URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 82.26.104.36
Firstseen:2026-05-09 12:49:05 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-09 12:49:13 82.26.104.3636.104.26.82.dritestudio.co.thNot listedAS63989 DE-CORP- THyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-09 12:53:16http://82.26.104.36/bot.m68kOfflineelf ua-wget NDA0E
2026-05-09 12:53:14http://82.26.104.36/bot.armv6lOfflineelf ua-wget NDA0E
2026-05-09 12:53:14http://82.26.104.36/bot.armv4lOfflineelf ua-wget NDA0E
2026-05-09 12:52:21http://82.26.104.36/bot.x86_64Offlineelf ua-wget NDA0E
2026-05-09 12:52:20http://82.26.104.36/bot.i686Offlineelf ua-wget NDA0E
2026-05-09 12:51:16http://82.26.104.36/bot.mipsOfflineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.aarch64Offlineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.armv5lOfflineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.riscv64Offlineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.armv7lOfflineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.s390xOfflineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.i586Offlineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.powerpcOfflineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.sh4Offlineelf ua-wget NDA0E
2026-05-09 12:51:15http://82.26.104.36/bot.mipselOfflineelf ua-wget NDA0E
2026-05-09 12:49:13http://82.26.104.36/cat.shOfflinesh ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-09 12:53:16f144feb936517ef8f3c187acd9f7b9649d559c2e46bfe8f47a1b46b202d2df45elf 
2026-05-09 12:53:1471723de3894d19a898b41dde1bd5ed0815ae428c3478be27469a5db3e2dc4748elf 
2026-05-09 12:53:1471723de3894d19a898b41dde1bd5ed0815ae428c3478be27469a5db3e2dc4748elf 
2026-05-09 12:52:21701b534d427c89c37c68d10aa92eb2a7470346e59a0dcd21eb092e8a0091f65delf 
2026-05-09 12:52:203e2f1c9a8d34ec8d10cd604b70fc61c6bc593685495ea75e5732c0d25dfa9f24elf 
2026-05-09 12:51:1536d37df9206516c1918dfef16aacfa6d432f2ae59e6364c00d8d7076ab62dfc2elf 
2026-05-09 12:51:1571723de3894d19a898b41dde1bd5ed0815ae428c3478be27469a5db3e2dc4748elf 
2026-05-09 12:51:153542068a03b50e90576f937bd2bdb4b7a16b40a1bf164c64046caf8effe1aaacelf 
2026-05-09 12:51:1571723de3894d19a898b41dde1bd5ed0815ae428c3478be27469a5db3e2dc4748elf 
2026-05-09 12:51:155bdca67cfcf4d77c2d9901d5280b043bb009cffcae3c2ad307fa7348b034202delf 
2026-05-09 12:51:153e2f1c9a8d34ec8d10cd604b70fc61c6bc593685495ea75e5732c0d25dfa9f24elf 
2026-05-09 12:51:15ef772daa190afc71db925257b20abd2ac0d06bc2e55abd7bc8083df41d9c5ae9elf 
2026-05-09 12:51:152ac54faa91d30727c474f41c321125a2c872052ce6600572ecb21289c4bf58b6unknown  
2026-05-09 12:51:1550b17e69cadc2f076c960680296d7cf863e235f0e1c24844c36583ed875e09f5elf 
2026-05-09 12:51:151a800a56c365807963da602d7e2e38ea3712431da3f11d36574426d89ee9fb7delf 
2026-05-09 12:49:126257c5693b0768470c5a1a0ea7c8efa9feb6dcda395ea8c768fef11b458ee7eash