URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: autotoll.shop
Domain registrar:Gname -
Domain registration date:2024-11-14 04:12:25 UTC
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-07-15 15:49:05 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-15 02:29:13 172.65.190.172Not listedAS13335 CLOUDFLARENETn/ayes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-07-15 16:05:08http://autotoll.shop/1.shOfflinemirai ext sh ua-wget BlinkzSec
2025-07-15 15:49:20http://autotoll.shop/00101010101001/morte.m68kOfflineelf geofenced mirai ext ua-wget USA BlinkzSec
2025-07-15 15:49:20http://autotoll.shop/00101010101001/morte.sh4Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:19http://autotoll.shop/00101010101001/morte.arcOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:19http://autotoll.shop/00101010101001/morte.i686Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:19http://autotoll.shop/00101010101001/morte.mpslOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:18http://autotoll.shop/00101010101001/morte.armOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:16http://autotoll.shop/00101010101001/morte.arm6Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:16http://autotoll.shop/00101010101001/morte.ppcOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:15http://autotoll.shop/00101010101001/morte.x86Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:15http://autotoll.shop/00101010101001/debugOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:11http://autotoll.shop/00101010101001/morte.mipsOfflineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:11http://autotoll.shop/00101010101001/morte.x86_64Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:11http://autotoll.shop/00101010101001/morte.arm7Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:11http://autotoll.shop/00101010101001/morte.arm5Offlineelf mirai ext ua-wget BlinkzSec
2025-07-15 15:49:11http://autotoll.shop/00101010101001/morte.spcOfflineelf mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-07-15 16:05:0846626ff6e0c9ca700c398f551d7ad5a3fea186abf400c37de81dbb13b0e1f3f2shMirai
2025-07-15 15:49:2064167acd17aac2637cbb4dd84f0159a2395e0f1f9057f1f471bbe37646b9c20aelfMirai
2025-07-15 15:49:2023e3d7a1ea1eb6be1b0ed170f1c0fe7126fcbaf5da1e1358507b5553d9da5f07elfMirai
2025-07-15 15:49:19ed67075b604a4e4ef9da5e3d8c5d65805c943c6912cd09ffaff7b9545c9df571elfMirai
2025-07-15 15:49:19e8fd96cd277a25f91d504f2498e9cd2ae43b5cfc8496967807d3d40fc4473fb8elfMirai
2025-07-15 15:49:1940184fbf50c0d0258d78b8f38a83b0e0cb1315b80fdff27887387f8304eb93abelfMirai
2025-07-15 15:49:1788844b8b2e3d2f04e5f65fc885186bd91027a968dadf7183287e7d1d7f6f291felfMirai
2025-07-15 15:49:16d9787c1edf201fbf158ab62554ea6369387e002551a07f97f50629ec6bd706e4elfMirai
2025-07-15 15:49:15c23e94984fdde0eb0414d13ea526c49f3bce5195b23537d693f95b323b782ec9elfMirai
2025-07-15 15:49:1555bd81bc000ebd24dc7571b745420bb1faf9607112da3723482fe5f045cd67deelfMirai
2025-07-15 15:49:1405310b8660041be2fc065b10f5e3552682a96328ea729cbef06ac2f4d9b90e83elfMirai
2025-07-15 15:49:1185be94ab11a8e87c5645a30393b98307a4e784ff634402ec5aeb59d8644b558belfMirai
2025-07-15 15:49:112d7ac5ba36cc73adcfc53e78fbe8e156a7bbbcaaec8e833d83f3e562d8030a94elfMirai
2025-07-15 15:49:1145d4741837c95127ad9887e696fafd69f6dd37ace0a891cbd62abfc24d040cb4elfMirai
2025-07-15 15:49:111f40f43a66f215886efa655b96a8f8dace7502940485c266bb141e67fd04d6f7elfMirai
2025-07-15 15:49:1051187e3313a6eb3d216971154920fffe3eb5934f45591253a77d1e7502b42028elfMirai