URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 196.251.100.22
Firstseen:2025-11-22 09:01:05 UTC
Total malware sites :17
Online malware sites :11 (65%)
Offline Malware sites :6 (35%)
Newest active malware site :2025-11-22 12:12:10 UTC
Oldest active malware site :2025-11-22 09:01:13 UTC (Age: 2 days, 2 hours, 34 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-22 09:01:13 196.251.100.22SBL678968AS214967 OPTIBOUNCE- SCyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-22 15:52:15http://196.251.100.22/powerpcOfflineelf ua-wget abuse_ch
2025-11-22 12:12:10http://196.251.100.22/curl.shOnlinesh ua-wget BlinkzSec
2025-11-22 12:12:10http://196.251.100.22/wget.shOnlinesh ua-wget BlinkzSec
2025-11-22 12:12:09http://196.251.100.22/arm5Onlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:12:09http://196.251.100.22/arcOnlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:12:09http://196.251.100.22/aarch64Onlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:11:12http://196.251.100.22/mipselOnlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:11:12http://196.251.100.22/arm7Onlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:11:12http://196.251.100.22/mpslOnlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/arm4Onlineelf mirai ext ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/dlr.arm7Offlineelf ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/dlr.arm5Offlineelf ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/dlr.mipsOfflineelf ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/dlr.mpslOfflineelf ua-wget BlinkzSec
2025-11-22 12:11:11http://196.251.100.22/dlr.arm4Offlineelf ua-wget BlinkzSec
2025-11-22 09:01:13http://196.251.100.22/armOnline32-bit elf mirai ext Mozi ext threatquery
2025-11-22 09:01:13http://196.251.100.22/mipsOnline32-bit elf mirai ext Mozi ext threatquery

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-23 19:13:57d633d1ca4811f232d0594a19e7fb1caff2af4de4c229d06a60e0ae31068a5bd6elfMirai
2025-11-23 18:41:111e8f3cf5b4d3f882baf522d62bf9fc105fc34ad3562f0d2dca48dad26f5e2b26elfMirai
2025-11-23 18:08:50e6c563c09c5b0d3ece466e66741c73e24763c901a9511f2664128ba80ee653afelfMirai
2025-11-23 17:56:020feffdb13c3bce429c074cf1b5d10a33001b34a4e21d014d5f5151a9d01283f6elfMirai
2025-11-23 17:13:5907ad16f0878b5af7f123753058da3660d83cac7a6244038fa82a5279ecbcdec7elfMirai
2025-11-23 17:11:467496c6976b0e8438ea6f69e103f1af1e6d501a7fe26380914cbfc4010d6cf5b5elfMirai
2025-11-23 17:02:41f5433635d351bd7e97ec67483b7bbd10618996afac326c6c65cb12bbb7b1a28eelfMirai
2025-11-23 16:59:59e6c563c09c5b0d3ece466e66741c73e24763c901a9511f2664128ba80ee653afelfMirai
2025-11-23 16:49:151e8f3cf5b4d3f882baf522d62bf9fc105fc34ad3562f0d2dca48dad26f5e2b26elfMirai
2025-11-22 12:12:104b60235adbed0380f8d11f1b5c13eec42a2e8fcf42f75d0d802eefe273e2f717sh 
2025-11-22 12:12:10cef8b3dfbead4b74e244043e3ea8ea45281d58d6601bd839e9a4ed74d5137edcsh 
2025-11-22 12:12:09bcfc9d2b50bf532f047d666f88c4fa2de9410b40d8a339c840cce3fb69037ec9elfMirai
2025-11-22 12:12:0906693d6a05d2458d13aa8de434f5651a933ca8ffc1eee7a7ce0e3fe3c087db54elfMirai
2025-11-22 12:12:0937630084dd10bbd25b42984dd63fbc1cd05714615a31f1b1dd90a86b8e7100d1elfMirai
2025-11-22 12:11:12ca4bd50228d92ac1266506b2ac7fb5636638bd6f3e8ae710fc373c41189ada26elfMirai
2025-11-22 12:11:121722e1c45b9505351948ded6293528b5baeeba06c892f13ba028e49fb0611797elfMirai
2025-11-22 12:11:121722e1c45b9505351948ded6293528b5baeeba06c892f13ba028e49fb0611797elfMirai
2025-11-22 12:11:1139ccf5403edb501d79b7d765ec915f3bf78840ecc9ae4ded56e205a539b33ff1elfMirai
2025-11-22 09:01:1308fe033056f2f363637df7eaa1395592cb81e9fe81cd47c0ebd4179dae842f31elfMirai
2025-11-22 09:01:1239ccf5403edb501d79b7d765ec915f3bf78840ecc9ae4ded56e205a539b33ff1elfMirai