URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: hxipzknrsojnitzv.zip
Spamhaus DBL :Botnet C&C domain
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-11-05 04:25:04 UTC
Total malware sites :25
Online malware sites :0 (0%)
Offline Malware sites :25 (100%)
A record(s) observed :10

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-13 17:19:39 34.76.205.124124.205.76.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- BEno
2025-11-11 05:58:47 2.192.102.162Not listedAS16232 ASN-TIM- ITno
2025-11-08 21:02:36 2.192.22.220Not listedAS16232 ASN-TIM- ITno
2025-11-07 19:26:10 185.229.236.188hosted-by.servereasy.itNot listedAS60798 ASSERVEREASY- ITno
2025-11-07 17:34:43 5.178.101.155necralvm.hostSBL646228AS214639 TAKEHOST-AS- DEno
2025-11-07 15:56:30 185.25.207.253coralmc-hosted-by.servereasy.itNot listedAS60798 ASSERVEREASY- ITno
2025-11-07 12:45:58 5.178.101.166necralvm.hostSBL646228AS214639 TAKEHOST-AS- DEno
2025-11-06 10:02:59 213.176.76.20Not listedAS142578 ELARGEHONGKONGLI-AS-AP- DEno
2025-11-05 17:08:29 194.156.102.210136008.ip-ptr.techNot listedAS215540 GCS-AS- CHno
2025-11-05 04:25:06 45.133.119.221Not listedAS206499 LOCIX- ITno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-05 04:26:14http://hxipzknrsojnitzv.zip/bins/bins.shOfflinebotnetdomain mirai ext opendir sh BlinkzSec
2025-11-05 04:26:10http://hxipzknrsojnitzv.zip/bins/test.shOfflinebotnetdomain opendir sh BlinkzSec
2025-11-05 04:25:17http://hxipzknrsojnitzv.zip/bins/mirai.mipsOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:17http://hxipzknrsojnitzv.zip/bins/miraint.armOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:12http://hxipzknrsojnitzv.zip/bins/mirai.m68kOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.gnueabihfOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/miraint.x86Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.spcOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.arm7Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/miraint.mipsOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.ppcOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/miraint.armv7aOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.armv7aOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:10http://hxipzknrsojnitzv.zip/bins/mirai.sh4Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:09http://hxipzknrsojnitzv.zip/bins/miraint.ppcOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:09http://hxipzknrsojnitzv.zip/bins/mirai.arm5nOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:09http://hxipzknrsojnitzv.zip/bins/miraint.arm5nOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:07http://hxipzknrsojnitzv.zip/bins/mirai.armOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:07http://hxipzknrsojnitzv.zip/bins/miraint.m68kOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:07http://hxipzknrsojnitzv.zip/bins/miraint.arm7Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:07http://hxipzknrsojnitzv.zip/bins/miraint.mpslOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:07http://hxipzknrsojnitzv.zip/bins/mirai.mpslOfflinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:06http://hxipzknrsojnitzv.zip/bins/miraint.sh4Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:06http://hxipzknrsojnitzv.zip/bins/mirai.x86Offlinebotnetdomain elf mirai ext opendir BlinkzSec
2025-11-05 04:25:06http://hxipzknrsojnitzv.zip/bins/miraint.spcOfflinebotnetdomain elf mirai ext opendir BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-07 13:06:32652285d260515c08cfe146ebdd2f5a4977ec490a608c57007abcb5b6f4fd4975shMirai
2025-11-05 17:09:504e27e0a50c2e828644da7f0478a0c9a6e4a4afafd78905305310d43f25771de0shMirai
2025-11-05 07:22:28323e256f5a53d48c07e45ef83b6f5a7c00717e8bbf8730e15b80f7cc0b54e210txt  
2025-11-05 04:26:14dd47b5f7dda2ade9c11ef05158d62d5d5f63bc909cfce42a03008f7e1b1928ffshMirai
2025-11-05 04:25:177e178cf20f7ca01d17f31ed5e4af1b91d8266803ec29600fd16b538b67a1a44eelfMirai
2025-11-05 04:25:17e7627dede5e5ffaed4eebdcced9705d9eb5b7260228d3a905a158b5de1566607elfMirai
2025-11-05 04:25:1211a9bb6be3b240551ac877e8295bd8e2d037e24037c652026b180095a874c014elfMirai
2025-11-05 04:25:106261aa1c192e4236f433c96432b69670036ac880f69939a35befecbd370e3c77elfMirai
2025-11-05 04:25:105d65d515015324ae3e3492595cd3b90baaeb4b8a7301a7d695e02a54c5ee71e4elfMirai
2025-11-05 04:25:1014241b8675cb4eb7bfe4412ca5a1d0472e78e0a5643d45804c4c355655cf9a5felfMirai
2025-11-05 04:25:105503bf330b43d6a4de09c7bcb9d9713d767f3561b4324e4706a910429eeb9c47elfMirai
2025-11-05 04:25:10b214aeb26564b7ec06185ef4d37e2c265e54431a3d7601715cfc85631c3b6c47elfMirai
2025-11-05 04:25:1012d2f59e9a9c766d20843393b05f7707144ff1f80ee1a8ad5d6675b153a29a1eelfMirai
2025-11-05 04:25:091e4a4619afecc3f53f118f7cd0fbf07038563dfa879eeb0335ac84f980c08a5aelfMirai
2025-11-05 04:25:0937c34312ae1fac55f430632d1b19d1b2a0473b0f34475b3c04fe0cd91af9a6c1elfMirai
2025-11-05 04:25:09e632c1dee6c9f187f36e633ac3db7a0f3db30a936129c04ebaa7e5b074631b51elfMirai
2025-11-05 04:25:0989fd5f1fbb3aacb14c930df1af7e3a09f0ede25e161e2908eb6504f47b500360elfMirai
2025-11-05 04:25:09be5cdd7fa8e206af1675707eb9ca01385a883c969017db9f9fa36b3ec0f90b7belfMirai
2025-11-05 04:25:083d3b6fd3f50a21695b969bf76e3e438617f8aa786d258364efd3ca8248a7b29eelfMirai
2025-11-05 04:25:079216566a3b04c398c50335e75edc9aeeb255950e173dbbcd47c1cda347de5a08elfMirai
2025-11-05 04:25:0784dd4510c6e5844105c81a491fbe95a84f5cff6e208dbe997221df40f4fe8f96elfMirai
2025-11-05 04:25:07894588ac34e014ffca4a2b0c7152c2ec98fec60c5a3d6cec25ea5558f5884bb5elfMirai
2025-11-05 04:25:0753fc7411a3e6a075c22c9af5d61ceb7e5c7c2dc53a81cba9e7d93aa96fe639b7elfMirai
2025-11-05 04:25:074f3de52ed263ee374741fc38bb64cc08c7bba38e59333c251eebc5b691c6255celfMirai
2025-11-05 04:25:061b90d928f67a8a2f849f39b408507282034c5911b5a8afd693248e7ce6dc1552elfMirai
2025-11-05 04:25:069182f6db71c6f263044a5d2e18c365857834d752ad6ce8e405c96e2902d3fafcelfMirai
2025-11-05 04:25:0633a3c17ffc96cc6e3a23060e964b50cf2ab5cbba8a8e56ac8f075f0f16f08144elfMirai