URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 213.209.150.187
Firstseen:2025-08-07 06:57:02 UTC
Total malware sites :25
Online malware sites :0 (0%)
Offline Malware sites :25 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-07 06:57:03 213.209.150.187Not listedAS2856 BT-UK-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-08-07 08:23:14http://213.209.150.187/bizy.arm8Offlineelf ua-wget abuse_ch
2025-08-07 08:22:15http://213.209.150.187/bizy.mipsOfflineelf ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.arm6Offlineelf ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.mpslOfflineelf ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.riscvOfflineelf mirai ext ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.mpsl64Offlineelf mirai ext ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.x64Offlineelf ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.mpslsOfflineelf ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.mips64Offlineelf mirai ext ua-wget abuse_ch
2025-08-07 08:22:10http://213.209.150.187/bizy.arm7Offlineelf ua-wget abuse_ch
2025-08-07 08:22:09http://213.209.150.187/bizy.x86Offlineelf ua-wget abuse_ch
2025-08-07 08:22:09http://213.209.150.187/bizy.mipssOfflineelf ua-wget abuse_ch
2025-08-07 08:22:09http://213.209.150.187/bizy.arm5Offlineelf ua-wget abuse_ch
2025-08-07 06:58:07http://213.209.150.187/odin.ppcOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:58:07http://213.209.150.187/odin.sh4Offlineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:58:07http://213.209.150.187/odin.mpslOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:58:07http://213.209.150.187/odin.x86Offlineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:58:07http://213.209.150.187/odin.spcOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:58:05http://213.209.150.187/odin.mipsOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:57:39http://213.209.150.187/odin.m68kOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:57:30http://213.209.150.187/odin.arm5nOfflineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:57:18http://213.209.150.187/odin.arm7Offlineelf geofenced mirai ext ua-wget USA botnetkiller
2025-08-07 06:57:05http://213.209.150.187/xcurl.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-07 06:57:05http://213.209.150.187/xwget.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller
2025-08-07 06:57:03http://213.209.150.187/odin.armOfflineelf geofenced mirai ext ua-wget USA botnetkiller

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-09 06:25:384082a6b5a60b62345f56d5336e9b28e03c2233efb6c40454fd0d6d05860d5c8bshMirai
2025-08-08 18:21:58a25ff39e978fa88f79d10bcd25a86bc48d196af8e2046be47a886ce4dd6a6650elfMirai
2025-08-08 18:05:29e7834d6e7af525e9200c4f98255f6a3db500d86e1a1d254610c1f5d47a90575belfMirai
2025-08-08 17:29:0496f1e58ca140b8babe3873412dc17b203d2b87df2e70886625c249d3db092789elfMirai
2025-08-08 17:27:5138f1d87bf24013ce3ec1049b758b5ee54a49eba35a5cb0057f559b9290028300shMirai
2025-08-08 17:26:03b185e773d0014ff89e12a4ba6075282488a1b130af190e3d8c064d618c11cf7eelfMirai
2025-08-08 12:36:589a36946cbdf2682af5b0227ee93b120c3c0543f260076bb2094638a71b68e294elfMirai
2025-08-08 12:36:38bdde0035d6b37dce2fff359848916a559640206659024577d4fa61608b4931bcelfMirai
2025-08-08 12:33:14a11b9aef373169010a4822273a8a16fb4deb9e386166e4b94aa791f34a25f39eelfMirai
2025-08-08 11:59:53aa14c7945115ba63c093f4ca508af7a9b20198c432a70b68cab2f52bad4121c7elfMirai
2025-08-07 08:23:14b0ce14837e2da43d4957983ddf184363e08bd2705c4b6129487fbf80f2553601elf 
2025-08-07 08:22:1501baa9350d8696ce2df03f63ca57058db641156c65a9938eb050902195908025elf 
2025-08-07 08:22:103c12baaa3b2768bf198c83ff76c6d71f1c153575a9a556f8614da72c58741a8celf 
2025-08-07 08:22:105b12e4c2ab0853500d59c2b275da48e3ebc9b53d380b7c1e5368cf9027c4de4celf 
2025-08-07 08:22:10e2fbe4a0085cfa107069c0a614ecae10e3b1b04f1ecfee287f2d5abdc2b79a13elfMirai
2025-08-07 08:22:108b35595ec94e07930eaf57ce734a1d48ab90db9ee97073bedda788574786eedaelfMirai
2025-08-07 08:22:10d37a30017a02916bac485a9d1a91bc16b22405e113a089f8bbcf5ebf307fd4f0elf 
2025-08-07 08:22:10b8d5c898f8cbed184833157611538e8637a3430cadd73dfa2466b4c21913819belf 
2025-08-07 08:22:102fa27985ef9b46d3584dcff9ec777b1fdd62ea98a7660490cc3ebb5fc5b79172elfMirai
2025-08-07 08:22:09a9736e2b083551b4e759ec6dc8c41a00ded0757743d0e0be6e9452baa26810b3elf 
2025-08-07 08:22:09593ae7fb95b9ded1a7f551e8c01a2a2557ef66a04528c13777ec2b4f1b56d6feelf 
2025-08-07 08:22:09207ab0f11f913ff8c48d0e828884e7ab9ff2a6fd2d89fa338e4aaf843a7224e9elf 
2025-08-07 08:22:0975d40ae746caef4f586813e7ba207db94bf57f2bd11981eefca5d39377945fffelf 
2025-08-07 07:45:04b3f5a0a9271603fe1660f675f17946fe62919c1eb9d4542ef4a01e88d9867338elfMirai
2025-08-07 07:44:46028d624710e25809cca0824c9b72c62b25111cee63419a6386ded804111c375eelfMirai
2025-08-07 06:58:074276034599921ed1dc43fcc1542aa63c7eae652be7c9d7c8ba6e8f93e1e0edafelfMirai
2025-08-07 06:58:07e02a51aee8b8a14546ac10da6d03ff1d2af98045812471559c9e739e296efb68elfMirai
2025-08-07 06:58:0733bc377a650da934848e09b68330e07ee34990c37a80f8b00fda1221df48843aelfMirai
2025-08-07 06:58:07f54067172254499aa314796c9a7b0874459b557686116d594d15fd4a2c03105felfMirai
2025-08-07 06:58:073ccec93311c41cc3a813b5762e249706c4cc3fd2c04894585300e05221268a01elfMirai
2025-08-07 06:57:39828059e7d325df8a10955ab64effcf6dd92bd812a65acfa66eed722bc0c61a30elfMirai
2025-08-07 06:57:30d89b9aa7f0ac337077c5614d1d8321d1a0dff5280560bde0a8339c0dba0abd5delfMirai
2025-08-07 06:57:18b0d8d7bf6694485c4c152b2a72244500ef779e261aae245f1f31c293a7a97e1celfMirai
2025-08-07 06:57:05d40680851a310907ed1eff3ab35f2defe2e27cc3c883ef74afad199646d0cd93shMirai
2025-08-07 06:57:05caf8a8dbb980bf9f0047043baa6d60790fc6248a90cc8800cb2eca5bc1df4441shMirai