URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 74.201.28.102
Firstseen:2022-07-04 10:21:03 UTC
Total malware sites :50
Online malware sites :0 (0%)
Offline Malware sites :50 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-10-01 17:10:30http://74.201.28.102/w.shOfflinesh ua-wget NDA0E
2025-04-25 12:41:02http://74.201.28.102/c.shOfflinesh ua-wget NDA0E
2022-07-28 12:48:04http://74.201.28.102/where//botx.x86Offlinemirai ext Gandylyan1
2022-07-28 12:48:04http://74.201.28.102/where//botx.mipsOfflinemirai ext Gandylyan1
2022-07-28 12:48:04http://74.201.28.102/where//botx.mpslOfflinemirai ext Gandylyan1
2022-07-28 12:48:04http://74.201.28.102/where//botx.armOfflinemirai ext Gandylyan1
2022-07-28 11:19:33http://74.201.28.102/where/botx.spcOffline32 elf mirai ext sparc zbetcheckin
2022-07-28 11:19:33http://74.201.28.102/where/botx.m68kOffline32 elf mirai ext motorola zbetcheckin
2022-07-28 11:19:33http://74.201.28.102/where/botx.ppcOffline32 elf mirai ext PowerPC zbetcheckin
2022-07-28 10:45:34http://74.201.28.102/where/botx.arm5Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.armOfflineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.arm7Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.arm6Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.sparcOfflineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.sh4Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.mpslOfflineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.x86Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.mipsOfflineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.x86_64Offlineelf elfdigest
2022-07-28 10:44:33http://74.201.28.102/where/botx.arcOfflineelf elfdigest
2022-07-25 06:06:04http://74.201.28.102/bins/mirai.arm6Offlineelf elfdigest
2022-07-25 06:06:04http://74.201.28.102/bins/mirai.arm7Offlineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.x86_64Offlineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.armOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.x86Offlineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.spcOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.sh4Offlineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.mpslOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.ppcOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.m68kOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.mipsOfflineelf elfdigest
2022-07-25 06:05:34http://74.201.28.102/bins/mirai.arm5Offlineelf elfdigest
2022-07-15 12:13:05http://74.201.28.102/bins/bot.sh4Offlineelf tolisec
2022-07-15 12:13:04http://74.201.28.102/bins/bot.ppcOfflineelf tolisec
2022-07-07 06:20:04http://74.201.28.102/skullnetOffline tolisec
2022-07-04 10:55:34http://74.201.28.102/skullnet/haha.spcOffline32 elf mirai ext sparc zbetcheckin
2022-07-04 10:54:04http://74.201.28.102/skullnet//haha.mpslOfflinemirai ext Gandylyan1
2022-07-04 10:54:04http://74.201.28.102/skullnet//haha.x86Offlinemirai ext Gandylyan1
2022-07-04 10:54:04http://74.201.28.102/skullnet//haha.arm5Offlinemirai ext Gandylyan1
2022-07-04 10:54:04http://74.201.28.102/skullnet//haha.mipsOfflinemirai ext Gandylyan1
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.x86Offlineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.ppcOfflineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.arm6Offlineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.m68kOfflineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.arm7Offlineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.sh4Offlineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.mpslOfflineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.mipsOfflineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.armOfflineelf tolisec
2022-07-04 10:21:34http://74.201.28.102/skullnet/haha.arm5Offlineelf tolisec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-07-28 12:48:04acea2a549966ee84b141c7a040fb5cd08d436aea64abe1a56039616406cb3d8celfMirai
2022-07-28 12:48:04412059e1b174234abe8700a23a52e6592b2d3881d61cb64ec31a8df889ffb9eaelfMirai
2022-07-28 12:48:0422aff33f3d375c74296bbdeff92357ce1298316643c8d756c39bcebb2b06d5ddelfMirai
2022-07-28 12:48:04b2278f02e61f8d94b3ab9057a2ba1e93c9085a7b4094fbe91ecafd51a3122e3aelfMirai
2022-07-15 12:13:0532d0aa3ced98ba184a5fc383c7e74b39895fc45abfb6738935b370c2cc88e486elf  
2022-07-05 16:49:43eb4490d1b297d793ac8f7084e2f4a32f2b89d3a5af2bc8997d5c6ed31db5ed97elf  
2022-07-04 19:33:1026fb9152958a7be2808d0dddb1d0025346a7df6f89d3385fe2eefbde13908590elf  
2022-07-04 19:27:130a3b38f476168eb621a34d5ce9618f3ea62a4cce69677ac8413f20ad8f5953e5elf 
2022-07-04 19:25:57cb13089201d3109fb5f442513f7d7a9b74215cd030c2581db8bf72aa0f41a25aelfMirai
2022-07-04 19:15:19aca83633a0370d3963d5b20c3d2d21f9ce4585514b534a42a7620803722809baelf 
2022-07-04 17:14:2980c7279d630b09e34ebec6f0cfaf09b830f5be37868953bdac066c66aa7ea0beelfMirai
2022-07-04 17:13:39282e303de986491ff89fe7569b23f0642b4154013452c7e134cf8b32516df3c7elfMirai
2022-07-04 17:12:0527fdfe01360d8695ca02b2689f592f8ffa51fa465f431de933dfd6ea59a70417elfMirai
2022-07-04 17:06:43bc7e1f9340c8eff97d0f77c5819eca5d14bad0be9817ce8ddc8940d52c094c48elfMirai
2022-07-04 16:34:3895df9bacfe1843f5042f306abdf4488fef4030a7b4987d8ef39f2eefff1e7299elfMirai
2022-07-04 16:33:36d81ee1c9b811c6b15d655b69a0ff29397cd5b23aaf655faa51a5d1462ad7bbe4elfMirai
2022-07-04 16:31:375b8c43dc65dc0fde2afcb9ff3bd6c6f86e3efd94b1ba7f9dadd044fc93c8969eelfMirai
2022-07-04 16:30:063d69495781633bcc7ee4eb7c09a85aae992bd76aa15ab7e0cae16071f78bf808elf  
2022-07-04 10:54:040a546eda40b208225a420179cdbe3d80de3c846a53b31bf9248be5bc997a6412elfMirai
2022-07-04 10:54:04408dfd7d7155edd867d3ef6eaac8fa15a5319e996780a3a80605bd76842fcfeaelfMirai
2022-07-04 10:54:04972d81ebf82ab8c34da05c628ef876e6572ee8d9a83e87f84cfa1f64af939e8delfMirai
2022-07-04 10:54:044e6c4324ee197e16707134b8ab7893261c8b792337b2c7d60563c0cd6dd0acc5elfMirai