URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: universalgroup.com.vc
Domain registrar:Openprovider -
Domain registration date:2025-08-18 14:42:39 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2026-01-11 06:35:05 UTC
Total malware sites :14
Online malware sites :12 (86%)
Offline Malware sites :2 (14%)
Newest active malware site :2026-01-11 06:50:21 UTC
Oldest active malware site :2026-01-11 06:35:14 UTC (Age: 1 day, 11 hours, 17 minutes)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-01-11 06:35:14 91.92.240.38SBL686267AS214943 RAILNET- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-11 06:50:21http://universalgroup.com.vc/mipsOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:50:18http://universalgroup.com.vc/deploy-proxyware.shOfflinebotnetdomain sh ua-wget BlinkzSec
2026-01-11 06:50:16http://universalgroup.com.vc/deploy.shOfflinebotnetdomain sh ua-wget BlinkzSec
2026-01-11 06:36:00http://universalgroup.com.vc/m68kOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:59http://universalgroup.com.vc/x86_64Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:58http://universalgroup.com.vc/mipselOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:43http://universalgroup.com.vc/botOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:42http://universalgroup.com.vc/powerpcOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:36http://universalgroup.com.vc/aarch64Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:30http://universalgroup.com.vc/armv6Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:30http://universalgroup.com.vc/sh4Onlinebotnetdomain elf ua-wget BlinkzSec
2026-01-11 06:35:21http://universalgroup.com.vc/i686Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:15http://universalgroup.com.vc/armOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:14http://universalgroup.com.vc/armv7lOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-01-12 16:58:076481d3a1c1d639a82462ef25cd74e644866baea0a18a28a3bb56cf5c49c381d8elfMirai
2026-01-12 16:50:5087c5c01b81da277261e81a3634e07c628558f90ac33dc89dd913413b7a605b3delfMirai
2026-01-12 16:28:12428dff02b6c136b40515aaca9ca6c5cfe0952e0d5447cc6b222420a2ee64cf0aelfMirai
2026-01-12 16:12:529e6ff7589882cd157b40656e1cdac28b7317f3082292b1c0aea09fa59da95d6celfMirai
2026-01-12 15:44:008f5f2809ac78b555f023c8a7658f0140a888e24125be7aa4422739cd14fa561belfMirai
2026-01-12 15:31:212134e305ef5138fbf6a839bf1aa47e9a96aaaeb380608632381b229c8ae201e0elfMirai
2026-01-12 15:07:1914dd0a53df345d987416d8510c20e26381abd008c1c4c86d040a7af309c0b03bunknown  
2026-01-12 15:02:4462633d9ddf722a221cae668f019482675a8a01e81ca2fb859c9c879358290a9celfMirai
2026-01-12 15:00:31b189fe06536314551f446c5b862463a75ae4b740b4f1857c73c7de8415e144a3elfMirai
2026-01-12 14:54:54fc820385402d22996044f55478ca2bfc6f7b56e221cd326161857f9970229a0belfMirai
2026-01-12 14:50:51160dfec7b55ddd783e30994df8b4494f53cc2fe6c3c069f610a2441eac106dd5elfMirai
2026-01-12 14:42:527d4d02fd723ea1d015597d81b9ccf134916125ffc0af929174d7dc7fcc27b3baelfMirai
2026-01-12 02:28:281c69b69d87bad1d43c32d2f139f96676e3a7d863ba6ed0d0e26e843c7dbc45acelfMirai
2026-01-12 02:20:19794554999262b9fe9ac6b5d955a9d3b9971632213805e3b65c1c1338305ac10eelfMirai
2026-01-12 01:45:5815f754d33706e68f6888eb869f6565ee4d129903fe66916c416a23267520d217elfMirai
2026-01-12 01:42:1605dc42a9a2c53b527e3fbd7b9896c8f158726e2a4be0f7a6e4b120a233c35e6aelfMirai
2026-01-12 01:36:46aec6c005b2976017c0b8655aa3ff28dffb4d616c2dd9c132186f7b3e5bd51598elfMirai
2026-01-12 01:24:053798a995921ff89ef02c826411a19b54fdaaee42d03a55ea399a0347170a9da8elfMirai
2026-01-12 01:09:106d185d5f0afaba3c0499085a803f8147228e4b5962461d0828a24ee050d35d06elfMirai
2026-01-12 01:05:4818246ce074aefbed216b01ef14e30c3cae1bf499dfcb7498b74b4ecc9ae4be94elfMirai
2026-01-12 01:01:585ae44faec28b1904d2036544bcf41e9185aabadff99ac59f82067df927e51ea5unknown  
2026-01-12 00:59:47dd8442ca906e0b1f39e72ebabb2b6ca507c68011a72d512efb4e6e00c6a07e29elfMirai
2026-01-12 00:51:2889dc95555f092d427044f3050bc9c899b99610f6aaf7406310334e03916d4ebaelfMirai
2026-01-12 00:47:467ca7fbe4318ecd58ef896a4f799e97f61f0812097e668f38e55313feaf90d0a6elfMirai
2026-01-11 06:50:193c5bef23cdfb817f153224c50d75ad5a03925e32d5038ba253a445df0d84219delfMirai
2026-01-11 06:36:0025867252c8cf51ca1367c0f787ca2a49967eef7079f2bdefa7e4d48f9583a547elfMirai
2026-01-11 06:35:581fa40a6e5340a17237ad598affbe9257e6b15a8c2fab0931e6fd4fe47e244b40elfMirai
2026-01-11 06:35:584bff688f2817cc74b2475f40edbec64df2132a73307a5f318f3080c3765c8a90elfMirai
2026-01-11 06:35:439d12da9e5ef9de2f989fb4bcffc6c5624ab2458f7f927c6ab9fbb62fde8fe1a0elfMirai
2026-01-11 06:35:42943f01df1b8f78c6e32ffcf8d7c42d0ee899f0dd301da4b009d25899a2534c53elfMirai
2026-01-11 06:35:351bc624498a150c2401e968c270b38f92756ea2da878fb96419b243c07811395belfMirai
2026-01-11 06:35:3028296a84e8af74b68c4f324b1880f740db296216aa20a5f0adc255a1851908d4elfMirai
2026-01-11 06:35:30d507ffc2c116e7f381e5ee9a1dcf78abef840ff892964c7be3e55899397546e5unknown  
2026-01-11 06:35:2161be202e72812079720499618029b135d393710d5c357273bb77ab0039a39be9elfMirai
2026-01-11 06:35:14ddc4128f17d4802d7cfe743c9754645de58805587e7d08df23e00ae418d45e6aelfMirai
2026-01-11 06:35:14c38e027efd5771db1e66be14bad4ddbfd9b4e1d7fc9dafcc8ac366999e553f45elfMirai