b63bd65a43a9elfMirai