URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 2.56.59.196
Firstseen:2022-05-19 01:32:03 UTC
Total malware sites :22
Online malware sites :0 (0%)
Offline Malware sites :22 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-05-19 01:32:05 2.56.59.196Not listedAS3758 SINGNET- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-06-24 09:58:06http://2.56.59.196/bins//Saitama121.mipsOfflineddos mirai ext Gandylyan1
2022-06-16 10:30:05http://2.56.59.196/bins//Saitama121.arm7Offlineddos elf mirai ext Gandylyan1
2022-06-13 09:25:04http://2.56.59.196/bins//Saitama121.arm6Offlineddos elf mirai ext Gandylyan1
2022-06-10 13:19:04http://2.56.59.196/bins//Saitama121.mpslOfflineddos elf mirai ext Gandylyan1
2022-06-07 09:36:03http://2.56.59.196/bins//Saitama121.sh4Offlineddos elf mirai ext Gandylyan1
2022-06-06 10:38:04http://2.56.59.196/bins//Saitama121.ppcOfflineddos elf mirai ext Gandylyan1
2022-06-03 12:43:04http://2.56.59.196/Saitama.shOfflineshellscript zbetcheckin
2022-06-03 10:44:04http://2.56.59.196/bins//Saitama121.m68kOfflineddos elf mirai ext Gandylyan1
2022-05-24 13:49:04http://2.56.59.196/bins//Saitama121.arm5Offlineddos elf mirai ext Gandylyan1
2022-05-23 08:58:03http://2.56.59.196/bins//Saitama121.armOfflineDDoS Bot elf mirai ext Gandylyan1
2022-05-23 08:57:04http://2.56.59.196/multiuwu.shOfflineshellscript Gandylyan1
2022-05-19 02:47:04http://2.56.59.196/bins/Saitama121.spcOffline32 elf mirai ext sparc zbetcheckin
2022-05-19 01:32:06http://2.56.59.196/bins/Saitama121.mipsOfflineelf mirai ext tolisec
2022-05-19 01:32:06http://2.56.59.196/bins/Saitama121.x86Offlineelf mirai ext tolisec
2022-05-19 01:32:06http://2.56.59.196/bins/Saitama121.armOfflineelf mirai ext tolisec
2022-05-19 01:32:06http://2.56.59.196/bins/Saitama121.arm7Offlineelf mirai ext tolisec
2022-05-19 01:32:06http://2.56.59.196/bins/Saitama121.arm6Offlineelf mirai ext tolisec
2022-05-19 01:32:05http://2.56.59.196/bins/Saitama121.mpslOfflineelf mirai ext tolisec
2022-05-19 01:32:05http://2.56.59.196/bins/Saitama121.arm5Offlineelf mirai ext tolisec
2022-05-19 01:32:05http://2.56.59.196/bins/Saitama121.m68kOfflineelf mirai ext tolisec
2022-05-19 01:32:05http://2.56.59.196/bins/Saitama121.ppcOfflineelf mirai ext tolisec
2022-05-19 01:32:05http://2.56.59.196/bins/Saitama121.sh4Offlineelf mirai ext tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-06-24 09:58:062497439848f5a3ca782f66342b8becf7d6f60ef436683e648b7df4c87fc3dc13elfMirai
2022-06-16 10:30:05192ac3d719930d52b3a2923bdcb18ff88eb58644afe7f20fda5c578c4c08e812elfMirai
2022-06-13 09:25:04b3323a5bba07180281870cd79e77f69a2d8b448d81af5c84ad145b73c33d3b34elfMirai
2022-06-10 13:19:04fdec1f038fdba45ba380ebeb970c30203afffd4862dc7e51080c542ea6e0dceeelfMirai
2022-06-07 09:36:03822476f603a7c8b26a426fae3d4463509eebaa714a116ab02260a4af8de8a27delfMirai
2022-06-06 10:38:042905d677ad42d8690e9dbad8daa5cc51fa77b9a43d7065121e626c52de283243elfMirai
2022-06-03 12:43:04a30ff63dc4951d23a690906117e0ce4516d3710ca68cd4c1cc1b2f69bfbf36b2unknown 
2022-06-03 10:44:04b6be4529f5ad301a331aaf7b37b455e48c8d14204ede8d34f41159d7cf19240belfMirai
2022-05-24 13:49:04e389702b7194c5c62d0cf23617cd54694f97dd25ca6fccd1daa19f0eee08746aelfMirai
2022-05-23 08:58:03920b5dc483b4d0773bbc753f190dba5384f5683f85a719d70da16013cc6ab2f1elfMirai
2022-05-23 08:57:043320cfed5e6e7edef694ef5c92bd913fff3aeb1525d8b77dcec1048b14e85846unknown  
2022-05-19 02:47:048640212124000fd6a88e4147c49e09e681aaead8c9b6756215f7ff2271d4b6ccelfMirai
2022-05-19 01:32:062497439848f5a3ca782f66342b8becf7d6f60ef436683e648b7df4c87fc3dc13elfMirai
2022-05-19 01:32:062835029b31d5f674c0ac48da199aedd2dce59e5d4814ca5c4041ca86213144dfelfMirai
2022-05-19 01:32:06920b5dc483b4d0773bbc753f190dba5384f5683f85a719d70da16013cc6ab2f1elfMirai
2022-05-19 01:32:06192ac3d719930d52b3a2923bdcb18ff88eb58644afe7f20fda5c578c4c08e812elfMirai
2022-05-19 01:32:06b3323a5bba07180281870cd79e77f69a2d8b448d81af5c84ad145b73c33d3b34elfMirai
2022-05-19 01:32:04fdec1f038fdba45ba380ebeb970c30203afffd4862dc7e51080c542ea6e0dceeelfMirai
2022-05-19 01:32:04e389702b7194c5c62d0cf23617cd54694f97dd25ca6fccd1daa19f0eee08746aelfMirai
2022-05-19 01:32:04b6be4529f5ad301a331aaf7b37b455e48c8d14204ede8d34f41159d7cf19240belfMirai
2022-05-19 01:32:042905d677ad42d8690e9dbad8daa5cc51fa77b9a43d7065121e626c52de283243elfMirai
2022-05-19 01:32:04822476f603a7c8b26a426fae3d4463509eebaa714a116ab02260a4af8de8a27delfMirai