URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 1.246.223.32
Firstseen:2020-01-21 13:05:29 UTC
Total malware sites :26
Online malware sites :0 (0%)
Offline Malware sites :26 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-01-21 13:05:32 1.246.223.32Not listedAS9318 SKB-AS- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-03-21 18:34:19http://1.246.223.32:1461/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-10-26 18:24:25http://1.246.223.32:2078/iOfflinemirai ext Mozi ext Petras_Simeon
2021-10-15 12:34:15http://1.246.223.32:3591/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-10-14 18:34:08http://1.246.223.32:3591/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-02 05:34:05http://1.246.223.32:4201/mozi.mOfflinemirai ext tammeto
2021-07-17 03:04:10http://1.246.223.32:3523/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-15 11:19:11http://1.246.223.32:3523/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-10 22:15:08http://1.246.223.32:1868/iOfflinemirai ext Petras_Simeon
2021-07-05 15:49:09http://1.246.223.32:1868/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-05 08:19:08http://1.246.223.32:1868/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-25 09:34:14http://1.246.223.32:4201/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-02-11 04:19:05http://1.246.223.32:4848/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-13 21:34:06http://1.246.223.32:3227/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-13 09:31:48http://1.246.223.32:3227/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-23 23:34:06http://1.246.223.32:1314/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-19 11:04:05http://1.246.223.32:2078/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-13 12:34:05http://1.246.223.32:4816/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-10 20:49:06http://1.246.223.32:4816/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-27 14:49:05http://1.246.223.32:2078/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-14 14:09:16http://1.246.223.32:2109/Mozi.xOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-14 14:05:31http://1.246.223.32:2109/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-08-12 10:44:09http://1.246.223.32:2456/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-05-28 21:18:05http://1.246.223.32:2456/Mozi.a;chmod+777+Mozi....Offlinebashlite elf gafgyt ext mirai ext zbetcheckin
2020-03-15 00:07:15http://1.246.223.32:2109/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1
2020-01-27 04:04:05http://1.246.223.32:1953/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1
2020-01-21 13:05:32http://1.246.223.32:2456/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-03-21 18:34:19e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2022-04-17 23:05:485b2d15268ce1a5be7a59e6c95e5f86d6f1e329370aaf18d740c9815e9b192072elf  
2021-10-26 18:24:25e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-10-15 12:34:15e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-10-14 18:34:08e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-09-02 05:34:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-07-17 03:04:10e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-07-15 11:19:11e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-07-10 22:15:08e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-07-05 15:49:09e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-07-05 08:19:08e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-06-25 09:34:14e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2021-02-11 04:19:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-12-25 10:46:08601925fcba7181ef4bec3c69f5d464511a2d1e7f04f8fd7998c43783b1e15c91elf  
2020-12-13 21:34:06e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-12-13 09:31:48e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-11-23 23:34:06e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-11-17 09:35:136ac11884e57c16cf0650b4a71445811bd62cf5c03c2a1ed37b0f57cd195a120delf  
2020-10-19 11:04:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-10-13 12:34:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-10-10 20:49:06e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-09-27 14:49:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-09-14 14:09:16e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-09-14 14:05:31e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-08-12 10:44:09e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-05-28 21:18:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-03-15 00:07:15e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-01-27 04:04:05e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2020-01-21 13:05:32e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai