URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | 85.192.48.186 |
|---|---|
| Firstseen: | 2025-04-04 19:38:03 UTC |
| Total malware sites : | 13 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 13 (100%) |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-04-04 19:38:04 | 85.192.48.186 | server.keyubu.net | Not listed | AS215730 H2NEXUS-AS | FI | yes |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2025-04-09 19:46:32 | http://85.192.48.186/w.sh | Offline | sh ua-wget | |
| 2025-04-09 19:46:32 | http://85.192.48.186/c.sh | Offline | sh ua-wget | |
| 2025-04-09 19:46:32 | http://85.192.48.186/wget.sh | Offline | sh ua-wget | |
| 2025-04-04 19:39:04 | http://85.192.48.186/arm6 | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/m68k | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/ppc | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/mpsl | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/sh4 | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/x86_64 | Offline | elf mirai | |
| 2025-04-04 19:39:04 | http://85.192.48.186/x86 | Offline | elf mirai | |
| 2025-04-04 19:38:04 | http://85.192.48.186/arm5 | Offline | elf mirai | |
| 2025-04-04 19:38:04 | http://85.192.48.186/arm7 | Offline | elf mirai | |
| 2025-04-04 19:38:04 | http://85.192.48.186/arm | Offline | elf mirai |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2025-04-04 19:39:04 | f4a7fb44b621a33d8ed9e10588aa8712d5ec9481aee34e05958f13bb1c2ab546 | elf | Mirai | |
| 2025-04-04 19:39:04 | 31afb273558713a5973b03ea64df7267d356bc857b813aee21777e95e2838261 | elf | Mirai | |
| 2025-04-04 19:39:04 | b44b4f917596d489d89e5eefd81ec4054e8230ebb005a6bce7b84d69d920b299 | elf | Mirai | |
| 2025-04-04 19:39:04 | 1ed635709cd6173d89c7e6127632ae219f238ee2ceb551029db568592b425ac0 | elf | Mirai | |
| 2025-04-04 19:39:04 | 4af570dde0c2453e6cb2c49d7b0c7ba9eae0888d42e20d0051c0223ee4cedf58 | elf | Mirai | |
| 2025-04-04 19:39:04 | 3c99a41fe244e3229f1c90d33da3f3fe0e59ae2e01ea27ffb8cc4c917703231e | elf | Mirai | |
| 2025-04-04 19:39:04 | d2be3007d1e6f4312259b8c249555790e4f5e4edf94aab949c08e16f910b0ee2 | elf | Mirai | |
| 2025-04-04 19:38:04 | 4ba54550d3442bd901eea1ecea4e37a93c0e110fac04c063361c08b4065e0d10 | elf | Mirai | |
| 2025-04-04 19:38:04 | 4e120229719f71f7db252559a181eba9b374c98431616d045eb7b2a9a9f932df | elf | Mirai | |
| 2025-04-04 19:38:04 | 296fb6535d0dc211728269d2b5fcf84cbbc50b55cb9fe449b3f6447559e6dda0 | elf | Mirai |
FI