URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 47.21.48.182
Firstseen:2020-11-05 10:07:03 UTC
Total malware sites :29
Online malware sites :0 (0%)
Offline Malware sites :29 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-05 10:07:07 47.21.48.182ool-2f1530b6.static.optonline.netNot listedAS6128 CABLE-NET-1- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-12-22 08:36:08http://47.21.48.182:60813/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-12-22 08:21:06http://47.21.48.182:60813/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-12-21 04:54:06http://47.21.48.182:60813/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-12-10 07:23:06http://47.21.48.182:55111/iOffline32-bit arm elf Mozi ext geenensp
2022-12-10 07:01:06http://47.21.48.182:55111/bin.shOffline32-bit arm elf Mozi ext geenensp
2022-12-07 18:21:04http://47.21.48.182:55111/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-12-02 19:36:05http://47.21.48.182:52663/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-09-01 07:26:05http://47.21.48.182:59596/iOffline32-bit arm elf Mozi ext geenensp
2022-09-01 06:56:06http://47.21.48.182:59596/bin.shOffline32-bit arm elf Mozi ext geenensp
2022-05-02 07:22:24http://47.21.48.182:43894/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-04-30 10:05:07http://47.21.48.182:43894/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-04-29 18:17:07http://47.21.48.182:47121/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-02-07 15:53:11http://47.21.48.182:51198/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-02-07 15:41:11http://47.21.48.182:51198/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-02-07 06:13:08http://47.21.48.182:51198/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2022-01-28 07:17:05http://47.21.48.182:55458/mozi.aOfflinemirai ext tammeto
2022-01-21 02:37:04http://47.21.48.182:55458/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-23 01:54:11http://47.21.48.182:51285/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-20 21:52:09http://47.21.48.182:51285/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-09-16 04:12:06http://47.21.48.182:58553/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-16 03:44:11http://47.21.48.182:58553/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-13 13:14:04http://47.21.48.182:58553/mozi.aOfflinemirai ext tammeto
2021-09-13 04:39:04http://47.21.48.182:44544/iOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-13 04:07:07http://47.21.48.182:44544/bin.shOffline32-bit arm elf mirai ext Mozi ext geenensp
2021-09-11 16:38:08http://47.21.48.182:33531/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-08-14 15:13:33http://47.21.48.182:37766/mozi.aOffline tammeto
2020-11-08 18:34:07http://47.21.48.182:37766/iOffline32-bit arm elf mirai ext geenensp
2020-11-07 00:51:08http://47.21.48.182:37766/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-05 10:07:07http://47.21.48.182:54735/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-12-22 08:36:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-12-22 08:21:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-12-21 04:54:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-12-10 07:23:06ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1elf  
2022-12-10 07:01:06ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1elf  
2022-12-07 18:21:04ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1elf  
2022-12-02 19:36:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-09-01 07:26:05ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1elf  
2022-09-01 06:56:06ca35f2e3b3f297c371f0a58398cb43e24c1d1419f08baff9b9223b9032ccf4c1elf  
2022-05-02 08:00:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-04-30 10:05:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-04-29 18:17:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-07 15:53:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-07 15:41:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-02-07 06:13:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-28 07:17:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-01-21 02:37:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-23 01:54:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-20 21:52:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-16 04:12:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-16 03:44:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-13 13:14:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-13 04:39:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-13 04:07:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2021-09-11 16:38:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-08 18:34:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-07 00:51:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-05 10:07:0712013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai