URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tehrancraftst.ir
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-09-12 03:01:04 UTC
Total malware sites :28
Online malware sites :0 (0%)
Offline Malware sites :28 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-12 13:01:40 202.155.95.62202-155-95-62.nevacloud.ioNot listedAS138115 IDNIC-DENEVA-AS-ID- IDno
2025-09-12 09:14:27 46.38.138.58Not listedAS204104 GSC- IRno
2025-09-12 03:01:16 104.21.49.168Not listedAS13335 CLOUDFLARENETn/ano
2025-09-12 03:01:16 172.67.164.252Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-09-20 21:56:12http://tehrancraftst.ir/00101010101001/morte.x86Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:10http://tehrancraftst.ir/00101010101001/morte.arm5Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.x8...Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.m68kOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/1.shOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.ppcOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/debugOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.arm7Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.armOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.mpslOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.spcOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.arcOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.sh4Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:08http://tehrancraftst.ir/00101010101001/morte.i686Offlinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:07http://tehrancraftst.ir/00101010101001/morte.mipsOfflinemirai ext opendir DaveLikesMalwre
2025-09-20 21:41:07http://tehrancraftst.ir/00101010101001/morte.arm6Offlinemirai ext opendir DaveLikesMalwre
2025-09-12 06:41:35http://tehrancraftst.ir/ohshit.shOfflinebotnetdomain mirai ext sh BlinkzSec
2025-09-12 06:41:27http://tehrancraftst.ir/hiddenbin/boatnet.arm6Offlinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:25http://tehrancraftst.ir/hiddenbin/boatnet.armOfflinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:25http://tehrancraftst.ir/hiddenbin/boatnet.mipsOfflinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:24http://tehrancraftst.ir/hiddenbin/boatnet.x86Offlinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.m68kOfflinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.arm7Offlinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.sh4Offlinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.mpslOfflinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.ppcOfflinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 06:41:21http://tehrancraftst.ir/hiddenbin/boatnet.arm5Offlinebotnetdomain elf mirai ext BlinkzSec
2025-09-12 03:01:16http://tehrancraftst.ir/hiddenbin/boatnet.arcOffline32-bit elf mirai ext Mozi ext threatquery

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-09-21 16:14:4667f0fa8bb928264b187c86a0309bd3dcb334bd370e767b25b099dabb33b59f14elfMirai
2025-09-21 16:05:5322a792676106bbacc7518d1e67d4c95a6fc67d3ef9c06d32bc7dc40987ced6c5elfMirai
2025-09-21 16:04:38c2f0e475f060707b11a052522d4a00dd291062ea86e7a39e515ed6088b90aefbelfMirai
2025-09-21 16:01:49e15e7f7b5be5119fa23ef258cc2c21b7bf383255af4609115770e004861fb405elfMirai
2025-09-21 15:59:579981cd57c75068109c6db3b579f690a6c1c3153edaf6d0bbc169d9099ec51daeelfMirai
2025-09-21 15:58:115a36a6ae2dd0599729403663036d5dec5c1920ec49eb58c1370c52d75beb4b63elfMirai
2025-09-21 15:50:00fb69b516a724e0740fac14a6555b797a5a22656d82e65bc986f2853ea6baf68celfMirai
2025-09-21 15:43:58d6725a350df11682a3b2d36d68d40189206d027ef265f2db53b013746295876delfMirai
2025-09-21 15:43:433619c5b6a78b941651c286c811e62e39a9504a9af702686ec54c55ed2079c9b4elfMirai
2025-09-21 15:30:552a8128f0861c1ae6ad998f56ab2ef223bf91299a9be0a1886a1e2b6ead9bcfb1elfMirai
2025-09-21 15:30:16abbedfffb631bf9c7bbbb17db73b9f2ac194174fa44744d77cc9ba2c6b3a5d3celfMirai
2025-09-21 15:13:4927ff9d1260652d1ab75a3890ae7a980f5290ac245077f2b23a77dee01e04bb0delfMirai
2025-09-21 13:30:47ce9f2100e46fc1e8a6aba345779177c78485fb051c3336f2cda15ce5f1e55162elfMirai
2025-09-21 11:28:15f2b04719a638f8a4a04baa7d7e1ea7161d8349715c52546b2237fce5da1a1079elfMirai
2025-09-21 11:10:06299fc1aa2c8c819020a2f585ea7a378c8ea031f53d58e0f4297bffa74eb791b3elfMirai
2025-09-20 21:56:12898ddd00e9894063584e37f4f0b30f78c82a685a5b20f4d417a196b0c05b09a2elfMirai
2025-09-20 21:41:10754bc6e55623cf79d419fc49931ae35ef41342d8f3800cadde7fd04b5a06b4fcelfMirai
2025-09-20 21:41:08a18e670536762856ece86edee16c56542a89bd27f22f975553b1299120cadddcelfMirai
2025-09-20 21:41:08851cffdf02cb1e0c6fa1c2a12c25cf8a15b5b7718848ff463f5eca9c88e0f1c2elfMirai
2025-09-20 21:41:08e68e027b24515ce7bf4ee5c9a4d467b53191184e8a0376d247e9b3bba62f3efaelfMirai
2025-09-20 21:41:085812d11e1bae8e4f196f09894f37818c7c053ac3e6b0e6a731339fcf9f4844a4elfMirai
2025-09-20 21:41:0813769e69c4232fd780afa01e93bfe36a4fba02120ff6403def9718c638441b88elfMirai
2025-09-20 21:41:085308e03ad9143a46d0e5995a318d404bd111916ccc8c2317d2b28f529b594ac3elfMirai
2025-09-20 21:41:089d121a9f7ac9ee7068029d7e96202c34f34bebf40f3e202e7c94e3aa5f40fcadelfMirai
2025-09-20 21:41:083c9134b52aeb11f513f2de6f25375693120a02b088f054a4e2d67eef77fac53eelfMirai
2025-09-20 21:41:081fced3027e6c8292daaeeaf9f24813247f537e1322b66f0d79fc2621eb626409elfMirai
2025-09-20 21:41:086ccd84ab817f8022f5f58d5473a0992f177064d4029d094b6fb7a5a2ed7469f2shMirai
2025-09-20 21:41:082cbf058bbc73252c15b16ed8cf9a6dde467dc3ad2c81076477b02b8151479713elfMirai
2025-09-20 21:41:0828490822cbbfe22394c661432fec339e9a7f98ee7ebe00f79547e1a307597c05elfMirai
2025-09-20 21:41:0702e434dcd02cb4fe3aa69957129096023516a88cc53920ac711865cd1d10a2dcelfMirai
2025-09-20 21:41:0717d66b0058bce154bff6670fa733f784028c550b268b73e39f194a431c627608elfMirai
2025-09-12 14:02:1933a12f7f16ca08d196b23a638787fc61db21f35180b6c965f20964d242abc97fshMirai
2025-09-12 06:52:59cb9655c0c41db71cc2b31404c3e0c00a0bc48b31bfc08614d4b7a04abd03eaf1elfMirai
2025-09-12 06:41:357b49c2d3899c8a30a925038d5a8a519405068f8b84b4321e0d5447462ae86550shMirai
2025-09-12 06:41:27f22e121761e792ae745dc6122dc3ffa926c70bd09cc76a75f0a9ac0cfc1dc519elfMirai
2025-09-12 06:41:25c2c64f46e764e2c2e35c941a51e54cd673a07cf4afda8917ca5a6d12d8f81ab9elfMirai
2025-09-12 06:41:250296bb398cb75cfd440bfe672cc11a3842040a2e8ac966e7c909ed7e3fb571baelfMirai
2025-09-12 06:41:215d2799a6b653ed2f3a344b0c55d0792851206c0ef9dd0c3eba2bc0ce1f5a3704elfMirai
2025-09-12 06:41:21a2fa7138d654723a38b2ae8dea75587ce1fb67676298ed98320ee31e0bce61c6elfMirai
2025-09-12 06:41:2170e47b3f334a8eac64cbead5598dbc7d42e4e2f693eb89bbb9d161bb9e8d7bf0elfMirai
2025-09-12 06:41:21463549ee923875f37753a169ab12948bd7ce7b78b820f3b9b8b0bc808f7441b3elfMirai
2025-09-12 06:41:21968f8e013c63cb616ec33c3b4f0ec55e60c567369b97870795f7c2a30a1984d1elfMirai
2025-09-12 06:41:21153a09ab302cdd3b57b3780e0df18db3c7202cc443ec9c9a2154b3ab17874bfbelfMirai
2025-09-12 03:01:16209678f0f799b9fc7ed245166ae8d1dea05e997506b6158136777578b9514521elfMirai