URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 1.246.222.232
Firstseen:2019-12-20 07:30:47 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-20 07:30:51 1.246.222.232Not listedAS9318 SKB-AS- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-03-20 01:34:24http://1.246.222.232:1508/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2023-03-18 15:49:20http://1.246.222.232:1508/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-12-15 02:34:05http://1.246.222.232:1972/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-12-08 04:34:04http://1.246.222.232:2132/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-11-08 21:51:37http://1.246.222.232:4170/iOfflinemirai ext Mozi ext Petras_Simeon
2021-11-06 22:11:04http://1.246.222.232:2259/iOfflinemirai ext Mozi ext Petras_Simeon
2021-11-03 06:04:05http://1.246.222.232:2259/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-11-02 03:04:14http://1.246.222.232:2259/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-10-17 12:49:05http://1.246.222.232:4566/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-10-07 15:43:05http://1.246.222.232:1712/mozi.aOfflinemirai ext tammeto
2021-04-16 05:49:13http://1.246.222.232:4170/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-04-04 21:05:02http://1.246.222.232:2722/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1
2020-03-01 09:04:36http://1.246.222.232:1712/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1
2019-12-20 07:30:51http://1.246.222.232:4170/Mozi.mOfflineelf mirai ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-03-20 01:34:24e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2023-03-18 15:49:20e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2022-04-13 01:01:32e3ee24ce5e90ceeeb100163ae760ffa77844bbf8c37de87fed1840c5fe2404abelf  
2021-12-28 03:44:58e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-12-27 04:34:02b9bc2f4a3ab2efef091801f95c607541e558c4eda333eed5dd2494eec263a00aelf  
2021-12-15 02:34:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-12-08 04:34:04e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-12-07 23:48:38a60b9d43bc21440c7e1864bd7f855261c8526fc2a9948e7acb783b63f894924felf  
2021-12-07 12:26:39601925fcba7181ef4bec3c69f5d464511a2d1e7f04f8fd7998c43783b1e15c91elf  
2021-11-08 21:51:37e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-11-03 06:04:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-11-02 03:04:14e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-10-17 12:49:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-10-07 15:43:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-04-16 05:49:13e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-04-04 21:05:02e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-03-01 09:04:36e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2019-12-20 07:30:50e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai