URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 112.30.4.136
Firstseen:2021-01-11 15:34:52 UTC
Total malware sites :43
Online malware sites :0 (0%)
Offline Malware sites :43 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-18 14:35:19 112.30.4.136Not listedAS9808 CHINAMOBILE-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-09-12 16:14:35http://112.30.4.136:50937/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-04-15 22:35:06http://112.30.4.136:38225/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-04-14 15:37:05http://112.30.4.136:38225/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-04-14 13:29:05http://112.30.4.136:38225/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-02-08 12:19:05http://112.30.4.136:37006/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-31 03:12:56http://112.30.4.136:59894/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-01-27 21:50:06http://112.30.4.136:59894/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-08 17:04:05http://112.30.4.136:43498/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-07 23:19:13http://112.30.4.136:43498/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-07 09:51:06http://112.30.4.136:43498/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-01-05 12:10:06http://112.30.4.136:43498/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-12-21 21:35:09http://112.30.4.136:40094/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-12-21 07:28:10http://112.30.4.136:40094/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-12-21 06:53:05http://112.30.4.136:40094/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-08-31 14:42:05http://112.30.4.136:42629/mozi.aOfflinemirai ext tammeto
2021-08-29 07:35:09http://112.30.4.136:42629/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-08-28 01:26:05http://112.30.4.136:42629/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-08-04 02:43:05http://112.30.4.136:41678/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-08-04 02:18:24http://112.30.4.136:41678/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-08-02 13:04:22http://112.30.4.136:41678/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-31 06:50:16http://112.30.4.136:41678/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-24 12:03:36http://112.30.4.136:45132/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2021-06-13 03:57:13http://112.30.4.136:48989/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-11 10:35:10http://112.30.4.136:48989/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-04 12:50:14http://112.30.4.136:37620/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-19 02:43:17http://112.30.4.136:51151/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-19 02:13:11http://112.30.4.136:51151/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-12 17:52:15http://112.30.4.136:43123/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-12 17:23:18http://112.30.4.136:43123/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-10 02:49:07http://112.30.4.136:43123/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-09 16:49:16http://112.30.4.136:43123/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-27 05:58:10http://112.30.4.136:40963/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-24 05:35:05http://112.30.4.136:40963/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-18 18:51:07http://112.30.4.136:37148/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-16 10:47:10http://112.30.4.136:37148/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-16 10:24:05http://112.30.4.136:37148/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-03-24 14:13:11http://112.30.4.136:48852/iOffline32-bit arm elf mirai ext geenensp
2021-03-24 13:49:05http://112.30.4.136:48852/bin.shOffline32-bit arm elf mirai ext geenensp
2021-03-14 10:34:05http://112.30.4.136:48852/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-01-31 18:04:13http://112.30.4.136:56563/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2020-12-24 03:04:04http://112.30.4.136:44423/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2020-10-20 07:49:05http://112.30.4.136:43103/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-18 14:35:19http://112.30.4.136:43103/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-09-12 16:37:3912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-04-15 22:35:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-04-14 15:37:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-04-14 13:29:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-08 12:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-31 03:12:5612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-27 21:50:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-08 17:04:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-07 23:19:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-07 09:51:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-05 12:10:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-21 21:35:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-21 07:28:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-21 06:53:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-31 14:42:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-29 07:35:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-28 01:26:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-04 02:43:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-04 02:18:2412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-02 13:04:2212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-31 06:50:1612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-24 12:14:0112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-13 03:57:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-11 10:35:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-04 12:50:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-19 02:43:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-19 02:13:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-12 17:52:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-12 17:23:1812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-10 02:49:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-09 16:49:1612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 05:58:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-24 05:35:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-18 18:51:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-16 10:47:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-16 10:24:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-24 14:13:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-24 13:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-14 10:34:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-01-31 18:04:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-24 03:04:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-20 07:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-18 14:35:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai