URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: files.eye-network.ru
Domain registrar:R01 -
Domain registration date:2024-10-10 18:02:16 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2024-11-04 21:35:07 UTC
Total malware sites :22
Online malware sites :0 (0%)
Offline Malware sites :22 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-11-04 21:35:09 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2024-11-04 21:35:09 188.114.97.3SBL691350AS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-11-04 22:02:05http://files.eye-network.ru/wriww68kOfflinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:01:07http://files.eye-network.ru/wheiuwa4Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:01:07http://files.eye-network.ru/dvwkja7Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:00:10http://files.eye-network.ru/vkjqpcOfflinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:00:10http://files.eye-network.ru/vqsjh4Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:00:10http://files.eye-network.ru/wnbw86Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 22:00:10http://files.eye-network.ru/qkehuslOfflinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 21:59:07http://files.eye-network.ru/jwwofba5Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 21:59:07http://files.eye-network.ru/vsbepsOfflinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 21:59:06http://files.eye-network.ru/kjsusa6Offlinebotnetdomain elf mirai ext ua-wget DaveLikesMalwre
2024-11-04 21:57:06http://files.eye-network.ru/irzOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:57:05http://files.eye-network.ru/multiOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:57:05http://files.eye-network.ru/ruckOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:57:04http://files.eye-network.ru/std.shOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:57:04http://files.eye-network.ru/zz.shOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:57:04http://files.eye-network.ru/xaxaOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:44:05http://files.eye-network.ru/goclOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:44:05http://files.eye-network.ru/curl.shOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:44:04http://files.eye-network.ru/aaa.shOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:44:04http://files.eye-network.ru/dlink.shOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:44:04http://files.eye-network.ru/FlllOfflinebotnetdomain mirai ext sh ua-wget DaveLikesMalwre
2024-11-04 21:35:09http://files.eye-network.ru/iwir64Offline 64-bit elf mirai ext x86-64 geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-11-04 22:02:0552063ea1263f0aed17e392ca4ce99f89accd443d8c8caf2a7c4f83bb5e293552elfMirai
2024-11-04 22:01:0712032c8be9564391ea74a83b9f63d49ffee2ef579d3b4a3234d6c89ba1d2fc1felfMirai
2024-11-04 22:01:060bf84ed58288e4f3d013c56f4ae84a709ec16633601e27a10791746465d97a63elfMirai
2024-11-04 22:00:10d40b6990069e04b26694237400a2322ce4abe691f53032bace40cbe528df9720elfMirai
2024-11-04 22:00:106b5504d02a69f8067c877b7c8fc7122730010edd98aed1a7e8078b1aa181c0ceelfMirai
2024-11-04 22:00:10c71f8af7229542de4fcee41a22b308b60313bbefe2753259d682939a4652863aelfMirai
2024-11-04 22:00:1047637a57c04b195f28863a51cd2395fb3a01336657ca050e6ae162ac87fe5381elfMirai
2024-11-04 21:59:075eb0f63e5cd9adf68843fc729f257fb61a7ac823264d5c942c6d2c7b122676b4elfMirai
2024-11-04 21:59:07c1412372c47cfe7e43a858fed41294320689936121fcf70288542e235aff0007elfMirai
2024-11-04 21:59:0624630f1c6dcffa509c0fd69b6f0f4b300370abfbd60b0cfcc11a486a6d683ff6elfMirai
2024-11-04 21:57:06acb800bc36e84a0e66c23b55e47ff5a1027ec74a896d040cd57adc20aff72150shMirai
2024-11-04 21:57:05acb800bc36e84a0e66c23b55e47ff5a1027ec74a896d040cd57adc20aff72150shMirai
2024-11-04 21:57:05acb800bc36e84a0e66c23b55e47ff5a1027ec74a896d040cd57adc20aff72150shMirai
2024-11-04 21:44:0580825f0f5131e6f9663a6ec0b8ce99479fe3982b30948d3cb040479213564c4bsh 
2024-11-04 21:44:05acb800bc36e84a0e66c23b55e47ff5a1027ec74a896d040cd57adc20aff72150shMirai
2024-11-04 21:35:091aaa6c0a01bfc56d766ec7871e914f411eb639f66a92388cb36fb72c939167a0elfMirai