URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 117.131.92.150
Firstseen:2024-11-17 05:34:05 UTC
Total malware sites :27
Online malware sites :0 (0%)
Offline Malware sites :27 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-11-17 05:35:16 117.131.92.150.Not listedAS24400 CMNET-V4shanghai-AS-AP- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-20 21:01:10http://117.131.92.150:59159/iOffline32-bit elf mirai ext Mozi ext threatquery
2025-11-18 01:16:08http://117.131.92.150:59990/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-11-18 00:41:07http://117.131.92.150:59990/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-09-16 22:22:10http://117.131.92.150:36719/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-09-06 15:31:20http://117.131.92.150:38992/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-06 00:28:06http://117.131.92.150:45696/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-06 00:02:06http://117.131.92.150:45696/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-24 07:55:05http://117.131.92.150:49101/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-24 07:38:06http://117.131.92.150:49101/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-14 01:25:05http://117.131.92.150:60211/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-13 11:51:12http://117.131.92.150:60211/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-04-15 00:28:05http://117.131.92.150:54192/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-04-15 00:01:05http://117.131.92.150:54192/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-26 02:00:06http://117.131.92.150:40407/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-03-22 12:21:09http://117.131.92.150:40407/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-10 22:34:05http://117.131.92.150:49232/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2025-02-09 19:55:05http://117.131.92.150:49232/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-02-09 15:34:04http://117.131.92.150:49232/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2024-12-26 12:41:07http://117.131.92.150:42314/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-12-14 02:27:13http://117.131.92.150:42314/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-12-12 04:49:08http://117.131.92.150:42314/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2024-12-07 01:12:06http://117.131.92.150:35033/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-12-07 00:44:08http://117.131.92.150:35033/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-12-05 12:44:06http://117.131.92.150:42188/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-11-20 04:26:06http://117.131.92.150:38163/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-11-19 22:42:06http://117.131.92.150:38163/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2024-11-17 05:35:16http://117.131.92.150:38163/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-20 21:01:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-18 01:16:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-11-18 00:41:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-09-16 22:22:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-09-06 15:31:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-06 00:28:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-06 00:02:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-24 07:55:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-24 07:38:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-14 01:25:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-13 11:51:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-15 00:28:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-15 00:01:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-01 02:33:54886e455fbfeb932cf8db42c069f48b3c94d1152895a3f2bf329c4bf8e5ab5f91elf  
2025-03-26 02:00:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-03-22 12:21:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-10 22:34:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-09 19:55:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-02-09 15:34:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-26 12:41:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-14 02:27:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-12 04:49:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-07 01:12:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-07 00:44:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-12-05 12:44:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-11-20 04:26:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-11-19 22:42:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2024-11-17 05:35:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai