URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 222.102.252.99
Firstseen:2020-12-10 01:05:03 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-12-10 01:05:07 222.102.252.99Not listedAS4766 KIXS-AS-KR- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-05-17 14:53:20http://222.102.252.99:45682/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-14 16:07:11http://222.102.252.99:45682/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-14 15:34:12http://222.102.252.99:45682/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-11 12:54:17http://222.102.252.99:45682/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-10 01:38:05http://222.102.252.99:42275/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-05-10 00:44:15http://222.102.252.99:42275/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-05-09 02:40:13http://222.102.252.99:42275/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 13:43:12http://222.102.252.99:45703/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 13:19:13http://222.102.252.99:45703/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-29 02:24:14http://222.102.252.99:45703/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-28 20:56:22http://222.102.252.99:45703/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-28 02:38:09http://222.102.252.99:44830/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-27 18:44:08http://222.102.252.99:44830/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-27 18:08:05http://222.102.252.99:44830/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-27 05:53:11http://222.102.252.99:52130/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-27 05:23:08http://222.102.252.99:52130/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-04-27 00:22:06http://222.102.252.99:52130/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-26 08:39:11http://222.102.252.99:52343/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-24 09:08:10http://222.102.252.99:52642/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-04-24 03:23:08http://222.102.252.99:38696/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-14 19:21:08http://222.102.252.99:54241/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-10 15:35:06http://222.102.252.99:60939/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-10 01:05:07http://222.102.252.99:60939/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-05-31 01:45:35230f0e9308b51d8825ed7a3df88ffd016defcec9731fc65192fe845968c6c73celf  
2021-05-27 16:07:15230f0e9308b51d8825ed7a3df88ffd016defcec9731fc65192fe845968c6c73celf  
2021-05-27 04:49:2216feffba78c89296e7401ead65556b8294f7b1127d3c87e5ebb2b38c8e4bd2e1elf  
2021-05-27 00:31:39610f904cdfbf0a5170f62b48255c23734745c036c6ba3a9d6eb45f972bbd387aelf  
2021-05-26 20:26:03edbb697a14b51a10b8f9a8c13cc947bba3e412dcef46fe26170e21a2d1e6147celf  
2021-05-25 08:46:120aed94d746fb5e9fcbda879e159f915e5ede8ef39faaad8071d42cac476261a4elf  
2021-05-25 08:39:32fba09a4c474ac69d54e29b78142a733118d5312b880427b98e39ae65c79f9acfelf  
2021-05-24 22:40:2018818fd832fdf701343dde7deeb18d80ed6e33de328ea13ebe719c1bb59a0213elf  
2021-05-20 11:05:3302d54ed69d91dd29f31840e0d52c2081bbb9366b21f6f81dd5fb79502fc4d650elf  
2021-05-17 14:53:2012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-16 20:36:59fba09a4c474ac69d54e29b78142a733118d5312b880427b98e39ae65c79f9acfelf  
2021-05-16 20:04:52d4fea86544108c7cef6a22379d72b196e53223071ab34446c5dfe8df697e63e7elf  
2021-05-16 19:33:217c617a5d04760d34ee7d2583d8a7ff6fccc8a76288f18cc39f139d789098391celf  
2021-05-16 18:51:2416feffba78c89296e7401ead65556b8294f7b1127d3c87e5ebb2b38c8e4bd2e1elf  
2021-05-16 04:39:597b81ed08ace884e9978983b1e497626033664f0b536622dc20558a11a54ffe48elf  
2021-05-16 04:00:53bbab9e53eacf7a064cf484db46dfc0ee5c08177ed7de704cb55514f6a2c6582belf  
2021-05-15 13:59:39d4fea86544108c7cef6a22379d72b196e53223071ab34446c5dfe8df697e63e7elf  
2021-05-15 13:38:0188faffe027c0061e439bfa89f16385ad9bb58cdf294014046826eb51988399afelf  
2021-05-14 23:58:23c293160a4004fea18d8afc072ca4d79f37a94561d69007137158024d079724cdelf  
2021-05-14 23:53:39e9b44343cf4a0ffaeac3fbc300fda494881093518e8121a025a95aa7e516f782elf  
2021-05-14 21:56:2688faffe027c0061e439bfa89f16385ad9bb58cdf294014046826eb51988399afelf  
2021-05-14 16:07:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-14 15:34:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-11 21:41:275efd5fc2a05050bcc76be326a577849f45ba76d58411a72a0ebe8f861f8d7993elf  
2021-05-11 12:54:1712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-10 01:38:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-10 00:44:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-05-09 02:40:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 13:43:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 13:19:1312013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-29 02:24:1412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-28 20:56:2212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-28 02:38:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 18:44:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 18:08:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 05:53:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 05:23:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-27 00:22:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-26 08:39:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-24 09:08:1012013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-04-24 03:23:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-14 19:21:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-10 15:35:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-12-10 01:05:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai