URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 64.188.64.41
Firstseen:2026-01-09 03:01:04 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-01-09 03:01:14 64.188.64.41Not listedAS215439 PLAY2GO-NET- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-09 13:23:29http://64.188.64.41/Cameron/Skye/Manderfeld/armOfflineelf ua-wget abuse_ch
2026-01-09 04:45:12http://64.188.64.41/Cameron/Skye/Manderfeld/spcOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:45:12http://64.188.64.41/Cameron/Skye/Manderfeld/i486Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:44:08http://64.188.64.41/Cameron/Skye/Manderfeld/w.shOfflinemirai ext sh ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/m68kOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/arm6Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/c.shOfflinemirai ext sh ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/wge...Offlinemirai ext sh ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/arm4Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:44:07http://64.188.64.41/Cameron/Skye/Manderfeld/x86_64Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/mipsOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/arm7Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/mpslOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/arm5Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/sh4Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/arcOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/i686Offlineelf mirai ext ua-wget BlinkzSec
2026-01-09 04:43:16http://64.188.64.41/Cameron/Skye/Manderfeld/ppcOfflineelf mirai ext ua-wget BlinkzSec
2026-01-09 03:01:14http://64.188.64.41/Cameron/Skye/Manderfeld/x86Offline32-bit elf mirai ext Mozi ext threatquery

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-01-09 04:45:12fce43a96448cf52f1ff6c6f3a7067c1c4733b573d20f5ff1725ba821af7af4e2elfMirai
2026-01-09 04:45:12b6a71c77d52ab80bbb5a8e6c15b530eba6047d1ea33aa90ea6d8d2ff4ef0e1f5elfMirai
2026-01-09 04:44:07a5deb7f7975f60df65e86cd62fde23bca3aad63036846901079ec35412cfb7a0elfMirai
2026-01-09 04:44:074fb421bbe4fed5fad81ad941a761aa8044eea53ca71cd4f4eb7ebcdfa68b8c2fshMirai
2026-01-09 04:44:0743f31fd68ee126fe013f0a782e44a78255b1683479125170837fbdcf62b6d492elfMirai
2026-01-09 04:44:078d27191472ad2792cc09bacce872e3711071c4929945cff54cddccd31ba2175eshMirai
2026-01-09 04:44:07e642ef337e1fd1a851d05e47e2e8b15fcccad868b3d441843682378c82fb593dshMirai
2026-01-09 04:44:07c780c30670235b27191894728ba6d44a2968b5ec1851313dc8655ccf11b32f76elfMirai
2026-01-09 04:44:0754c6150e81b420393138f9b8d23b4a6d6bc07a146a4e96004566217c1ef514ddelfMirai
2026-01-09 04:43:1654b757506a0c8f2a83984630ed6c2c874b434a5461f3cb7f49bd8c0eb7b66854elfMirai
2026-01-09 04:43:167720750a19073e4567d2cadf84bac8b7cbfc2ea89d9b5b32bb9e8af311dac236elfMirai
2026-01-09 04:43:160daffde65bda959a5ea99459ca7cf2df430e9cedc1233531cb8c05b313e6fa32elfMirai
2026-01-09 04:43:168382821a44e3dec617898df55426f019999f1762d371fe93fbe1a99f6212c1adelfMirai
2026-01-09 04:43:15bf8c8a847289132ff9606dd7d808f91070dfff0ffdb9a8a4c6bf076697531e18elfMirai
2026-01-09 04:43:15af93897e1f400663afaa2f60144effe5652ebfbaaab50c79809c8e21b0901ff7elfMirai
2026-01-09 04:43:15e81415db45f2d07987be9270e30c8781eb87143c78e3a22d1561991e2f927c0felfMirai
2026-01-09 04:43:15e6d4b6f93d7ae50c79847c6b0d8b3e533bfdf5ed58a86dbbde66c58442f9f35celfMirai
2026-01-09 03:01:137b4cd6f806b64a6023c19812cc733869df8ecfd69359004fb39f2e7058047c00elfMirai