URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 120.28.194.160
Firstseen:2025-04-28 23:55:03 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 23:55:11 120.28.194.160Not listedAS132199 GLOBE-MOBILE-5TH-GEN-AS- PHyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-05-01 16:31:20http://120.28.194.160:56578/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-05-01 15:21:19http://120.28.194.160:56578/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-01-05 18:02:13http://120.28.194.160:44812/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2026-01-05 17:33:07http://120.28.194.160:44812/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-11-08 08:01:25http://120.28.194.160:54321/Mozi.mOfflineelf Mozi ext asyncthecatlol
2025-10-23 06:11:15http://120.28.194.160:55826/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-23 05:41:30http://120.28.194.160:55826/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-12 08:51:14http://120.28.194.160:54321/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-05 03:15:17http://120.28.194.160:54265/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-02 11:04:00http://120.28.194.160:47485/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-10-02 10:33:25http://120.28.194.160:47485/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-09-19 16:00:23http://120.28.194.160:40706/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-09-19 15:37:23http://120.28.194.160:40706/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-10 20:29:23http://120.28.194.160:51968/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-03 04:56:08http://120.28.194.160:46874/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-07-03 04:26:10http://120.28.194.160:46874/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-21 22:13:12http://120.28.194.160:42449/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-21 03:20:06http://120.28.194.160:42449/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-05-05 12:04:05http://120.28.194.160:56269/Mozi.mOfflinemirai ext Mozi ext Gandylyan1
2025-04-29 00:09:18http://120.28.194.160:56269/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2025-04-28 23:55:11http://120.28.194.160:56269/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-01 16:31:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-05-01 15:21:1912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-01-05 18:02:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2026-01-05 17:33:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-23 10:56:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-23 06:11:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-12 08:51:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-05 03:15:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-02 11:03:5912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-10-02 10:33:2512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-09-19 16:00:2312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-09-19 15:37:2312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-10 20:29:2312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-03 04:56:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-07-03 04:26:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-21 22:13:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-21 03:20:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-05-13 13:34:11f952f7885ca924b6e5b435b552103796e38dbfd51ffe6cb16ab7415c5cf9c8c9elf  
2025-05-05 12:04:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-29 00:09:1812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2025-04-28 23:55:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai