URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: net.drillrp.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-06-05 09:42:03 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-06-05 09:42:06 152.89.170.15it-pom.server-by.c1vhosting.itNot listedAS212271 C1V- ITno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-06-05 10:00:07http://net.drillrp.com/main_spcOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 10:00:06http://net.drillrp.com/main_x86Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 10:00:06http://net.drillrp.com/main_x86_64Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 10:00:06http://net.drillrp.com/main_arm5Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:09http://net.drillrp.com/main_sh4Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:09http://net.drillrp.com/main_m68kOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_arm6Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/oem.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_mipsOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_mpslOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_arm7Offlinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_armOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:43:08http://net.drillrp.com/main_ppcOfflinebotnetdomain elf mirai ext ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/binOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/w.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/c.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/dvr.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/yarnOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:07http://net.drillrp.com/payOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:06http://net.drillrp.com/wget2.shOfflinebotnetdomain sh ua-wget NDA0E
2025-06-05 09:42:06http://net.drillrp.com/curl.shOfflinebotnetdomain sh ua-wget NDA0E
2025-06-05 09:42:06http://net.drillrp.com/main.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E
2025-06-05 09:42:06http://net.drillrp.com/wget.shOfflinebotnetdomain mirai ext sh ua-wget NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-06-05 10:00:07258227034178fafa463fde3c438c182bf6ac8681baa26d07bfd7767f7fe07c24elfMirai
2025-06-05 10:00:061bfeada59790096161306f969c3b631b2f4098b4d0269a97c4e9518618d6eac2elfMirai
2025-06-05 10:00:0640eb38c996d59b03de13e8df4585f6d994f1d085ed48669b4f97a6cf31d6e562elfMirai
2025-06-05 10:00:060bb7ae61f82553675cb1f2e8de6baf5cb6e23b9167e745849aecbb18ba7792d1elfMirai
2025-06-05 09:43:09d6f74c0a5f3fb8e78729fe2dc3bb4c329f931cbf21f14112d81c4008ecdc407aelfMirai
2025-06-05 09:43:097756f534414530f998fbee175285442c66671ef908d04672d98fdcba59fdb6bfelfMirai
2025-06-05 09:43:0809345f643f2aa77df4aa0b80fc7e20aacd9e0f11019346eeeacbed6c44de66baelfMirai
2025-06-05 09:43:088961686ad08adc4ac8609d42419b8059fdcb0e44ccfbf3b311e290fd6a9475e4shMirai
2025-06-05 09:43:08d3e83cab074a13642ea549bf1f043bc9401a27372d910151aa7605e0276b26d9elfMirai
2025-06-05 09:43:0800624bb777664e814fafa82af75a69494724c22482fcd79eb4cd9c0e28a49ed8elfMirai
2025-06-05 09:43:08b7b564b80bb2784c76155230e6c6b3b135255f6939829dd115054539e7ff1135elfMirai
2025-06-05 09:43:0822f667e0a671977aabb06dbddf5098ccf968dedfeead6de499a411c0a7cc2bcdelfMirai
2025-06-05 09:43:08612a1af3276c3aff19435f1788f0c1944b1d88a1ab9b9fbf7a69a55751c0f88celfMirai
2025-06-05 09:42:07d50233080ff5c17b616e685d46b1c868cafdfff45395e5952d8156f8a75abe31shMirai
2025-06-05 09:42:072859ddd77aea1dc3336ca702f0c62f00b6db7e353773566a9492bb45eccbb2ccshMirai
2025-06-05 09:42:079b3d306b8b974a3105e51286c8aa97a9d696945771c3dd205e0a6d1d52a88b9cshMirai
2025-06-05 09:42:0704b3cc12ac3765a967eb79e21080ad1d55a9305312a3efa81efc567f0b8e1023shMirai
2025-06-05 09:42:07d50233080ff5c17b616e685d46b1c868cafdfff45395e5952d8156f8a75abe31shMirai
2025-06-05 09:42:06343058a45e1184ff143979f1b05df717b72f0fb904084ea05b5847cd1742b863sh 
2025-06-05 09:42:06d50233080ff5c17b616e685d46b1c868cafdfff45395e5952d8156f8a75abe31shMirai
2025-06-05 09:42:06a8d227e608ceb4d8460e57da5c3e775f2e4170e60ee379c03f94efd648f78507sh 
2025-06-05 09:42:06fd201adb9b014a7e9b10dd7da6e42a9ccb4911c79c791d95fc5450ba13a20540shMirai
2025-06-05 09:42:067b1a8b3b6ed3b2b39a2501d0ccbfbcecca3b1ee3b61e16c0300ca0b56c48e88fshMirai