URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: windyy.qzz.io
Domain registrar:Gandi -
Domain registration date:2025-05-04 08:14:01 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-11-09 16:20:07 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-09 16:20:07 143.20.185.102Not listedAS214209 INTERNET-MAGNATE- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-18 17:01:08http://windyy.qzz.io/windyluvexecutor/debugOfflinebotnetdomain mirai ext opendir DaveLikesMalwre
2025-11-10 16:48:14http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:48:07http://windyy.qzz.io/windyluvexecutor/executor.armOfflinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:22http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:19http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:19http://windyy.qzz.io/windyluvexecutor/executor.ppcOfflinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor.sh4Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor.spcOfflinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:15http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:10http://windyy.qzz.io/windyluvexecutor/executor.x86Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:10http://windyy.qzz.io/windyluvexecutor/executor.arcOfflinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:10http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-10 16:32:09http://windyy.qzz.io/windyluvexecutor/executor....Offlinebotnetdomain elf mirai ext BlinkzSec
2025-11-09 16:20:07http://windyy.qzz.io/lol.shOfflinegeofenced mirai ext sh ua-wget USA botnetkiller

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-10 16:48:14a28b450262545d5439f53da00e62f691b9298bbb0c7ca36395b24f643af54e80elfMirai
2025-11-10 16:48:07741df6649360fa73c4fa54dcd8cef092d7427174ad92a7d706a41828a676c758elfMirai
2025-11-10 16:32:22aa2dc23179e65cdaa4557d9481025096df545e6b0cc9ffbcdd19868d1c679ecaelfMirai
2025-11-10 16:32:195a03042b6bc872c93b24d004835481947b9e91453ff5b2d90310523589c34d2delfMirai
2025-11-10 16:32:19018bbbca5717f4c38f47f152f6b6a49cdd472738cfcffac67368c1105514aa8celfMirai
2025-11-10 16:32:1578c4ac944f9368e24d43d59d3806f435b634ebb3a663d55a0b55752423ebc3d6elfMirai
2025-11-10 16:32:15eeb5646cc6ddd679a4126bc8c10010b813818f129a533f65fcf170fa79f27ce1elfMirai
2025-11-10 16:32:15fa1071beaf4b614e478fbf2844375faf8315b5c58c118681e3d3952aaffe5990elfMirai
2025-11-10 16:32:1568e2a2e74bf15a8d23771a202f1f910aa2f9381eff93f4819c22ab859ddb8388elfMirai
2025-11-10 16:32:15a81972bb34f9ec7553fd75929fff125a01b8c53db350e97161e3cd86bd4e9ab4elfMirai
2025-11-10 16:32:15856a3ed9efcecdeac7bb992631ec6974a59e4071704bbb975fc4a1f95b70d4a7elfMirai
2025-11-10 16:32:10f530fc1862dd337e90e7e114b8ce6682934279ed7404cfc9e015082276dda499elfMirai
2025-11-10 16:32:10eefbfbf65e024fe52532cde30c41b702d0721e5b6e53f10150f833dded02fdd5elfMirai
2025-11-10 16:32:102d3653635259c9d216e8328510a6e07ae6d4ba57c6d2fd7fd50c7e26699db40belfMirai
2025-11-10 16:32:0991a68eefaa829c4b6c705372d28bc4fc848eec85efa66e08348e7995321d7d53elfMirai
2025-11-09 19:38:000779e3aaecf413f7e1cf4bda84bdbd020093977742df6889dcf6cf535070690eshMirai