URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 202.1.31.174
Firstseen:2026-01-12 11:43:05 UTC
Total malware sites :17
Online malware sites :16 (94%)
Offline Malware sites :1 (6%)
Newest active malware site :2026-01-13 14:31:15 UTC
Oldest active malware site :2026-01-12 11:43:23 UTC (Age: 1 day, 7 hours, 10 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-01-12 11:43:23 202.1.31.174Not listedAS149020 WEBHORIZON-AS-AP- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-13 14:32:14http://202.1.31.174/johenlastgen/johen.i468Offlineelf ua-wget NDA0E
2026-01-13 14:31:15http://202.1.31.174/1.shOnlinemirai ext sh ua-wget NDA0E
2026-01-12 11:43:27http://202.1.31.174/johenlastgen/johen.sh4Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:27http://202.1.31.174/johenlastgen/johen.mpslOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:27http://202.1.31.174/johenlastgen/johen.arm6Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:27http://202.1.31.174/johenlastgen/johen.armOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:27http://202.1.31.174/johenlastgen/johen.spcOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:26http://202.1.31.174/johenlastgen/johen.arcOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:26http://202.1.31.174/johenlastgen/johen.m68kOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:24http://202.1.31.174/johenlastgen/johen.x86_64Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:24http://202.1.31.174/johenlastgen/johen.arm7Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:24http://202.1.31.174/johenlastgen/johen.ppcOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:23http://202.1.31.174/johenlastgen/johen.i686Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:23http://202.1.31.174/johenlastgen/johen.x86Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:23http://202.1.31.174/johenlastgen/johen.mipsOnlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:23http://202.1.31.174/johenlastgen/johen.arm5Onlineelf mirai ext ua-wget BlinkzSec
2026-01-12 11:43:23http://202.1.31.174/johenlastgen/debugOnlineelf mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-01-13 14:31:151fdd5aec31db9c85e82047efe44201b51dc0fbcce280e5e8b2740310bf7f0095shMirai
2026-01-12 11:43:279a5b41814e1a4caf5c42ae7622316ed49dc10060ab189f68fa33ef4ac459abe2elfMirai
2026-01-12 11:43:277b14ac75bcacfe95ade13a12038b6264418f30b70a680c7ee624b71aff292adfelfMirai
2026-01-12 11:43:2777cb54840a32f1361a7007f821183a9d90fcbb992471b812f3fff477872bcfadelfMirai
2026-01-12 11:43:2749d6e0777fea7282626bc493c39e7872a285511033edbe4cb6ccc2b5058ca73felfMirai
2026-01-12 11:43:26d384816ab8fbbd2da4f8ef21ecde8b5054605eb0e39bfa1ec8a7287d771bc319elfMirai
2026-01-12 11:43:2650bc3dd71f99c5dcbd6b9c4aa246e4f5ab108379416a5283cee28ee916236e6aelfMirai
2026-01-12 11:43:26706933b63a14eaa535e84a565b76dbceacab6a0c413b966c7828d8980e2fb847elfMirai
2026-01-12 11:43:2476c88be27a69fe4878379414d17f9d6f1a9f3887c7eb27043b80093227eb136aelfMirai
2026-01-12 11:43:23719aae37a038b5f0699c7cb07c9088a5a398e5c96e3365149c94e35edb1aab10elfMirai
2026-01-12 11:43:230e257f4bb69885c6da9ce472b0ebe26da63c33e12e7fbb72e6913d03eaa2c2baelfMirai
2026-01-12 11:43:23575b2bfeea9646417fb699b0a24f7b574ed1232e6b7431fd1b67976fc8362836elfMirai
2026-01-12 11:43:231b9d6b20838cf34022d891984d6714b49825b06fac1e16c842d07baf3efb277aelfMirai
2026-01-12 11:43:23148ab876a1369b50822d60d9d6f8dc25f43a1052f570118c7deab86f5edccf73elfMirai
2026-01-12 11:43:23593d5a0d6d616bb94d26292330c33f890a3e56a795d5cd9dd3f7d6542a07fcc8elfMirai
2026-01-12 11:43:2362ff185e913511632d011c0fe7381e46a7ac2a0acfe1e1065f7263f0aa9f05a5elfMirai