URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tset1.wifime.biz.id
Domain registrar: n/a
Domain registration date:2025-02-27 09:35:13 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-11-18 17:32:06 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-18 17:32:15 139.59.247.208Not listedAS14061 DIGITALOCEAN-ASN- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-18 17:32:21http://tset1.wifime.biz.id/windyloveyou/windy.arm7Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:20http://tset1.wifime.biz.id/windyloveyou/windy.arm5Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:20http://tset1.wifime.biz.id/windyloveyou/windy.ppcOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:19http://tset1.wifime.biz.id/windyloveyou/windy.sh4Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:19http://tset1.wifime.biz.id/windyloveyou/windy.mpslOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:19http://tset1.wifime.biz.id/1.shOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:19http://tset1.wifime.biz.id/windyloveyou/debugOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:19http://tset1.wifime.biz.id/windyloveyou/windy.arcOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:17http://tset1.wifime.biz.id/c.shOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:17http://tset1.wifime.biz.id/w.shOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.mipsOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.spcOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.x86Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.arm6Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.m68kOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:16http://tset1.wifime.biz.id/windyloveyou/windy.x...Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:15http://tset1.wifime.biz.id/windyloveyou/windy.i686Offlinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:15http://tset1.wifime.biz.id/windyloveyou/windy.armOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-18 17:32:15http://tset1.wifime.biz.id/wget.shOfflinebotnetdomain mirai ext opendir DaveLikesMalwre

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-18 17:32:21125f69fac702b60a35ab6198e07a17ad7991a4b438a136d8a599b71e0231954belfMirai
2025-11-18 17:32:19dcf780bc56623e229c45ba994ed1715d08a3819d42df6c327edb4cade2e9c1c4elfMirai
2025-11-18 17:32:19658d3203fb16ac1857f399618e8db9d9717279d8b174592141d34ac5a2b0dd55elfMirai
2025-11-18 17:32:192601f3cd730b34172d36924782bd0ff2df0e83bdb2e8641d4cd156ca3642ea59elfMirai
2025-11-18 17:32:1988d3efe82716b0c7f4c8d638fad7de418a42f978f03b7448637041a30825f98celfMirai
2025-11-18 17:32:196102e531a7c1c7d2a52fb6294a86a7d9da5b48dcde8a191f0b7bd6c7deb1bdbeshMirai
2025-11-18 17:32:19bdef68d2634e47b04b7011ad505692bcbaa6076c169ec5401e6698e8e64010c7elfMirai
2025-11-18 17:32:190416c8bef32589f967b99afb6d0f6d732b92c2d2bd175b946d086d36436cd2a3elfMirai
2025-11-18 17:32:178431acc660eb60044fe07b0404e24e06c664286337893e29a9cd30f867280b43shMirai
2025-11-18 17:32:166d138a98eba358f9eaf2ed87a360abb6d03a1710a83f814808db4ab63d089620shMirai
2025-11-18 17:32:16bf6b0faaecbe04385340f224de3878b9c8bb69bfce1fd3b0e3e8a0c32b99531aelfMirai
2025-11-18 17:32:169002671c1d691803fb24bcb8292a58004569f8e584b18bd7a64082bdab495fd5elfMirai
2025-11-18 17:32:163fc03da2b086a20cfeb572fe0eecdf99cd79cc0b5912ea1d9aa44090dcc0f9e6elfMirai
2025-11-18 17:32:163e34149ef68f83ee3af7a5592e6fa7ae578b760414bd3d7a0b16b9bd035c0174elfMirai
2025-11-18 17:32:160062dfafcf30a95d5b30831430ff57a33ba8206e3e843181f25359a0c10a820delfMirai
2025-11-18 17:32:15603d383dd003b84b3dec04e84a9d89449c647442e687b633850401abc73661d0elfMirai
2025-11-18 17:32:1524ab0d2047629177539560dd033a45ada43f485e2b3426e34a00948054c867d0elfMirai
2025-11-18 17:32:15a13ee7d61053af6534c6988753f783133c81bab6c662587d9521d6439a75e85eshMirai
2025-11-18 17:32:14987e6b9f0ce922f2619394e636cbfc43974b95dd1c62c38bb7edbbaf503884afelfMirai