URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 120.193.91.204
Firstseen:2020-09-15 06:31:02 UTC
Total malware sites :44
Online malware sites :0 (0%)
Offline Malware sites :44 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-15 06:31:15 120.193.91.204Not listedAS9808 CHINAMOBILE-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-18 12:51:08http://120.193.91.204:54617/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-11 22:28:08http://120.193.91.204:42680/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-11 21:50:15http://120.193.91.204:42680/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-10 06:20:13http://120.193.91.204:42680/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-01 08:34:18http://120.193.91.204:59262/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-30 02:05:18http://120.193.91.204:59262/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-28 08:38:39http://120.193.91.204:50884/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-25 20:36:07http://120.193.91.204:50884/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-07-21 05:45:05http://120.193.91.204:43200/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-07-06 00:45:06http://120.193.91.204:53583/iOffline32-bit arm elf Mozi ext geenensp
2021-07-06 00:16:11http://120.193.91.204:53583/bin.shOffline32-bit arm elf Mozi ext geenensp
2021-06-25 19:35:07http://120.193.91.204:53583/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-06-25 08:21:06http://120.193.91.204:53583/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-23 02:11:15http://120.193.91.204:54840/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-19 22:21:07http://120.193.91.204:54840/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-17 23:15:11http://120.193.91.204:54840/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-11 23:36:10http://120.193.91.204:57957/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-10 19:51:11http://120.193.91.204:57957/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-06 02:12:11http://120.193.91.204:33648/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-06-04 01:35:21http://120.193.91.204:33648/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-06-02 08:50:09http://120.193.91.204:33648/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-22 16:36:20http://120.193.91.204:44333/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-21 08:48:14http://120.193.91.204:44333/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-21 08:17:11http://120.193.91.204:44333/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-03 15:25:09http://120.193.91.204:55161/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-30 19:45:13http://120.193.91.204:55161/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 08:06:20http://120.193.91.204:55161/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-21 14:21:09http://120.193.91.204:45503/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-17 01:20:05http://120.193.91.204:45503/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-03-27 08:25:05http://120.193.91.204:56601/bin.shOffline32-bit arm elf mirai ext geenensp
2021-03-25 22:27:14http://120.193.91.204:56601/iOffline32-bit arm elf mirai ext geenensp
2021-03-07 08:49:09http://120.193.91.204:56601/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-02-24 14:13:06http://120.193.91.204:53300/iOffline32-bit arm elf mirai ext geenensp
2021-02-24 13:52:09http://120.193.91.204:53300/bin.shOffline32-bit arm elf mirai ext geenensp
2021-01-17 07:14:09http://120.193.91.204:53300/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-01-07 15:04:06http://120.193.91.204:60058/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2020-11-03 09:49:05http://120.193.91.204:60854/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-02 20:35:05http://120.193.91.204:60854/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-28 14:34:06http://120.193.91.204:41294/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-25 14:04:05http://120.193.91.204:41294/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-30 11:36:29http://120.193.91.204:36451/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-18 15:34:04http://120.193.91.204:56520/iOffline32-bit arm elf mirai ext geenensp
2020-09-15 13:53:04http://120.193.91.204:56520/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-15 06:31:15http://120.193.91.204:56520/bin.shOffline32-bit arm elf mirai ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-09-18 12:51:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-11 22:28:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-11 21:50:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-10 06:20:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-08-01 08:34:1812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-30 02:05:1812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-28 09:17:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-25 20:36:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-21 05:45:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-07-06 00:45:062916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2021-07-06 00:16:112916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2021-06-25 19:35:072916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2021-06-25 08:21:062916f8d5b9b94093d72a6b9cdf0a4c8f5f38d70d5cea4444869ab33cd7e1f243elf 
2021-06-23 02:11:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-19 22:21:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-17 23:15:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-11 23:36:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-10 19:51:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-06 02:12:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-04 01:35:2112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-06-02 08:50:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-22 16:36:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-21 08:48:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-21 08:17:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-03 15:25:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-30 19:45:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 08:06:1912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-21 14:21:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-17 01:20:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-27 08:25:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-25 22:27:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-03-07 08:49:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-02-24 14:13:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-02-24 13:52:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-01-17 07:14:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-01-07 15:04:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-03 09:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-02 20:35:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-28 14:34:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-25 14:04:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-30 11:36:2912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-18 15:34:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-15 13:53:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-15 06:31:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai