URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 94.156.8.116
Firstseen:2024-02-22 02:38:27 UTC
Total malware sites :42
Online malware sites :0 (0%)
Offline Malware sites :42 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-02-22 02:38:34 94.156.8.116Not listedAS214438 nexgen-ca1- CAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-03-19 07:25:08http://94.156.8.116/rebirth.m68Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.arm4tOfflineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.arm7Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.arm5Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.arm4Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.arm6Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:13http://94.156.8.116/rebirth.sh4Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:12http://94.156.8.116/rebirth.ppcOfflineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:12http://94.156.8.116/rebirth.mpslOfflineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:12http://94.156.8.116/rebirth.spcOfflineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:12http://94.156.8.116/rebirth.mipsOfflineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:11http://94.156.8.116/rebirth.i686Offlineelf gafgyt ext geofenced mirai ext USA abus3reports
2024-03-19 07:24:08http://94.156.8.116/bins.shOfflineelf geofenced mirai ext USA abus3reports
2024-03-17 22:05:08http://94.156.8.116/rebirth.x86Offline 64-bit elf gafgyt ext x86-64 geenensp
2024-03-10 18:47:04http://94.156.8.116/8UsA.shOffline script geenensp
2024-03-10 17:04:09http://94.156.8.116/bins/UnHAnaAW.mipsOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:09http://94.156.8.116/bins/UnHAnaAW.x86Offlineelf mirai ext ClearlyNotB
2024-03-10 17:04:09http://94.156.8.116/bins/UnHAnaAW.arm7Offlineelf mirai ext ClearlyNotB
2024-03-10 17:04:08http://94.156.8.116/bins/UnHAnaAW.arm5Offlineelf mirai ext ClearlyNotB
2024-03-10 17:04:07http://94.156.8.116/bins/UnHAnaAW.sh4Offlineelf mirai ext ClearlyNotB
2024-03-10 17:04:07http://94.156.8.116/bins/UnHAnaAW.ppcOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:07http://94.156.8.116/bins/UnHAnaAW.armOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:07http://94.156.8.116/bins/UnHAnaAW.m68kOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:06http://94.156.8.116/bins/UnHAnaAW.spcOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:06http://94.156.8.116/bins/UnHAnaAW.mpslOfflineelf mirai ext ClearlyNotB
2024-03-10 17:04:06http://94.156.8.116/bins/UnHAnaAW.arm6Offlineelf mirai ext ClearlyNotB
2024-02-25 05:04:07http://94.156.8.116/bot.arm5?ddos=Offline32 arm elf mirai ext zbetcheckin
2024-02-22 08:05:11http://94.156.8.116/bot.mipsOfflineelf mirai ext abus3reports
2024-02-22 08:04:35http://94.156.8.116/bot.arm7Offlineelf mirai ext abus3reports
2024-02-22 08:04:35http://94.156.8.116/bot.mips?ddosOfflineelf mirai ext abus3reports
2024-02-22 08:04:30http://94.156.8.116/bot.arm6Offlineelf mirai ext abus3reports
2024-02-22 08:04:29http://94.156.8.116/bot.sh4Offlineelf mirai ext abus3reports
2024-02-22 08:04:26http://94.156.8.116/bot.ppcOfflineelf mirai ext abus3reports
2024-02-22 08:04:26http://94.156.8.116/bot.armOfflineelf mirai ext abus3reports
2024-02-22 08:04:21http://94.156.8.116/bot.arm5Offlineelf mirai ext abus3reports
2024-02-22 08:04:13http://94.156.8.116/bot.arm5?ddosOfflineelf mirai ext abus3reports
2024-02-22 08:04:13http://94.156.8.116/bot.mpslOfflineelf mirai ext abus3reports
2024-02-22 08:04:11http://94.156.8.116/bot.sh4?ddosOfflineelf mirai ext abus3reports
2024-02-22 08:04:11http://94.156.8.116/bot.m68kOfflineelf mirai ext abus3reports
2024-02-22 08:03:12http://94.156.8.116/bot.x86Offlineelf mirai ext abus3reports
2024-02-22 08:03:09http://94.156.8.116/bot.86?ddosOfflineelf mirai ext abus3reports
2024-02-22 02:38:34http://94.156.8.116/bot.x86_64Offline 64-bit elf x86-64 geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-03-19 07:25:083d7665a09dee80849c12cb8f9b91e77c233393e359c37a8902608ede6103fb81elfGafgyt
2024-03-19 07:24:130349c284c2b7f00496d51c67ea5d6592d421ec34b48d3244352cef9554d96c3aelfGafgyt
2024-03-19 07:24:137a97a3282820dab8f7e50d27799de49ce669f246e9d85848ca3934aef2c7241belfGafgyt
2024-03-19 07:24:135697efb84a027b3f92e0c71c11b94bcfa98bd6289d9c2876ad96b119335158e6elfGafgyt
2024-03-19 07:24:139a150002172c0baea0367547dbf4e7773809dc36d3cb401cfa06220bdb416b55elfGafgyt
2024-03-19 07:24:134777289b41736111b0dc9ec273422e7da8ef385c4976b980bebaef33ac01b8afelfGafgyt
2024-03-19 07:24:13831e3c1db59b562886c5977503ef0f5d7fa7345906490b1ea28cd368b21e9d57elfGafgyt
2024-03-19 07:24:12caf6b4a0cbb0095a0ef2a3e027fddedaabe30d22e96a13863c5b7e989bcdd391elfGafgyt
2024-03-19 07:24:124ff75d7239d8164182a0feb8f9855832fea224d48caad242b59524cafca2c24delfGafgyt
2024-03-19 07:24:1229df8a75a86a74bbd7dbb81555d30a08d1452cb4f22c64c0bb9a46e9d1fd3215elfGafgyt
2024-03-19 07:24:11fc0a3dec35e5421f377e56461bd85812e2e64bc0b3fc76d3a3ea462fbd16ee9delfGafgyt
2024-03-19 07:24:11e6beed85838f78e0d87b03f08d9747f85ad07334a2451266c346b3a5b8720169elfGafgyt
2024-03-19 07:24:081109c4e6492b5b2ea9bcc8e0723cea4429fcdbf96725dfdf1753617db73078a9sh  
2024-03-17 22:05:07f70ac100dccb9b81f079219f0501b8130f938ca2029457cbd9a75c298fbde2f4elfGafgyt
2024-03-10 18:47:0460c64b60939798d47f8d6cf394966fb1a401695d2f760b68498f115d6532b076sh  
2024-03-10 17:04:09d85600c70e061ff215123ccb0dea79ddaf4ecc8012581890104514ac33be6adcelfMirai
2024-03-10 17:04:0907a66714c536091dc0fdf0ccd95e009b1dd3df53202c24e749c01a23d36fa796elfMirai
2024-03-10 17:04:09974e7f02e3b05187d40d6ff99438cc180f948f71e669563fcfa4902f042df720elfMirai
2024-03-10 17:04:08bed3a72086c08ade6cd6d17637a563bca93999570b3d9beafff2907b4d4446d7elfMirai
2024-03-10 17:04:072052242a8542ae8611833ce163e33773ea038daf42b4c8a82296b391df3efd5delfMirai
2024-03-10 17:04:07f1c851b6084c114810f99e67fe3cd3a2bae9995dd7e1a987861911876232c6f6elfMirai
2024-03-10 17:04:07583a882e3ef49da2c3bfea60740ee7d8886a557c6288726c260a873d365e6d6belfMirai
2024-03-10 17:04:06c141d1ec0fef2ac6a850aad1976200189f03129def982f838895b52fe339cd7eelfMirai
2024-03-10 17:04:06976fcc05b01c600806525f94164428b2e7261bbe31d5274a5830c801ccd2d3e8elfMirai
2024-03-10 17:04:06293fd5d09bcbea1afde9368df76f9afb3f5a9ca9a71b5749cdff41c4412eaeebelfMirai
2024-03-10 17:04:0665e25cf9a52779ad9af68dbe15bcfc0ef81c7fa167dccfad19bb7cc778b79b50elfMirai
2024-02-25 05:04:0780a53fe18c15f363ee8526fca147ef931373616a8a083601a420ede27b655785elfMirai
2024-02-22 08:05:118d2d655105bcf61e18c24311440e934d111d8bc69131593e199ca2ff7270424aelfMirai
2024-02-22 08:04:35f2de5dbc62de1963c6ba56614f261bdb70ad82d478d6a29aa2848e1e7f5b80a8elfMirai
2024-02-22 08:04:358d2d655105bcf61e18c24311440e934d111d8bc69131593e199ca2ff7270424aelfMirai
2024-02-22 08:04:30986c23f6d365b1bd8a77b8606d6829598af3995c7d1d33cd283b7cc962c34984elfMirai
2024-02-22 08:04:286e3c88db60a73f5b84de22df0929fb09c932303217dbafeee3a33455a4981f08elfMirai
2024-02-22 08:04:268ee8dd5ac1f6b1b7a594b114f935d048caa3ac550ecb38a16a7c02d3fdb451d4elfMirai
2024-02-22 08:04:25c1205550459b300e9fb7993ec4fa30f7c3beee439d333f549ee58267c2d13ff7elfMirai
2024-02-22 08:04:2080a53fe18c15f363ee8526fca147ef931373616a8a083601a420ede27b655785elfMirai
2024-02-22 08:04:1380a53fe18c15f363ee8526fca147ef931373616a8a083601a420ede27b655785elfMirai
2024-02-22 08:04:13fab9c110a0888ccffd88803f0f7b662cc95ea3fe6ded1e815a430214c2394896elfMirai
2024-02-22 08:04:116e3c88db60a73f5b84de22df0929fb09c932303217dbafeee3a33455a4981f08elfMirai
2024-02-22 08:04:11d4e085d848bf39d5f41482df4e425ecfea73f3ef5ab8ec74cf43680f32471a88elfMirai
2024-02-22 08:03:12e2507e09add6d905f811230f0707c0762f2e5870e783949ab218f0c6ad9a099delfMirai
2024-02-22 02:38:348c26baf61913e1a522ab45a8a1268fa6af3652ec301ec31996f7a0e3aab995adelf