URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 91.92.241.244
Firstseen:2024-01-07 23:15:06 UTC
Total malware sites :44
Online malware sites :0 (0%)
Offline Malware sites :44 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-01-07 23:15:17 91.92.241.244SBL686267AS214943 RAILNET- NLyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-08-23 18:39:04http://91.92.241.244/z.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/gOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/lllOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/c.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/adbOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/fdgsfgOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/vcOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/wget.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/ipcOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/bxOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/totoOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/ruckOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/sdtOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/liOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/multiOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/linksysOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/fbOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/weedOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/jawsOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/w.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/test.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/magOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/zzOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/f5Offlinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/k.shOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/goclOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/asdOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/irzOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/xaxaOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/bOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/aaaOfflinemirai ext sh NDA0E
2024-08-23 18:39:04http://91.92.241.244/create.pyOfflinemirai ext sh NDA0E
2024-08-23 18:37:05http://91.92.241.244/debugOfflineelf NDA0E
2024-08-23 18:13:05http://91.92.241.244/arm4Offlineelf ua-wget BlinkzSec
2024-08-23 18:12:05http://91.92.241.244/x86_64Offlineelf ua-wget BlinkzSec
2024-08-23 18:11:06http://91.92.241.244/hmipsOfflineelf ua-wget BlinkzSec
2024-08-23 18:11:06http://91.92.241.244/arm6Offlineelf ua-wget BlinkzSec
2024-08-23 18:11:06http://91.92.241.244/arm5Offlineelf ua-wget BlinkzSec
2024-08-23 18:11:06http://91.92.241.244/gmpslOfflineelf ua-wget BlinkzSec
2024-08-23 10:55:06http://91.92.241.244/mipsOffline32-bit elf threatquery
2024-08-23 09:14:05http://91.92.241.244/mpslOffline 32-bit elf mips geenensp
2024-08-23 06:33:06http://91.92.241.244/arm7Offlineelf mirai ext tolisec
2024-08-23 06:33:06http://91.92.241.244/armOfflineelf mirai ext tolisec
2024-01-07 23:15:17http://91.92.241.244/curl/ablast.exeOffline32 exe PureLog zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-08-24 11:19:167de41fb098aa8dbdcf66f37f09ded281f69dbb20a359f90c516d29b380d99692elf  
2024-08-24 11:18:281708668fb63308820c20f110c73812243446694220777538caf47d817c81fd68elf  
2024-08-24 08:57:43c2b4ed10fdd39b03e617800e9f90f49c947d24709613b45c84797fde2e9f0081elf  
2024-08-24 08:36:32f5b7312bc5bffed521dd0f34ff450f763573dc5d0796fe02020fa9609bf008d4elf  
2024-08-24 07:31:07e181fc222f5ac1923f8c6ca639c9997df1a7e8ad284d02d6618a1b8581d1ed5felf  
2024-08-24 06:05:220bdbe1e9d2718d80bf3c3f87edaa576d54ac81873586af07ec3a8ec4bcd92377elf  
2024-08-24 05:59:56751ca79ffdc09d91efa889185030460f4e0070c36551a337f53892689e31c860elf  
2024-08-24 05:59:4998000c48d65fb5932864f9f55cc715d388992317f59c08116566617355a41d26elf  
2024-08-24 05:58:15301188837ea2972e946307b65d037553f399f69d3b7e5967dd597e6b1c60b60felf  
2024-08-24 05:56:228aad73349054162bc6a958d50a1653b9cee2e317c4aa19210c1490273ac15886elf  
2024-08-24 05:43:343201929b5fbd739eb3420e1f1c84237dedfbbb11ad8261f110ef653871751ca2elf  
2024-08-24 05:26:530bdbe1e9d2718d80bf3c3f87edaa576d54ac81873586af07ec3a8ec4bcd92377elf  
2024-08-24 05:03:008b96be433833c581d027c2ab214e7efbeef977930245cf8f860f13a2f4bf5618elf  
2024-08-24 04:47:519861d57838edcedc5e02a0afe4d5870e57a49ee41be5af7fb2c5066c668898e7elf  
2024-08-24 04:23:43cccea59e8d6cfc39530aacfb350e3b93991a53ffe4bcd527ad4d347ea716f599elf  
2024-08-24 04:07:4718ada5e6133dea50149f5ff23bce6869255eaa27adca0fa2a0fd0b4b39503caeelf  
2024-08-24 04:07:17bacfd287fc5dcb64e6f8ce011b7cfa28cea16f74270d5cfe8a21b8c5dbada377elf  
2024-08-24 04:03:5149baf4fc40b6d5df57f10e7874eb0d9125ffb7f4c8ca87147e60eca4b15e0e61elf  
2024-08-24 04:01:35b0b1b501b273c3784900d37b1babd024938c662a166a3b6a0d254ab2d0c01263elf  
2024-08-24 03:45:41efb2cd3b367b61f2b78812d7b3e5765f9c1f8653b84b5e47c5e47264e8c99187elf  
2024-08-24 03:44:3383ad010438872f7055404e4d94b4fb877a1ced0f30e77f6a5f9b523ba73efcccelf  
2024-08-24 03:36:012222f36b18765d87f7998eb1dae773c7e3b7e966ed51a61b8b314559e2fa2fa1elf  
2024-08-24 03:29:397ef17ebb0ab21722ad7c3820b01a2936ceb1943ef310fa2421992f0b98179225elf  
2024-08-23 18:37:05614a88ca9d29a86425830fd942b1172d37b98465571a98334e98f4fbc22d3faaelf  
2024-08-23 18:13:05cf757e6eb8c7e52e32b3f27d24ed0d7034fae4cbd74cfaf89fdacd89a5c050cbelf  
2024-08-23 18:12:050e4bd21862320d66f61c07602215a41547e3c6fb50727da1c7c6ca803970bb7celf  
2024-08-23 18:11:0649379c98aee5da0dccc270976d10030a38e0a7225ff3428aff10c471968af6a1elf  
2024-08-23 18:11:06828c46414abf97335c067bdaf66744d21a87b7dcb728f53cc57392561306976felf  
2024-08-23 18:11:0507d58d7e403469706f22fa28ed7c7c0c0766dfe3ef826d44d383766d8efb604belf  
2024-08-23 18:11:05f6e9515696f5f42c2789447a08cce6856aefc040e2efc4927f67522a14fde5d6elf  
2024-08-23 10:55:062bf2c82e29d37db4268872fa6a69f1975a62b906dec55c3c661b757bc7ba4de1elf  
2024-08-23 09:14:0559da7bb077d1f1ece2e92b90ad6b12f132b18f265ced3f75ee372694f0198ccbelf  
2024-08-23 07:53:33cf757e6eb8c7e52e32b3f27d24ed0d7034fae4cbd74cfaf89fdacd89a5c050cbelf  
2024-08-23 06:33:06d412f69cd6044dbd3af89317bc71cde5391f1250b933a86e3beca81b08e33df6elfMirai
2024-08-23 06:33:06a40a99e486604245ac8c62a136ad22d2742d5e9fcdc270e6b7650d274b5e2045elfMirai
2024-01-07 23:15:16f98cf9ee6e3f42fe35ec570b4728ecd65929ba24ba4c090c3b438c8de4677cc8exePureLog