URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mywebh.kro.kr
Domain registrar: n/a
Domain registration date:2012-06-01 00:00:00 UTC
Spamhaus DBL :Phishing domain
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-05-11 20:28:03 UTC
Total malware sites :26
Online malware sites :0 (0%)
Offline Malware sites :26 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-06-15 10:53:01 194.110.247.56Not listedAS200019 AlexHost- MDyes
2025-06-14 16:13:03 102.129.165.220Not listedAS329184 Host-Africa-AS2- ZAno
2025-06-13 12:44:35 102.129.165.217Not listedAS329184 Host-Africa-AS2- ZAno
2025-06-13 07:40:40 92.112.126.146hosted-by.deluxhost.netNot listedAS214677 DeluxHost- NLno
2025-05-23 17:20:45 151.243.213.208Not listedAS214677 DeluxHost- AEno
2025-05-23 08:33:50 92.112.124.247Not listedAS214677 DeluxHost- NLno
2025-05-19 23:16:44 51.38.146.209ip209.ip-51-38-146.euNot listedAS16276 OVH- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-05-23 14:37:09http://mywebh.kro.kr/wget.shOfflinebotnetdomain censys mirai ext sh ua-wget NDA0E
2025-05-23 14:37:09http://mywebh.kro.kr/bins/navo.x86_64Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:37:09http://mywebh.kro.kr/bins/navo.sh4Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:37:09http://mywebh.kro.kr/bins/navo.arm6Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:37:09http://mywebh.kro.kr/bins/navo.ppcOfflinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:05http://mywebh.kro.kr/bins/navo.arm5Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:05http://mywebh.kro.kr/bins/navo.arm7Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:05http://mywebh.kro.kr/bins/navo.armOfflinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:05http://mywebh.kro.kr/bins/navo.m68kOfflinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:04http://mywebh.kro.kr/bins/navo.mipsOfflinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:04http://mywebh.kro.kr/bins/navo.x86Offlinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-23 14:36:04http://mywebh.kro.kr/bins/navo.mpslOfflinebotnetdomain censys elf mirai ext opendir ua-wget NDA0E
2025-05-11 20:32:09http://mywebh.kro.kr/navo.x86_64Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:30:05http://mywebh.kro.kr/navo.arm7Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:30:05http://mywebh.kro.kr/navo.arm6Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:30:05http://mywebh.kro.kr/navo.sh4Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:29:03http://mywebh.kro.kr/navo.x86Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:29:03http://mywebh.kro.kr/goaheadOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/hidden.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.mpslOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/poc.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.mipsOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.armOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.m68kOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.ppcOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-05-11 20:28:05http://mywebh.kro.kr/navo.arm5Offlinebotnetdomain elf mirai ext ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-06-01 19:15:2307f6d68bbfd15a15e7353f5b8c9f6b974e4ad2c3f4180af21d0ad7bad5b48134elfMirai
2025-06-01 18:24:343edc2b21ce949e5bf8596481d8ed88c401345af88804e1a4a826ae86bde4c141elfMirai
2025-06-01 13:12:094448d21d1e90ae69990783a43102e3163baf7cb56b92ce31512fc11525b2bf8belfMirai
2025-06-01 13:08:29b3df308027e5c8a298fb597f3906ea6814fecdcad415952e64ded679f77413ffelfMirai
2025-06-01 13:08:26dfc98b33649b4b8d2413a6443d952e89a0d45a076c4e402d7e6ac1cbd57e65b0elfMirai
2025-06-01 12:55:4309befe06e046e0ff65a4a479cfaf1b5eed92eebbe49e8d484bcd870e26d05a37elfMirai
2025-06-01 12:47:41ba86aac36c7c86f1222f62547c0e787abbe7b89214ff39b75d58eb41ca65c776elfMirai
2025-06-01 12:47:242d39cfdcc84c1a186d2f92eee9161bc67ebed639cf1f099734a0b964445039e2elfMirai
2025-06-01 12:47:240383603650e7ac2422926bd93cecc65f5f49f9217fe6e2a06f517130f52d8825elfMirai
2025-06-01 12:37:0368d3ce3bced2498629bf054631f78332f8b68f5df7fd6c9879da05059024f688elfMirai
2025-06-01 12:32:0595c02c290a3d37d3e81b46f6ed65e20af3ffbfbbff88b039d4798f9158cc8674elfMirai
2025-05-30 18:56:25f7e114de137f04abf9b414f784fcb13d564b32ed2c91eb5d250dc855eb7d940celfMirai
2025-05-30 18:25:22848c3f8b9912b3674d03bb16d1e1c9d4fdc092dea059a5752cdedba02393c21belfMirai
2025-05-30 12:59:55cf54f5afccc48d171a61f77141a56e51fd2817d6bf00c691b543898e5d942b61elfMirai
2025-05-30 12:55:447bf8e9eede05820d14c76e0ae222a8c85559c0be87383ab78c5b8a422044af2felfMirai
2025-05-30 12:52:3997a0d087a61b58ab23941b8d2a63200abf881884f35cfaafbea1788e3683536ashMirai
2025-05-30 12:48:28a8a72185d016a1994ae26ae69d55d3e47eb61891af60c0d7df94500934a978c3elfMirai
2025-05-30 12:47:03d7acc3a3569d6e1222a9c926d29bc4696f530f55aa1891297ad24c15bdc4dd4eelfMirai
2025-05-30 12:31:4320d637d4f937ef8a71c8ccaebe349d8c5955a81f581c6e56ec8ac8d859b9e730elfMirai
2025-05-30 12:31:38ada5da29230edce3c2f0a16c1abaa36900d21ec55ce54b5bc06420855c73a431elfMirai
2025-05-30 12:12:51ce6dc2a5ce00d6a8c7465487584fd548a184a8bd47ec8dd7cfd7c9aaedddd9e2elfMirai
2025-05-30 12:12:11be4d9099b8bbc7c694660f54b94d1bd80a3011104d0c052873668a7c4845948celfMirai
2025-05-30 12:09:551ee264248cef573864437ae56ac54d2a865ed0475aae4f066e9ee97baa8ff6aaelfMirai
2025-05-24 00:05:06cc510630402a9d788db922a1fbaa2cdeaeb797ab14844f7d2c0fdbb3268c38d3sh 
2025-05-23 14:37:097ae77b6447c720de0cf06bae39e6f5c447a403fd636675f31bdd8f878e47b556sh 
2025-05-23 14:37:09a82dbcea4986e0340fa08abfa26a123832f62de58bf37e27ab1cda7fb40b96daelfMirai
2025-05-23 14:37:09c89055af96171ca11e02cda5da78991bc1d496ce0f15df3d9709fc52e7cebd20elfMirai
2025-05-23 14:37:09cdd280215ecf04e93af5a7bb70005d71bf860a52bff3e691135d585eff09bcc5elfMirai
2025-05-23 14:37:09db3d12a2e4ebbffe25f4088c934f8d51feb3b50c435086bbe80459edf5d8e2c7elfMirai
2025-05-23 14:36:05c3c2ed4c2a13f3244b9ad4f21816703bb5bddb7aa8505888c838c2a7eece9dbeelfMirai
2025-05-23 14:36:05d338e32bb255f02484b9a24117a0cc0fbc151eed3bb690a83b14f015dd757811elfMirai
2025-05-23 14:36:05fa7577577f7cee474d3276a04db1543b3bdb1bba1ca7a05262f67588360ee077elfMirai
2025-05-23 14:36:04bdb702657db4a6fb1616b42e6a2cd457a76e48e866edeea479be35711b518447elfMirai
2025-05-23 14:36:04741ba2d53d54dc42195da1268d8680ab395f74d79bb90710910d9d597fc7b152elfMirai
2025-05-23 14:36:04d06165b8132be657be9e85cc65cc5f2d701656d9ed3f0250defc4d0746c7927belfMirai
2025-05-23 14:36:0417d4ee1b8bac608dc2e6333a73a145509392fc65f2700c327405033a6f352bdfelfMirai
2025-05-11 20:32:08a82dbcea4986e0340fa08abfa26a123832f62de58bf37e27ab1cda7fb40b96daelfMirai
2025-05-11 20:30:05c89055af96171ca11e02cda5da78991bc1d496ce0f15df3d9709fc52e7cebd20elfMirai
2025-05-11 20:30:05cdd280215ecf04e93af5a7bb70005d71bf860a52bff3e691135d585eff09bcc5elfMirai
2025-05-11 20:30:05d338e32bb255f02484b9a24117a0cc0fbc151eed3bb690a83b14f015dd757811elfMirai
2025-05-11 20:29:03270cf60b440d9395bbb009c56bb65d58f13e3f180096248d6fba09386a231dddshMirai
2025-05-11 20:29:03bdb702657db4a6fb1616b42e6a2cd457a76e48e866edeea479be35711b518447elfMirai
2025-05-11 20:28:055086f4d3eff992a3c5c5936266cdd2ffd8a3952f49b8e58b40c44e9ea5619d55shMirai
2025-05-11 20:28:05fa7577577f7cee474d3276a04db1543b3bdb1bba1ca7a05262f67588360ee077elfMirai
2025-05-11 20:28:05db3d12a2e4ebbffe25f4088c934f8d51feb3b50c435086bbe80459edf5d8e2c7elfMirai
2025-05-11 20:28:0517d4ee1b8bac608dc2e6333a73a145509392fc65f2700c327405033a6f352bdfelfMirai
2025-05-11 20:28:05c3c2ed4c2a13f3244b9ad4f21816703bb5bddb7aa8505888c838c2a7eece9dbeelfMirai
2025-05-11 20:28:05d06165b8132be657be9e85cc65cc5f2d701656d9ed3f0250defc4d0746c7927belfMirai
2025-05-11 20:28:05b0f5b14f4fd2edd83f1a074e26854cefe590cb8afc8af40c75cd44edcbfcb593shMirai
2025-05-11 20:28:05741ba2d53d54dc42195da1268d8680ab395f74d79bb90710910d9d597fc7b152elfMirai