URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 41.216.189.149
Firstseen:2025-12-20 17:10:08 UTC
Total malware sites :45
Online malware sites :0 (0%)
Offline Malware sites :45 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-12-20 17:10:13 41.216.189.149Not listedAS211138 PRIVATEHOSTING-NET- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-12-28 07:39:36http://41.216.189.149/HOME/Mark90c80.mpslOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:36http://41.216.189.149/HOME/Mark90c80.mipsOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:36http://41.216.189.149/HOME/Mark90c80.x86_64Offlineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:36http://41.216.189.149/HOME/Mark90c80.arm5Offlineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:36http://41.216.189.149/HOME/Mark90c80.ppcOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:29http://41.216.189.149/HOME/Mark90c80.arm6Offlineelf ua-wget abuse_ch
2025-12-28 07:39:28http://41.216.189.149/HOME/Mark90c80.spcOfflineelf ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.arcOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.sh4Offlineelf gafgyt ext ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.x86Offlineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.armOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.i686Offlineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:24http://41.216.189.149/HOME/Mark90c80.m68kOfflineelf mirai ext ua-wget abuse_ch
2025-12-28 07:39:20http://41.216.189.149/HOME/Mark90c80.arm7Offlineelf ua-wget abuse_ch
2025-12-28 07:39:19http://41.216.189.149/HOME/Mark90c80.i468Offlineelf ua-wget abuse_ch
2025-12-21 19:42:12http://41.216.189.149/run.shOfflinemirai ext sh ua-wget NDA0E
2025-12-21 19:23:20http://41.216.189.149/bins/xnxnxnxnxnxnxnxnmicr...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:20http://41.216.189.149/bins/xnxnxnxnxnxnxnxnrisc...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:20http://41.216.189.149/bins/xnxnxnxnxnxnxnxnpowe...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:20http://41.216.189.149/bins/xnxnxnxnxnxnxnxnor1k...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:15http://41.216.189.149/bins/xnxnxnxnxnxnxnxnx86_...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:13http://41.216.189.149/bins/xnxnxnxnxnxnxnxnsh2xnxnOfflineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:13http://41.216.189.149/bins/xnxnxnxnxnxnxnxnloon...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:13http://41.216.189.149/bins/xnxnxnxnxnxnxnxnm68k...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:13http://41.216.189.149/bins/xnxnxnxnxnxnxnxni386...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:13http://41.216.189.149/bins/xnxnxnxnxnxnxnxnaarc...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:08http://41.216.189.149/bins/xnxnxnxnxnxnxnxnmips...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:08http://41.216.189.149/bins/xnxnxnxnxnxnxnxnrisc...Offlineelf mirai ext opendir ua-wget NDA0E
2025-12-21 19:23:08http://41.216.189.149/bins/xnxnxnxnxnxnxnxnsh4xnxnOfflineelf mirai ext opendir ua-wget NDA0E
2025-12-20 17:27:12http://41.216.189.149/bins/Labelloperc80.sh4Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:27:07http://41.216.189.149/bins/Labelloperc80.armOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:26:13http://41.216.189.149/bins/Labelloperc80.mpslOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:26:13http://41.216.189.149/bins/Labelloperc80.mipsOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:46http://41.216.189.149/bins/Labelloperc80.m68kOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:43http://41.216.189.149/bins/Labelloperc80.arcOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:39http://41.216.189.149/1.shOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:39http://41.216.189.149/bins/Labelloperc80.x86_64Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:38http://41.216.189.149/bins/Labelloperc80.arm5Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:31http://41.216.189.149/bins/Labelloperc80.arm6Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:26http://41.216.189.149/bins/Labelloperc80.ppcOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:15http://41.216.189.149/bins/debugOfflinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:14http://41.216.189.149/bins/Labelloperc80.arm7Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:14http://41.216.189.149/bins/Labelloperc80.i686Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:13http://41.216.189.149/bins/Labelloperc80.x86Offlinemirai ext opendir DaveLikesMalwre
2025-12-20 17:10:13http://41.216.189.149/bins/Labelloperc80.spcOfflinemirai ext opendir DaveLikesMalwre

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-12-28 08:10:259115fbb78cc1ce44275e44500738a04decb3f51dfc506cbeb224b69ec2876a67shMirai
2025-12-28 07:39:3688c5165e657f1257c2968e8d7653f72128db4128741ee59a421b5456279ef0f8elfMirai
2025-12-28 07:39:3687d5d6f02f582b4ce13433f4dad7f428ea812bfdc6b3fdc5983ec5c1ecb6bc1aelfMirai
2025-12-28 07:39:366e04ebb5902187654c319021840c486cbc8e9202325d35fd668b5545956d6d7celfMirai
2025-12-28 07:39:36271d6a0e041ad8a3fcb638d869b36abc1d358509f69a57817c561723973dd305elfMirai
2025-12-28 07:39:3662cebcf7aabaff4f582c281f620811e45a16ac5e5fcfdd782f8748dc01c18a17elfMirai
2025-12-28 07:39:24ed7f373864180e1c167c8bc9d45725b7d7c3df7604d7834280b0f2003d52d948elfGafgyt
2025-12-28 07:39:24e2bcf189c377f8a005f152bad20c89f66f74dfd40f6c5432b5a2e01831ba014eelfMirai
2025-12-28 07:39:2464e28d40ae1b261c53dafe3ede379e4286e5cf16bec6839486df9cd96fe1cb0belfMirai
2025-12-28 07:39:24eb32c5d648cb6ac14419232cdb50f6babd4f1034b16b1bb0b7a9491b1c394a3aelfMirai
2025-12-28 07:39:245c3143983ed8466d1dfad3b559c5e889431ca53c41b9ea8fb523e7f8ec17d781elfMirai
2025-12-28 07:39:243155e9279470b9498e8b9f70a9bf57a6351be5fb47ddc2e5dc3a57456771c271elfMirai
2025-12-28 00:44:19bfb04c46cee4523982d19d0a47be747fb4988dfb41c8bf332895cb5c9e794a2bshMirai
2025-12-21 19:42:1205c003f71e2855ddab581100481ef24d21d840964102b09f0d2c5d465448ddb0shMirai
2025-12-21 19:23:20da3ea7ca7fc68a3d970f540d001c85f3fa670bd3a6dc9e75397faedd6579d39delfMirai
2025-12-21 19:23:203eda71feefea8eddb0628ea62ceffa13dcf450b2724dace78bb3fe36e1666e44elfMirai
2025-12-21 19:23:20d4db575b43ecf3584cb58ba44c96e1f53936d6888e749e195da832912d8f5ea4elfMirai
2025-12-21 19:23:20051e97db9e4dd0bcfdb81535884b1d2d12960abc7d44da5757ba0472cd5be46belfMirai
2025-12-21 19:23:15972f77de3af0c2f6f11fd09ad7e5b79c63e867c3579db885a228124dfea5d0d9elfMirai
2025-12-21 19:23:13b60ebe01143a71e127714a3c7c82be18c97c57d803cb60b1737aab0161b8462eelfMirai
2025-12-21 19:23:132685f3d9afbcb738bf037f896b7dde927551b526951005edfe98bd001c6204b4elfMirai
2025-12-21 19:23:1379275fc868353e050c7681f7d5fd73fef27f744b7b396f1a7134904f64201772elfMirai
2025-12-21 19:23:13e590f58d83aa6cfbf4446ed4629efc99751686af8ce16b9048522c807affa189elfMirai
2025-12-21 19:23:13cc08d1e6c384658eeac77c0284e59b30ad9cec728eedddd559a747f76b09dc6felfMirai
2025-12-21 19:23:0825909af8dab6595f8982de4491ce46ce66961a89d7457d0cce97d60155a616d1elfMirai
2025-12-21 19:23:084fdb9f7d3361690c4558b67ccb6a7374e9e5b7f3ff10060b3a123d33d9b77de7elfMirai
2025-12-21 19:23:087b18a4ab208cc82154562dccf44de196ac8ebbc09b9abcf5f1944277a8da2283elfMirai
2025-12-20 17:27:12c8e78b47bea8e92afdf0c5915e0e879dfbfa948609292b5c98f970589d3e57adelfMirai
2025-12-20 17:27:0753ec40805ac9f295e59feb1be2ec23feeb3cb5482edba12cd3a731655b45c5d1elfMirai
2025-12-20 17:26:13258a424c4ecd010eb0057cd1f63203d2196e48ad9fcfb50b17c232c34915bd32elfMirai
2025-12-20 17:26:13b9d3b71c76e6817123d63ca9a144e63d9046cdcab4fb303bdafda3ef9285229delfMirai
2025-12-20 17:10:46f9a480310942ffb850aa7ada066444b580352da1b0e94a0975ca596bdfd90ebbelfMirai
2025-12-20 17:10:43d3e66628e921e3740a78c8112484767e0450d6b5581a526a5a08a4b00f122b11elfMirai
2025-12-20 17:10:3800a1aa6c3fa89b463361ea87cf05a93a1ae101ffec1643d9d1c0d71f92da7134shMirai
2025-12-20 17:10:387676841f8e7626e986a9c57496d26540e1b129c48ce73249127bbf1ef38e1b67elfMirai
2025-12-20 17:10:37e89efbbf11161b974c87724f649921e6c7a883f967cb96fc21ecb8530aa5832celfMirai
2025-12-20 17:10:3123b2e1766934aa79bd8980e7bab4b7b5b3951a3384e06231dd70534d9c64bf07elfMirai
2025-12-20 17:10:252b6a81fee8092f828d219737cc8c8c2c343bad0a3c57bded03b8b0747c7e965felfMirai
2025-12-20 17:10:14627fd3dca685867a5c213225131ffe06ee2cfbb07adb305ca648fa994e8c9ebfelfMirai
2025-12-20 17:10:14b1e74339f6432874ce49cf0533a98090ab37f52122da418019152d5e8d7a5b6belfMirai
2025-12-20 17:10:13df7d333afd2610426cf8a273976eea8c200acf87ddc9589eca2a945d77335befelfMirai
2025-12-20 17:10:12e7fc58702e5d3c20e362541f7b42d0e70c5cda840b33b358bee32d0aac623e17elfMirai
2025-12-20 17:10:121a6d76a78bfaf4d04fab8fb25c42a0ff9999bf908fc28f03dc6623b5c47e007celfMirai