URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 196.189.96.59
Firstseen:2025-01-10 00:29:03 UTC
Total malware sites :53
Online malware sites :1 (2%)
Offline Malware sites :52 (98%)
Newest active malware site :2026-03-23 23:26:08 UTC
Oldest active malware site :2026-03-23 23:26:08 UTC (Age: 7 hours, 36 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-01-10 00:29:05 196.189.96.59Not listedAS24757 EthioNet-AS- ETyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-03-23 23:26:08http://196.189.96.59:32864/iOnline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-16 07:42:14http://196.189.96.59:35397/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-16 07:26:19http://196.189.96.59:35397/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-09 08:14:26http://196.189.96.59:33730/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-09 07:44:17http://196.189.96.59:33730/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-01 02:05:22http://196.189.96.59:56703/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-03-01 01:32:07http://196.189.96.59:56703/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-30 10:41:17http://196.189.96.59:52347/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-29 03:25:20http://196.189.96.59:52347/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-24 16:39:07http://196.189.96.59:55162/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-24 16:04:11http://196.189.96.59:55162/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-03 22:03:12http://196.189.96.59:55671/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-12-03 21:35:14http://196.189.96.59:55671/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-11-15 03:01:08http://196.189.96.59:51661/iOffline32-bit elf mirai ext Mozi ext threatquery
2025-11-12 11:12:13http://196.189.96.59:36509/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-11-12 05:36:11http://196.189.96.59:36509/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-11-08 06:25:08http://196.189.96.59:50083/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-24 22:39:15http://196.189.96.59:48974/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-24 22:19:20http://196.189.96.59:48974/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-08-21 06:38:10http://196.189.96.59:55248/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-08-20 10:40:13http://196.189.96.59:41645/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-08-20 10:32:19http://196.189.96.59:41645/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-01 21:25:26http://196.189.96.59:39616/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-01 21:00:08http://196.189.96.59:39616/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-26 01:34:08http://196.189.96.59:40759/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-26 01:14:10http://196.189.96.59:40759/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-14 06:50:08http://196.189.96.59:57130/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-14 06:25:12http://196.189.96.59:57130/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-04-01 10:32:04http://196.189.96.59:40190/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-04-01 09:09:04http://196.189.96.59:40190/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-24 01:29:06http://196.189.96.59:48685/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-24 01:05:23http://196.189.96.59:48685/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-15 23:55:14http://196.189.96.59:49849/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-15 17:57:05http://196.189.96.59:49849/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-12 04:18:05http://196.189.96.59:45813/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-10 00:44:04http://196.189.96.59:48021/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-10 00:22:04http://196.189.96.59:48021/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-10 00:04:05http://196.189.96.59:48021/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2025-03-04 05:46:03http://196.189.96.59:56811/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-04 05:11:03http://196.189.96.59:56811/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-01 21:04:04http://196.189.96.59:56388/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-01 20:38:05http://196.189.96.59:56388/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-06 09:09:04http://196.189.96.59:56119/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-05 04:18:04http://196.189.96.59:35528/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-04 00:54:04http://196.189.96.59:41008/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-04 00:27:04http://196.189.96.59:41008/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-03 08:04:04http://196.189.96.59:41008/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2025-01-12 23:13:05http://196.189.96.59:60978/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-01-12 22:48:06http://196.189.96.59:60978/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-01-11 01:26:06http://196.189.96.59:38443/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-01-11 01:12:07http://196.189.96.59:38443/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-01-10 01:32:11http://196.189.96.59:57532/iOffline32-bit elf mirai ext threatquery
2025-01-10 00:29:05http://196.189.96.59:57532/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-03-23 23:26:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-16 07:42:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-16 07:26:1912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-09 08:14:2612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-09 07:44:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-01 02:05:2112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-03-01 01:32:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-30 10:41:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-29 03:25:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-24 16:39:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-24 16:04:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-03 22:03:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-12-03 21:35:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-15 03:01:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-12 11:12:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-12 05:36:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-08 06:25:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-24 22:39:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-24 22:19:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-08-21 06:38:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-08-20 10:40:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-08-20 10:32:1912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-01 21:25:2612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-01 21:00:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-26 01:34:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-26 01:14:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-14 06:50:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-14 06:25:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-01 10:32:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-01 09:09:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-24 01:29:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-24 01:05:2212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-15 23:55:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-15 17:57:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-12 04:18:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-10 00:44:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-10 00:22:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-10 00:04:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-04 05:46:0312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-04 05:11:0312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-01 21:04:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-01 20:38:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-06 09:09:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-05 04:18:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-04 00:54:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-04 00:27:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-03 08:04:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-12 23:13:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-12 22:48:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-11 01:26:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-11 01:12:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-10 01:32:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-01-10 00:29:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai