URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kanikiken.duckdns.org
Domain registrar:Gandi -
Domain registration date:2013-04-12 19:58:56 UTC
Abuse complaint sent?: Yes (2025-01-30 12:55:01 UTC to support{at}duckdns[dot]org)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-01-30 12:54:11 UTC
Total malware sites :22
Online malware sites :0 (0%)
Offline Malware sites :22 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-02-03 19:40:37 192.169.69.26sinkhole.hyas.comNot listedAS27323 SERVERSTADIUM- USno
2025-01-30 12:54:14 18.217.210.12ec2-18-217-210-12.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.x86Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.arm7Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.arm5Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.mipsOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.x86_64Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.armOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.mpslOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.arm6Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.ppcOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.sh4Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-31 21:21:05http://kanikiken.duckdns.org/condi/bot.m68kOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:55:14http://kanikiken.duckdns.org/bot.m68kOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:16http://kanikiken.duckdns.org/bot.ppcOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:15http://kanikiken.duckdns.org/bot.arm6Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:15http://kanikiken.duckdns.org/bot.mipsOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:15http://kanikiken.duckdns.org/bot.x86Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:15http://kanikiken.duckdns.org/bot.x86_64Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:14http://kanikiken.duckdns.org/bot.mpslOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:14http://kanikiken.duckdns.org/bot.sh4Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:14http://kanikiken.duckdns.org/bot.arm5Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:14http://kanikiken.duckdns.org/bot.armOfflinebotnetdomain elf fbi.gov mirai ext moobot NDA0E
2025-01-30 12:54:14http://kanikiken.duckdns.org/bot.arm7Offlinebotnetdomain elf fbi.gov mirai ext moobot NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-01-31 21:21:05d0c04bd037c98321abec258b03de49af2f94b6c8e39e055f4cbc59caf366bf08elfMirai
2025-01-31 21:21:05a5ff09b42241d31cc94c7f63f0c1a16d0ce1fdbaaa68fb49cfb98b83c0367cd0elfMirai
2025-01-31 21:21:0560577b7cb0c75a42dfbff53f37d5e846f0424c1af51be96f6d6f383956eaabecelfMirai
2025-01-31 21:21:0512a18f2b9400a65329a7b34898eb8afae2cbbd18abec5364e84eba91b12154fcelfMirai
2025-01-31 21:21:05863846e0791c75ecbc49a812a2f42f42bc11a9f729fef98e7018b7d3188d9681elfMirai
2025-01-31 21:21:0582fba789a0b1365d86b08c641b45531ffa197d6ab0f2866688d5c34bfd48ed6celfMirai
2025-01-31 21:21:05495a84d8b655dfa5097212c638c49d8775c9c66e3cb949aeaa4b8e2612f5fda9elfMirai
2025-01-31 21:21:05d7f1c1da58a7651b45015a9e6ef85cb798160fefb67072073bddd11dd4e8257eelfMirai
2025-01-31 21:21:055a7921989aa021962e3a57c4fc191e58ab9b7b96ba12c5321f7846d810d6df20elfMirai
2025-01-31 21:21:05e7587bdb1b3f67e67356b6e44512648eedbdd673dad085819ed83a35c5aae49felfMirai
2025-01-31 21:21:0448378b72cbf2a7ce68b63b7c0ba0eb27d90472c03ec266fcf0b43129f10dd1edelfMirai
2025-01-30 12:55:09e7587bdb1b3f67e67356b6e44512648eedbdd673dad085819ed83a35c5aae49felfMirai
2025-01-30 12:54:16d7f1c1da58a7651b45015a9e6ef85cb798160fefb67072073bddd11dd4e8257eelfMirai
2025-01-30 12:54:15495a84d8b655dfa5097212c638c49d8775c9c66e3cb949aeaa4b8e2612f5fda9elfMirai
2025-01-30 12:54:1560577b7cb0c75a42dfbff53f37d5e846f0424c1af51be96f6d6f383956eaabecelfMirai
2025-01-30 12:54:1548378b72cbf2a7ce68b63b7c0ba0eb27d90472c03ec266fcf0b43129f10dd1edelfMirai
2025-01-30 12:54:1512a18f2b9400a65329a7b34898eb8afae2cbbd18abec5364e84eba91b12154fcelfMirai
2025-01-30 12:54:1482fba789a0b1365d86b08c641b45531ffa197d6ab0f2866688d5c34bfd48ed6celfMirai
2025-01-30 12:54:145a7921989aa021962e3a57c4fc191e58ab9b7b96ba12c5321f7846d810d6df20elfMirai
2025-01-30 12:54:14a5ff09b42241d31cc94c7f63f0c1a16d0ce1fdbaaa68fb49cfb98b83c0367cd0elfMirai
2025-01-30 12:54:14863846e0791c75ecbc49a812a2f42f42bc11a9f729fef98e7018b7d3188d9681elfMirai
2025-01-30 12:54:14d0c04bd037c98321abec258b03de49af2f94b6c8e39e055f4cbc59caf366bf08elfMirai