URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 195.133.40.108
Firstseen:2021-07-22 14:22:03 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-07-22 14:22:05 195.133.40.108Not listedAS210976 TWC-EU- CZyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-02-24 13:53:06http://195.133.40.108/googlespace/.win32.exeOfflineexe Loki ext opendir abuse_ch
2023-02-22 13:09:05http://195.133.40.108/wincloud/.win32.exeOfflineexe Loki ext abuse_ch
2023-02-20 12:11:03http://195.133.40.108/ssh/.win32.exeOfflineexe Loki ext opendir abuse_ch
2023-02-18 08:21:04http://195.133.40.108/OneDrive/.win32.exeOfflineexe Loki ext opendir abuse_ch
2023-02-15 14:57:04http://195.133.40.108/explorer/.win32.exeOfflineexe Loki ext abuse_ch
2023-02-14 16:59:03http://195.133.40.108/spacedata/.win32.exeOfflineexe Loki ext opendir abuse_ch
2021-07-22 15:09:08http://195.133.40.108/AB4g5/Josho.spcOffline32 elf mirai ext sparc zbetcheckin
2021-07-22 14:22:15http://195.133.40.108/AB4g5/Josho.x86Offlineelf mirai ext tolisec
2021-07-22 14:22:13http://195.133.40.108/AB4g5/Josho.arm6Offlineelf tolisec
2021-07-22 14:22:11http://195.133.40.108/AB4g5/Josho.armOfflineelf mirai ext tolisec
2021-07-22 14:22:11http://195.133.40.108/AB4g5/Josho.arm7Offlineelf mirai ext tolisec
2021-07-22 14:22:11http://195.133.40.108/AB4g5/Josho.m68kOfflineelf mirai ext tolisec
2021-07-22 14:22:11http://195.133.40.108/AB4g5/Josho.ppcOfflineelf mirai ext tolisec
2021-07-22 14:22:11http://195.133.40.108/AB4g5/Josho.mpslOfflineelf mirai ext tolisec
2021-07-22 14:22:09http://195.133.40.108/AB4g5/Josho.sh4Offlineelf mirai ext tolisec
2021-07-22 14:22:05http://195.133.40.108/AB4g5/Josho.mipsOfflineelf mirai ext tolisec
2021-07-22 14:22:05http://195.133.40.108/AB4g5/Josho.arm5Offlineelf mirai ext tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-02-28 00:49:376ed50a5868a27769876f8cbff4f93982ed20881ed73f6a17ca7626b7da81e565exeLoki
2023-02-27 23:37:1199d0215079e5fa7783a1f4a945b9dcc57fde6bfebff9ecabc408fdb3ff29ba87exeLoki
2023-02-24 13:53:061f973d307ac6766796e6abcaf1c71b8e506859ebf82d9d176fafc564383b2e20exeLoki
2023-02-22 13:09:05ef55ccbcd896514df881410c71c4f5bfc27d49ccfb4a5eaad9107d53f0ac817fexeLoki
2023-02-20 12:11:03c2e87e031cf06cfbc066444c30dc76d1377857012a034143c7b039b292da73b9exeLoki
2023-02-18 08:21:04bd6d05a0b508e5bfc4c8d4a2c9bd7b307638986e460c160378bd5d98cd5850aaexeLoki
2023-02-15 14:57:0365cc33992ce4489d338c48feb5dbe78f5a252d5195bb7d56e6bcf631d26e8dd7exeLoki
2023-02-14 16:59:039f69c10fc02a6d92e09ba2a0ce64f3ad093448d5bfd69d0023337417c1ddb774exeLoki
2021-07-22 15:09:08a4efd9810d408db5b6b1723fc2b19c6afb286ab1a0998c6e18ef78bce5be90f2elfMirai
2021-07-22 14:22:15b3a30b12fe85fb9664bb5a87a508ab0510c2c1b8d4115a2617f52517fed05f73elfMirai
2021-07-22 14:22:13c147eaae23e62db5dde5a6072ae942bfadcd4cf1df31b67067381cc64d7d134aelf  
2021-07-22 14:22:11f8ea050a2e1402e5dbbe525715325ac341b5bf924727e56efbbdcd29a785f731elfMirai
2021-07-22 14:22:11c5bfa6033062a5ae9935c310a93fbf39364222f00d9774a9dcaa1f23c63c20dbelfMirai
2021-07-22 14:22:11c911fe805d9e26fbc02ffe52c67bf05fabcece62686ff0e71831dcae28a2083felfMirai
2021-07-22 14:22:11bbeddf033ad78be683db54a66ca977e17988f98afa30fa75cedc830234709735elfMirai
2021-07-22 14:22:11026ed4a5c1170328f18284c7b4a049d3d4944512ad40f35bb1df860c4cca5d93elfMirai
2021-07-22 14:22:0947e1e354ee2fe5ab7dd0e7bca3e4c0853d490cc471f610719dc60e3194ac9e65elfMirai
2021-07-22 14:22:05974915fc572faa8afe86527a4412175cc250bb6b4c96e925ba1a83e473c09d46elfMirai
2021-07-22 14:22:04678d2387c449051e7ea87dd27cf8528106298c6f262cb7a1e5c6ffee8326a4ddelfMirai