URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 5.181.80.238
Firstseen:2021-12-25 10:35:14 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-12-25 10:35:25 5.181.80.238ip-80-238-bullethost.netNot listedAS50360 TAMATIYA-AS- BGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-12-27 10:49:10http://5.181.80.238/lx/kOfflineddos elf mirai ext Gandylyan1
2021-12-26 11:56:04http://5.181.80.238/lx/aOfflineDDoS Bot elf mirai ext Gandylyan1
2021-12-25 20:23:03http://5.181.80.238/z.shOfflineshellscript zbetcheckin
2021-12-25 11:53:05http://5.181.80.238/lx/apep.arm6Offline32 arm elf mirai ext zbetcheckin
2021-12-25 11:53:04http://5.181.80.238/lx/apep.m68kOffline32 elf mirai ext motorola zbetcheckin
2021-12-25 11:53:04http://5.181.80.238/lx/apep.spcOffline32 elf mirai ext sparc zbetcheckin
2021-12-25 11:52:04http://5.181.80.238/lx/apep.ppcOffline32 elf mirai ext PowerPC zbetcheckin
2021-12-25 11:52:04http://5.181.80.238/lx/apep.sh4Offline32 elf mirai ext renesas zbetcheckin
2021-12-25 11:52:04http://5.181.80.238/lx/apep.arm7Offline32 arm elf mirai ext zbetcheckin
2021-12-25 10:35:29http://5.181.80.238/lx/apep.armOfflineDDoS Bot elf mirai ext Gandylyan1
2021-12-25 10:35:29http://5.181.80.238/lx/apep.mipsOfflineDDoS Bot elf mirai ext Gandylyan1
2021-12-25 10:35:29http://5.181.80.238/lx/apep.x86OfflineDDoS Bot elf mirai ext Gandylyan1
2021-12-25 10:35:25http://5.181.80.238/lx/apep.mpslOfflineDDoS Bot elf mirai ext Gandylyan1
2021-12-25 10:35:25http://5.181.80.238/lx/apep.arm5OfflineDDoS Bot elf mirai ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-12-27 10:49:10254d8dfceaaa2fe7fadf3bee5771afef08c951d0275eddd2f352a3e51848040celfMirai
2021-12-26 11:56:04d8183f2eddbb74bb849edab5510e72213cfe8e01099f7bd1e88478f6dc8c92e1elfMirai
2021-12-26 08:09:51302fbad636dd5d33935f472d9f2c00fac9dd7169f01bed372c1f72815218581eelf  
2021-12-26 08:09:09254d8dfceaaa2fe7fadf3bee5771afef08c951d0275eddd2f352a3e51848040celfMirai
2021-12-26 08:06:592797b256bbb0f4cd0778863943fd1396bfc51d7e6a0c3828d97ecda6210d709belf  
2021-12-26 07:59:11eac7e762cb097ca0eca50fb3994782363ecb57fcc38a5104ea46d98967047e39elf  
2021-12-26 07:55:46d8183f2eddbb74bb849edab5510e72213cfe8e01099f7bd1e88478f6dc8c92e1elfMirai
2021-12-26 07:53:354162d361cc604bd9a7b9cec1e1c3d37dfda90250db61ccd64c48206c5aabc2f3elf  
2021-12-26 07:52:37b264c77da1f5fe82ab49ef0485c9e6bad2d92ef2f9fda37ac61d5a6bc6a27f00elf  
2021-12-26 07:51:1217b128cfb6a74e3dce7ed8ba64c1854293d24909d6c907d7621eef95fac52777elf  
2021-12-26 05:42:55ac0089074e1f71343aa418b4ffbb2b63d0602d7dd81d2275e24be5e230deefb3unknown  
2021-12-25 20:23:0342794ad54fbc291afc7657f9fde1dcc967fb273622316cc6334a9ddee194c6cdunknown  
2021-12-25 11:53:054cbce754f5de6427bfccb4689f70e29e82f873f611765b65bee3f9393abf3159elf  
2021-12-25 11:53:04483d2a313548968d91d6bf7a8b5b297b69d904bc5cbe36fee8815012b1b79a96elfMirai
2021-12-25 11:53:04e7c1cbf632a8f41b7c94d739675a1802ecca7922fc2b90699138cc5debd1d52eelf  
2021-12-25 11:52:04e54da5095ae873b7baa3401afcb24e0d97e5814faa0778b051e04d2c7ccc8684elfMirai
2021-12-25 11:52:04ee5f1aabdf835a4a0caa10ad20a9b57b305fa64463ce2cd93f1096faea72e25eelf  
2021-12-25 11:52:0402571110fa20ba4a3a39213c26e64eb6004a8c340241767206107ed24bd311ffelfMirai
2021-12-25 11:46:1268aebc451c22cb49ce98cbb9322a30a3ac595b6c933c59ec6b8b16004b735a98elfMirai
2021-12-25 11:41:353b50dc591336e8c26138f24088a5995226f6df04ec381008cfb2ea75d7e9cdddelfMirai
2021-12-25 11:41:325f591019729142557b2e81f19ba31b6dbd3122a100b8d8db795a40dbd7629bd1elfMirai
2021-12-25 11:33:50a45b794cf32951a6631533578f76b4e8f2ec3ea0918b9d213ca2acbaf55d7f8eelf  
2021-12-25 11:32:059044d8d7d2ad9f2571a8a1667da57b8a6a660a0afe42853155c85e6fa39e4bcfelf  
2021-12-25 10:35:2916cf5893b7a14ca57a3143d5eab7c1f7c54f0b2f31f3725c1981e819c014819delf  
2021-12-25 10:35:290debccb77584d00de7878c29cafcf0d1af058c5c629b7cb29501f72acb1a5a3delf  
2021-12-25 10:35:297ec1e2da2b44dd0f646ba45bf9342ebc8bb8b170baefb11fef653cfa5a071b24elf  
2021-12-25 10:35:25e24258b75e4ae8d28fc21e510e677c14fd0db367c3c50ca542e6be5b01d128cdelf  
2021-12-25 10:35:23cb8c84dadf59fa30753ff39f91682babd7197b92f48c7e335876f1d22da6aa05elf