URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 212.70.149.164
Firstseen:2024-05-30 20:37:05 UTC
Total malware sites :58
Online malware sites :0 (0%)
Offline Malware sites :58 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-06-28 14:46:01http://212.70.149.164:8080/Photo.scrOfflineCoinMiner exe iframe Photo.scr scr NDA0E
2024-06-28 13:54:08http://212.70.149.164/Photo.scrOfflineCoinMiner exe iframe Photo.scr scr NDA0E
2024-06-28 13:26:11http://212.70.149.164:8080/dlr.mpslOfflineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/arcOfflineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164/mpslOfflineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/arm4Offlineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/nshOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/ruckOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164/dlr.mipsOfflineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/aaaOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164/dvrOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/arm5Offlineelf mirai ext abus3reports
2024-06-28 13:26:11http://212.70.149.164/wget.shOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164:8080/dvrOfflineelf shellscript abus3reports
2024-06-28 13:26:11http://212.70.149.164/lOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/linnnOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164:8080/nOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/goahead.shOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164:8080/lOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/ruckOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/nOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/nshOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164:8080/linnnOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164:8080/av.shOfflineelf shellscript abus3reports
2024-06-28 13:26:10http://212.70.149.164/av.shOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164/arm4Offlineelf mirai ext abus3reports
2024-06-28 13:26:09http://212.70.149.164/jkOfflineelf abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/wget.shOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164/aaaOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/tOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/bOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/arm6Offlineelf mirai ext abus3reports
2024-06-28 13:26:09http://212.70.149.164/arm6Offlineelf mirai ext abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/mipsOfflineelf mirai ext abus3reports
2024-06-28 13:26:09http://212.70.149.164/bOfflineelf shellscript abus3reports
2024-06-28 13:26:09http://212.70.149.164:8080/dlr.arm6Offlineelf mirai ext abus3reports
2024-06-28 13:26:09http://212.70.149.164/dlr.armOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/jkOfflineelf abus3reports
2024-06-28 13:26:08http://212.70.149.164/arm7Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/dlr.arm7Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/arcOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/mpslOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/dlr.arm5Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/dlr.arm6Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/dlr.mipsOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/dlr.arm5Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/dlr.arm7Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/x86_64Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/dlr.armOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/tOfflineelf shellscript abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/arm7Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/dlr.mpslOfflineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164:8080/goahead.shOfflineelf shellscript abus3reports
2024-06-28 13:26:08http://212.70.149.164/arm5Offlineelf mirai ext abus3reports
2024-06-28 13:26:08http://212.70.149.164/mipsOfflineelf mirai ext abus3reports
2024-06-28 13:26:05http://212.70.149.164:8080/liOfflineelf shellscript abus3reports
2024-06-28 13:26:05http://212.70.149.164/liOfflineelf shellscript abus3reports
2024-05-30 20:37:07http://212.70.149.164/x86_64Offline 64-bit elf mirai ext x86-64 geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-11 17:22:46807126cbae47c03c99590d081b82d5761e0b9c57a92736fc8516cf41bc564a7dexe CoinMiner
2024-07-11 16:27:00807126cbae47c03c99590d081b82d5761e0b9c57a92736fc8516cf41bc564a7dexe CoinMiner
2024-07-08 04:35:33d18f87c4b237ee2fe8cd55a09036a74de1234304072e0ae718b756ae8bb28e47exe 
2024-07-08 04:34:30d18f87c4b237ee2fe8cd55a09036a74de1234304072e0ae718b756ae8bb28e47exe 
2024-07-08 00:22:22ed1fc151e5f0837ea7710c1b370968b5ad7197e46a5040992a79bd8cfc2cf9f9exe CoinMiner
2024-07-07 21:08:5792ed844e765bb135ad0511d43529f8d6df3519f64eea74d4313a5d40494c43b0exe CoinMiner
2024-07-07 18:11:06f5508a6f0a26f4dc7126d1998eb58e847ada0f0249adbe3a48194deb6c450b66exe CoinMiner
2024-07-07 15:02:55e19f3a1bfdef9fd9aac8158ae05d35fbbcca7bc2574f3fc0c789d8d04b274f55exe  
2024-07-07 12:08:51e19f3a1bfdef9fd9aac8158ae05d35fbbcca7bc2574f3fc0c789d8d04b274f55exe  
2024-07-07 02:16:3622cbcd7f2d5772b6c7908d5805feb1cadb5d2d6e883f7923e76486d329b1e343elfMirai
2024-07-07 00:15:3808a20881b7e805df6e9f372084eb40c87ce4aa72311a5936bd16ebf981c9b841elfMirai
2024-07-07 00:03:35a955216b6e74306980c17ed2bc2ae5dd2fb9c81adde95337a480be8d148798b5elfMirai
2024-07-06 23:22:525120e927add504b55f5a98c1df7de5fb09a09df015d05c1b0a4797d79c56c317elfMirai
2024-07-06 23:17:58f5779ea4e1e9b6778996ff569e595f373da00d88224e9e3313c046b8a84577f6elf  
2024-07-06 23:00:56f3d8bc4b5c3dc2b7bd4df079aad66f146c73b34dbfca3412be17016aeeea547eelfMirai
2024-07-06 22:56:36f5779ea4e1e9b6778996ff569e595f373da00d88224e9e3313c046b8a84577f6elf  
2024-07-06 22:53:48a955216b6e74306980c17ed2bc2ae5dd2fb9c81adde95337a480be8d148798b5elfMirai
2024-07-06 22:51:5902fda164415b6655ffaf8564b5830d7743114fac40f847c9dd2170a6fad0494aelfMirai
2024-07-06 22:42:505120e927add504b55f5a98c1df7de5fb09a09df015d05c1b0a4797d79c56c317elfMirai
2024-07-06 22:33:5008a20881b7e805df6e9f372084eb40c87ce4aa72311a5936bd16ebf981c9b841elfMirai
2024-07-06 22:09:28f3d8bc4b5c3dc2b7bd4df079aad66f146c73b34dbfca3412be17016aeeea547eelfMirai
2024-07-06 22:07:1122cbcd7f2d5772b6c7908d5805feb1cadb5d2d6e883f7923e76486d329b1e343elfMirai
2024-07-06 22:05:5602fda164415b6655ffaf8564b5830d7743114fac40f847c9dd2170a6fad0494aelfMirai
2024-07-03 00:13:103f509a48bfb5cf1a5da35c861c70b5777e61a5dbf250331e5e731a912a148672elfMirai
2024-07-03 00:06:5321f70e763eba1af39ba020313bade4a8b591dfe333867f5e6ae184ab3ef243bdelfMirai
2024-07-03 00:04:163885266ce83f209f472809c88e620048b6b9a88375fbcc3b824bbff63e542871elfMirai
2024-07-03 00:02:48b5c7cf06e3a2aa585743bb097e81c74e15e38f764f004d7c8cd63ce4c8138e2felfMirai
2024-07-02 23:44:167fbc24fea9f2259997f051bfdd08ea74867d19c4fe2a112818624f1a31cf52c5elfMirai
2024-07-02 23:41:327fbc24fea9f2259997f051bfdd08ea74867d19c4fe2a112818624f1a31cf52c5elfMirai
2024-07-02 23:37:5621f70e763eba1af39ba020313bade4a8b591dfe333867f5e6ae184ab3ef243bdelfMirai
2024-07-02 23:33:25d0534978b2c02fe70e4c60c9f337d647b5b27def606d0744030b801195ee4544elfMirai
2024-07-02 23:32:1518f7948a9dffdacbd6e48476d36d43836c28fd810140a98b63d1434d5c3d617delfMirai
2024-07-02 23:28:15d0534978b2c02fe70e4c60c9f337d647b5b27def606d0744030b801195ee4544elfMirai
2024-07-02 23:16:07b5c7cf06e3a2aa585743bb097e81c74e15e38f764f004d7c8cd63ce4c8138e2felfMirai
2024-07-02 23:14:573f509a48bfb5cf1a5da35c861c70b5777e61a5dbf250331e5e731a912a148672elfMirai
2024-07-02 23:04:043885266ce83f209f472809c88e620048b6b9a88375fbcc3b824bbff63e542871elfMirai
2024-07-02 23:03:2318f7948a9dffdacbd6e48476d36d43836c28fd810140a98b63d1434d5c3d617delfMirai
2024-06-28 14:46:00af94ddf7c35b9d9f016a5a4b232b43e071d59c6beb1560ba76df20df7b49ca4cexe CoinMiner
2024-06-28 13:54:08af94ddf7c35b9d9f016a5a4b232b43e071d59c6beb1560ba76df20df7b49ca4cexe CoinMiner
2024-06-28 13:26:117b689778e29f9bdb249748a3c0db49db53d150d85031dea3dfce7f9dec68ee92elf 
2024-06-28 13:26:115c697d5c77721edc85f25704418a8377b26b90b51e5d34ba289e3cb7d91e0a83elfMirai
2024-06-28 13:26:11f803e06cce936cca205979fc43ab1190f8d5b4efd9d786254c41fe1eab074e04elfMirai
2024-06-28 13:26:11a7407538df92ccff548f73c06218af427b1208320e11e1b973ac176b1f9ddee6sh  
2024-06-28 13:26:1159fcbf6fb74febaf325893302593e78b5ca1994eecde0de77b6db4e37b4bc1f1elfMirai
2024-06-28 13:26:11f04948271d6d547e23057e8d4dbb9d8b1d8e2f89431f860bb7dfc95c0180d3fash  
2024-06-28 13:26:1158a916dc6c2cd1d8e51353b2c78d1beb332ee6483f0aad2daa3c39088e18f63felfMirai
2024-06-28 13:26:110efc1b9825a65e16c006e7b88949e63466cf5cd99975ea79be4ebf7d8bf1853dsh  
2024-06-28 13:26:1123e5eb57c0617e9b801b48bad6a207a73ef3ec6061824b14c3b961a2ba5f8f8ash  
2024-06-28 13:26:11f6b343faf65489ba192f54d37843b23136d319f36de1b926dd5885d8eb75ed76sh  
2024-06-28 13:26:11d0317e318ce2d65affab8f0791ca94f77eb09dfe51931b966a99d50b56ea17b0elfMirai
2024-06-28 13:26:110efc1b9825a65e16c006e7b88949e63466cf5cd99975ea79be4ebf7d8bf1853dsh  
2024-06-28 13:26:11f6b343faf65489ba192f54d37843b23136d319f36de1b926dd5885d8eb75ed76sh  
2024-06-28 13:26:10f04948271d6d547e23057e8d4dbb9d8b1d8e2f89431f860bb7dfc95c0180d3fash  
2024-06-28 13:26:100efc1b9825a65e16c006e7b88949e63466cf5cd99975ea79be4ebf7d8bf1853dsh  
2024-06-28 13:26:109cebebb2a93ee97e646c23e1b0657e2ca405bce22cb543fd85ba1926aa19d0aesh  
2024-06-28 13:26:10a7407538df92ccff548f73c06218af427b1208320e11e1b973ac176b1f9ddee6sh  
2024-06-28 13:26:1077df123fe24fc19985d581f43a12cdeeac0b37c99afe21f4bf1beadda8da3376sh  
2024-06-28 13:26:1077df123fe24fc19985d581f43a12cdeeac0b37c99afe21f4bf1beadda8da3376sh  
2024-06-28 13:26:10e3034aa94ab874dc6a2b5e55c0251c4942ecf16603133e034b72de4eb4389649sh  
2024-06-28 13:26:10e3034aa94ab874dc6a2b5e55c0251c4942ecf16603133e034b72de4eb4389649sh  
2024-06-28 13:26:099cebebb2a93ee97e646c23e1b0657e2ca405bce22cb543fd85ba1926aa19d0aesh  
2024-06-28 13:26:093661b3e11abcb84d00e9da00fcfd5c64e2b8f413149dfa8e637b4fabed276359sh  
2024-06-28 13:26:09413fe45de075ab6045fc1a11eb7d3671e89f84a927e1db0ca27323ab82ffba68elf 
2024-06-28 13:26:090efc1b9825a65e16c006e7b88949e63466cf5cd99975ea79be4ebf7d8bf1853dsh  
2024-06-28 13:26:0923e5eb57c0617e9b801b48bad6a207a73ef3ec6061824b14c3b961a2ba5f8f8ash  
2024-06-28 13:26:0959fcbf6fb74febaf325893302593e78b5ca1994eecde0de77b6db4e37b4bc1f1elfMirai
2024-06-28 13:26:093313c98be0a168664761362404dd1cfde37454d526a66d3b00e61dd35094c20bsh  
2024-06-28 13:26:0903eaadd2945b82941ff2ae9225386ef8e22adb3f89ec180d6419ab7434bff98csh  
2024-06-28 13:26:0994ff98ea70aa03d362737895b3bc1a5b668b446f8910094cabacc196edc21a3belfMirai
2024-06-28 13:26:09dd326d6f910d0883d1f81edd75d827c76a8fd744c36a59783103afc9e8174d24elf  
2024-06-28 13:26:08f803e06cce936cca205979fc43ab1190f8d5b4efd9d786254c41fe1eab074e04elfMirai
2024-06-28 13:26:08d116b0085b4771bab18e70b3145634919264dd0f21a81ab3a1be2b9ff03c8573elf  
2024-06-28 13:26:08181ba41d0579d05dc39677385622a23aec01cb3d3bcd79488af3d03fc69b33f9elfMirai
2024-06-28 13:26:08abe70af2e3a5115cd3dca195d9e8c2c9b6a441cb3f13bebed952e99377dd5106elf  
2024-06-28 13:26:088c53b66b66fff41a00089963659f503ccbdd21b99b1cbec2ff4e7ebe87c65bd9elfMirai
2024-06-28 13:26:08abe70af2e3a5115cd3dca195d9e8c2c9b6a441cb3f13bebed952e99377dd5106elf  
2024-06-28 13:26:0858a916dc6c2cd1d8e51353b2c78d1beb332ee6483f0aad2daa3c39088e18f63felfMirai
2024-06-28 13:26:0819bf023efc765afce44b15293c47972ae744d7372cc9849f934da1a2f646bc8belfMirai
2024-06-28 13:26:083313c98be0a168664761362404dd1cfde37454d526a66d3b00e61dd35094c20bsh  
2024-06-28 13:26:08a3e7f437a5618714bdf6f501e8aca5b6582de3c3215e1aad890158edc553ff3aelfMirai
2024-06-28 13:26:08413fe45de075ab6045fc1a11eb7d3671e89f84a927e1db0ca27323ab82ffba68elf 
2024-06-28 13:26:085c697d5c77721edc85f25704418a8377b26b90b51e5d34ba289e3cb7d91e0a83elfMirai
2024-06-28 13:26:083661b3e11abcb84d00e9da00fcfd5c64e2b8f413149dfa8e637b4fabed276359sh  
2024-06-28 13:26:08d0317e318ce2d65affab8f0791ca94f77eb09dfe51931b966a99d50b56ea17b0elfMirai
2024-06-28 13:26:08dd326d6f910d0883d1f81edd75d827c76a8fd744c36a59783103afc9e8174d24elf  
2024-06-28 13:26:08a3e7f437a5618714bdf6f501e8aca5b6582de3c3215e1aad890158edc553ff3aelfMirai
2024-06-28 13:26:08181ba41d0579d05dc39677385622a23aec01cb3d3bcd79488af3d03fc69b33f9elfMirai
2024-06-28 13:26:0803eaadd2945b82941ff2ae9225386ef8e22adb3f89ec180d6419ab7434bff98csh  
2024-06-28 13:26:0819bf023efc765afce44b15293c47972ae744d7372cc9849f934da1a2f646bc8belfMirai
2024-06-28 13:26:0894ff98ea70aa03d362737895b3bc1a5b668b446f8910094cabacc196edc21a3belfMirai
2024-06-28 13:26:087b689778e29f9bdb249748a3c0db49db53d150d85031dea3dfce7f9dec68ee92elf 
2024-06-28 13:26:078c53b66b66fff41a00089963659f503ccbdd21b99b1cbec2ff4e7ebe87c65bd9elfMirai
2024-06-08 08:40:21d116b0085b4771bab18e70b3145634919264dd0f21a81ab3a1be2b9ff03c8573elf  
2024-06-06 09:29:1412cd4afdaccd0bcf1927bb68733473483af3878da0cc2d0917c4c926c5eb4873elf  
2024-06-01 01:19:04ab62adc8d5a2bdae5bbc99ce80461748265b697e9008e519ab8ceace66ca6145elf  
2024-06-01 00:37:01fba55eb7a7dcba9502ead83bb9c9a1be2bcd44056464957248c0c37c6b90acdbelf  
2024-05-30 20:37:0716c57fe86037c0cb1c0f8c07f8b198a4858c2d297a9ae07e36901d0baae17f4belf