URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 5.175.223.124
Firstseen:2026-03-10 02:16:05 UTC
Total malware sites :18
Online malware sites :10 (56%)
Offline Malware sites :8 (44%)
Newest active malware site :2026-03-14 16:42:31 UTC
Oldest active malware site :2026-03-10 02:16:08 UTC (Age: 9 days, 21 hours, 43 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-03-10 02:16:08 5.175.223.124.Not listedAS204464 NEXTHOST- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-03-15 22:28:24http://5.175.223.124/data.mipselOfflineelf gafgyt ext mips ua-wget botnetkiller
2026-03-15 22:27:16http://5.175.223.124/t.shOfflinegafgyt ext sh ua-wget botnetkiller
2026-03-15 22:27:16http://5.175.223.124/data.mipsOfflineelf gafgyt ext mips ua-wget botnetkiller
2026-03-15 16:32:21http://5.175.223.124/w_a.shOfflinescript geenensp
2026-03-14 17:25:22http://5.175.223.124/ftp.shOfflinesh ua-wget NDA0E
2026-03-14 17:25:21http://5.175.223.124/c.shOfflinesh ua-wget NDA0E
2026-03-14 16:42:31http://5.175.223.124/data.mips-uclibcOfflineDDoSAgent elf ua-wget abuse_ch
2026-03-14 16:42:31http://5.175.223.124/data.x86OnlineDDoSAgent elf ua-wget abuse_ch
2026-03-14 16:42:31http://5.175.223.124/data.arm6Onlineelf mirai ext ua-wget abuse_ch
2026-03-14 16:42:31http://5.175.223.124/data.x86_64OfflineDDoSAgent elf ua-wget abuse_ch
2026-03-14 16:42:31http://5.175.223.124/data.arm5Onlineelf mirai ext ua-wget abuse_ch
2026-03-14 16:42:31http://5.175.223.124/data.arm7Onlineelf mirai ext ua-wget abuse_ch
2026-03-14 16:42:30http://5.175.223.124/data.arm4Onlineelf mirai ext ua-wget abuse_ch
2026-03-14 16:42:30http://5.175.223.124/data.aarch64Onlineelf mirai ext ua-wget abuse_ch
2026-03-14 16:42:30http://5.175.223.124/data.powerpcOnlineelf mirai ext ua-wget abuse_ch
2026-03-14 15:42:09http://5.175.223.124/w.shOnlinemirai ext script geenensp
2026-03-12 20:35:20http://5.175.223.124/bbcOnlinesh ua-wget botnetkiller
2026-03-10 02:16:08http://5.175.223.124/data.mipsel-uclibcOnlineelf geofenced mips mirai ext ua-wget USA botnetkiller

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-03-19 08:40:526887cfa51d87a3cc2393531076c5b7f2a0a2cd06d2fe9705c7b262e90fc26715sh 
2026-03-16 15:14:06e1c17fd272e164ae3b0f48542309535e50cb96914193af7bba155cbcdc520daesh 
2026-03-15 22:28:24675645d67ee6eadfc44657fd4c10e660496b13375b69e086cd4d9d5038239fa7elfGafgyt
2026-03-15 22:27:167895cb4222daa6065ec06bcd61ed4fc0f826126d60383bf58ec39c289fc6f228shGafgyt
2026-03-15 22:27:1676f0338622519a764eeea04c0ef8176aa3ffa35bae8d350bc7f358ff024f3d21elfGafgyt
2026-03-15 09:18:41c12f337e79aec5b72849b9b1a707f28e745545a1a14b598d34abe637a180b967shMirai
2026-03-15 03:47:37c3b91aa16dbe60c55799392b2ab1d739692203672fb4f2f14ff1b3e2d0558bfeelfMirai
2026-03-15 03:35:394c9c451ee9fce127dae278eeac763dae233d09d227711c556f7a8941d5c37eb5elfMirai
2026-03-15 02:55:3665d7c59c8a21d2ed3a427fccfab4ba18227a6fd5d737257870a39dc69f12e03delfMirai
2026-03-15 02:48:236dfa1e31b246ddcc95bd98c8267e2742ec72eb42193b7bcf06a7326df74e2ae8elfMirai
2026-03-15 02:38:16b2a5a733664ac0b32a407a55760e8568d80c318354e1bad0d5d5719d8806d1abelfMirai
2026-03-15 02:27:20fdea4b7688114a4edf26deb83a1a24bdd5d3edb3755d28da514f2ff7a7423a66elfDDoSAgent
2026-03-15 02:21:34080bed1a4b9a6a34911ac0a043e5138cc6801a326062b9ebfa4e3cd4ef57ec05elfMirai
2026-03-15 02:19:47f02a038797f449d63d32d2eae14ddab662c6f14e9e279ef1eaa01a400fdbefb0elfDDoSAgent
2026-03-15 02:17:235d84a43059e40879ce7dfa16f3c0d0607904aa1ab7434f0dfb5228289f55ddffelfDDoSAgent
2026-03-14 15:42:091882df396998383613fa21485eb146feb59be3430cc57a12e0ad5ae1fe4d850dshMirai
2026-03-12 20:35:20c308e27636663b280698ddb93f7b1b513159df2058a4a37dc3a371c70f7d9120sh 
2026-03-11 06:41:099435f5f34f606fe496c779c808b033d86c63b2a71a2b7d3c6617c43df9226762elfMirai
2026-03-10 15:43:06bb2f0788e93f795b141cc5701199d865f2c4a39b27b8a3675316df34b4468ff5elfMirai
2026-03-10 06:48:11183c7a7607fb4bfbdedc8ac29f56dc44833c79d671bb20f6e88ed2dd32a12578elfMirai
2026-03-10 02:16:083f41bed9b6be25373a6076f71fd6f4c1555ba5c59dee7e3fc1d9069715a39284elfMirai