URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 112.30.4.53
Firstseen:2020-09-13 05:51:02 UTC
Total malware sites :57
Online malware sites :0 (0%)
Offline Malware sites :57 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-13 05:51:16 112.30.4.53Not listedAS9808 CHINAMOBILE-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-05 15:22:07http://112.30.4.53:49842/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-02-05 13:50:06http://112.30.4.53:49842/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-02-02 10:05:05http://112.30.4.53:49842/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-29 06:19:05http://112.30.4.53:49842/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-01-19 03:36:05http://112.30.4.53:49164/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-01-09 01:49:05http://112.30.4.53:36738/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-12-20 03:07:05http://112.30.4.53:50525/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-12-18 07:04:15http://112.30.4.53:50525/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-12-17 09:39:05http://112.30.4.53:50525/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-11-19 04:24:36http://112.30.4.53:56258/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-11-08 22:47:33http://112.30.4.53:34859/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-11-08 22:18:10http://112.30.4.53:34859/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-11-07 00:02:05http://112.30.4.53:34859/mozi.mOfflinemirai ext tammeto
2021-10-31 21:26:07http://112.30.4.53:42123/Mozi.mOfflinemirai ext Mozi ext Petras_Simeon
2021-10-26 00:22:05http://112.30.4.53:46335/mozi.aOfflinemirai ext tammeto
2021-10-22 01:04:08http://112.30.4.53:38331/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-10-11 09:04:08http://112.30.4.53:59987/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-28 02:44:05http://112.30.4.53:42045/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-27 04:05:05http://112.30.4.53:42045/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-15 14:03:05http://112.30.4.53:36467/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-15 13:36:06http://112.30.4.53:36467/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-14 22:04:05http://112.30.4.53:36467/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-10 05:58:09http://112.30.4.53:52912/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-06 02:48:05http://112.30.4.53:52912/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-03 17:04:14http://112.30.4.53:52912/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-31 18:20:42http://112.30.4.53:34549/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-25 20:41:05http://112.30.4.53:51003/mozi.aOfflinemirai ext tammeto
2021-08-25 07:05:05http://112.30.4.53:41573/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-24 04:50:06http://112.30.4.53:56818/mozi.aOfflinemirai ext tammeto
2021-08-22 09:19:06http://112.30.4.53:38461/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-19 15:36:33http://112.30.4.53:59188/mozi.aOfflinemirai ext tammeto
2021-08-16 09:20:12http://112.30.4.53:59188/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-14 11:05:10http://112.30.4.53:41440/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-23 12:50:05http://112.30.4.53:51416/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-14 15:05:09http://112.30.4.53:35707/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-13 03:49:12http://112.30.4.53:35707/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-06 10:35:05http://112.30.4.53:41116/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-28 19:23:17http://112.30.4.53:51221/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-26 13:20:11http://112.30.4.53:51221/mozi.aOfflinemirai ext tammeto
2021-06-26 12:10:11http://112.30.4.53:51221/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-15 02:35:05http://112.30.4.53:51221/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-04 06:03:09http://112.30.4.53:56447/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2021-05-03 19:17:17http://112.30.4.53:56447/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-14 20:05:05http://112.30.4.53:54053/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-14 01:19:07http://112.30.4.53:54053/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-13 18:30:09http://112.30.4.53:54053/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-11 23:45:06http://112.30.4.53:54053/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-03-08 15:04:08http://112.30.4.53:50768/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2020-12-26 18:37:04http://112.30.4.53:54298/iOffline32-bit arm elf mirai ext geenensp
2020-12-26 00:53:05http://112.30.4.53:54298/bin.shOffline32-bit arm elf mirai ext geenensp
2020-11-21 13:19:05http://112.30.4.53:54298/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-13 06:49:05http://112.30.4.53:54298/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-11 19:34:04http://112.30.4.53:38157/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-14 17:22:04http://112.30.4.53:47298/iOffline32-bit arm elf geenensp
2020-10-14 16:27:03http://112.30.4.53:47298/bin.shOffline32-bit arm elf geenensp
2020-09-16 23:51:04http://112.30.4.53:47298/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-09-13 05:51:16http://112.30.4.53:47298/Mozi.aOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-02-05 15:22:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-05 13:50:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-02 10:05:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-29 06:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-19 03:36:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-09 01:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-20 03:07:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-18 07:04:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-12-17 09:39:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-20 00:10:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-08 23:22:0312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-08 22:18:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-11-07 00:02:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-31 21:26:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-26 00:22:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-22 01:04:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-10-11 09:04:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-28 02:44:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-27 04:05:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-15 14:03:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-15 13:36:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-14 22:04:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-10 05:58:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-06 02:48:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-03 17:04:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-31 18:46:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-25 20:41:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-25 07:05:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-24 04:50:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-22 09:19:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-19 15:45:5812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-16 09:20:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-14 11:05:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-23 12:50:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-14 15:05:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-13 03:49:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-06 10:35:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-28 19:23:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-26 13:20:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-26 12:10:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-15 02:35:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-04 06:03:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-03 19:17:1612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-14 20:05:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-14 01:19:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-13 18:30:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-11 23:45:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-08 15:04:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-26 18:37:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-26 00:53:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-21 13:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-13 06:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-11 19:34:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-14 17:22:042916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2020-10-14 16:27:032916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2020-09-16 23:51:042916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2020-09-13 05:51:032916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf