URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: rgeqlmgw.xyz
Domain registrar:GMO Internet -
Domain registration date:2025-02-18 09:14:18 UTC
Spamhaus DBL :Malware domain
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2026-02-01 21:20:08 UTC
Total malware sites :17
Online malware sites :10 (59%)
Offline Malware sites :7 (41%)
Newest active malware site :2026-02-01 23:27:39 UTC
Oldest active malware site :2026-02-01 21:24:56 UTC (Age: 21 hours, 28 minutes)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-02-01 21:24:56 118.107.41.45SBL687374AS152194 CTGSERVERLIMITED-AS-AP- SGyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-02-01 23:39:03http://rgeqlmgw.xyz:808/linux_arm5Offlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:27:39http://rgeqlmgw.xyz:808/linux_ppc64Onlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:25:39http://rgeqlmgw.xyz:808/linux_mips64Offlinebotnetdomain mirai ext DaveLikesMalwre
2026-02-01 23:19:17http://rgeqlmgw.xyz:808/linux_mips64_softfloatOfflinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:10:54http://rgeqlmgw.xyz:808/linux_arm6Offlinebotnetdomain mirai ext DaveLikesMalwre
2026-02-01 23:07:35http://rgeqlmgw.xyz:808/linux_mips64elOfflinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:07:24http://rgeqlmgw.xyz:808/linux_amd64Onlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:03:50http://rgeqlmgw.xyz:808/linux_arm64Onlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 23:00:57http://rgeqlmgw.xyz:808/linux_mipsel_softfloatOnlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 22:52:48http://rgeqlmgw.xyz:808/linux_mips_softfloatOnlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 22:25:39http://rgeqlmgw.xyz:808/linux_mipselOnlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 22:23:48http://rgeqlmgw.xyz:808/linux_mips64el_softfloatOfflinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 22:06:05http://rgeqlmgw.xyz:808/linux_mipsOnlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 22:02:30http://rgeqlmgw.xyz:808/linux_arm7Onlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 21:30:34http://rgeqlmgw.xyz:808/download.shOfflinebotnetdomain mirai ext DaveLikesMalwre
2026-02-01 21:27:58http://rgeqlmgw.xyz:808/linux_386Onlinebotnetdomain Kaiji mirai ext DaveLikesMalwre
2026-02-01 21:24:56http://rgeqlmgw.xyz:808/linux_ppc64elOnlinebotnetdomain Kaiji mirai ext DaveLikesMalwre