URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mail.polyhoops.com.au
Domain registrar:GoDaddy -
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-11-30 08:59:06 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-30 08:59:12 212.85.24.46server1.soathehulk.comNot listedAS47583 AS-HOSTINGER- IDyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-30 09:14:39http://mail.polyhoops.com.au:82/ssh.shOfflinebotnetdomain mirai ext sh ua-wget BlinkzSec
2025-11-30 09:14:15http://mail.polyhoops.com.au:82/r.shOfflinebotnetdomain sh ua-wget BlinkzSec
2025-11-30 08:59:27http://mail.polyhoops.com.au:82/irannet.mipselOfflinebotnetdomain elf mirai ext ua-wget BlinkzSec
2025-11-30 08:59:12http://mail.polyhoops.com.au:82/irannet.mipsOfflinebotnetdomain elf mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-30 09:14:3999aae495cbefa91ff718d1cfef7bbcf3af5e9ac4df46da612f66d11a8562089eshMirai
2025-11-30 09:14:146a253112430db5ba263f7483e8a3f3088004e7993d9eae996dede1b350715bfbsh 
2025-11-30 08:59:273850e949caaa065013d3cd154c5aa29092ee72b5ce68a087e9079b60e89cb2e4elfMirai
2025-11-30 08:59:126b6299d1004bff5762d6d60160154368d0ae0a364370cc684f57a2a65fa13f30elfMirai