URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.universalgroup.com.vc
Domain registrar:Openprovider -
Domain registration date:2025-08-18 14:42:39 UTC
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2026-01-11 06:35:06 UTC
Total malware sites :14
Online malware sites :12 (86%)
Offline Malware sites :2 (14%)
Newest active malware site :2026-01-11 06:36:10 UTC
Oldest active malware site :2026-01-11 06:35:15 UTC (Age: 2 days, 12 hours, 18 minutes)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-01-11 06:35:14 91.92.240.38SBL686267AS214943 RAILNET- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-11 06:50:18http://www.universalgroup.com.vc/deploy-proxywa...Offlinebotnetdomain sh ua-wget BlinkzSec
2026-01-11 06:50:16http://www.universalgroup.com.vc/deploy.shOfflinebotnetdomain sh ua-wget BlinkzSec
2026-01-11 06:36:10http://www.universalgroup.com.vc/m68kOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:36:06http://www.universalgroup.com.vc/botOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:59http://www.universalgroup.com.vc/mipselOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:59http://www.universalgroup.com.vc/powerpcOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:43http://www.universalgroup.com.vc/armv6Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:43http://www.universalgroup.com.vc/x86_64Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:42http://www.universalgroup.com.vc/aarch64Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:36http://www.universalgroup.com.vc/armv7lOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:26http://www.universalgroup.com.vc/sh4Onlinebotnetdomain elf ua-wget BlinkzSec
2026-01-11 06:35:26http://www.universalgroup.com.vc/mipsOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:21http://www.universalgroup.com.vc/armOnlinebotnetdomain elf mirai ext ua-wget BlinkzSec
2026-01-11 06:35:15http://www.universalgroup.com.vc/i686Onlinebotnetdomain elf mirai ext ua-wget BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-01-12 16:46:4414dd0a53df345d987416d8510c20e26381abd008c1c4c86d040a7af309c0b03bunknown  
2026-01-12 16:06:537d4d02fd723ea1d015597d81b9ccf134916125ffc0af929174d7dc7fcc27b3baelfMirai
2026-01-12 15:57:30160dfec7b55ddd783e30994df8b4494f53cc2fe6c3c069f610a2441eac106dd5elfMirai
2026-01-12 15:56:57fc820385402d22996044f55478ca2bfc6f7b56e221cd326161857f9970229a0belfMirai
2026-01-12 15:48:39428dff02b6c136b40515aaca9ca6c5cfe0952e0d5447cc6b222420a2ee64cf0aelfMirai
2026-01-12 15:13:23b189fe06536314551f446c5b862463a75ae4b740b4f1857c73c7de8415e144a3elfMirai
2026-01-12 15:00:279e6ff7589882cd157b40656e1cdac28b7317f3082292b1c0aea09fa59da95d6celfMirai
2026-01-12 14:56:1362633d9ddf722a221cae668f019482675a8a01e81ca2fb859c9c879358290a9celfMirai
2026-01-12 14:55:1987c5c01b81da277261e81a3634e07c628558f90ac33dc89dd913413b7a605b3delfMirai
2026-01-12 14:50:302134e305ef5138fbf6a839bf1aa47e9a96aaaeb380608632381b229c8ae201e0elfMirai
2026-01-12 14:49:048f5f2809ac78b555f023c8a7658f0140a888e24125be7aa4422739cd14fa561belfMirai
2026-01-12 14:32:406481d3a1c1d639a82462ef25cd74e644866baea0a18a28a3bb56cf5c49c381d8elfMirai
2026-01-12 02:22:106d185d5f0afaba3c0499085a803f8147228e4b5962461d0828a24ee050d35d06elfMirai
2026-01-12 02:21:171c69b69d87bad1d43c32d2f139f96676e3a7d863ba6ed0d0e26e843c7dbc45acelfMirai
2026-01-12 02:18:277ca7fbe4318ecd58ef896a4f799e97f61f0812097e668f38e55313feaf90d0a6elfMirai
2026-01-12 02:13:25794554999262b9fe9ac6b5d955a9d3b9971632213805e3b65c1c1338305ac10eelfMirai
2026-01-12 01:56:12aec6c005b2976017c0b8655aa3ff28dffb4d616c2dd9c132186f7b3e5bd51598elfMirai
2026-01-12 01:46:2115f754d33706e68f6888eb869f6565ee4d129903fe66916c416a23267520d217elfMirai
2026-01-12 01:45:37dd8442ca906e0b1f39e72ebabb2b6ca507c68011a72d512efb4e6e00c6a07e29elfMirai
2026-01-12 01:32:2405dc42a9a2c53b527e3fbd7b9896c8f158726e2a4be0f7a6e4b120a233c35e6aelfMirai
2026-01-12 01:06:325ae44faec28b1904d2036544bcf41e9185aabadff99ac59f82067df927e51ea5unknown  
2026-01-12 00:56:3889dc95555f092d427044f3050bc9c899b99610f6aaf7406310334e03916d4ebaelfMirai
2026-01-12 00:51:5718246ce074aefbed216b01ef14e30c3cae1bf499dfcb7498b74b4ecc9ae4be94elfMirai
2026-01-12 00:32:153798a995921ff89ef02c826411a19b54fdaaee42d03a55ea399a0347170a9da8elfMirai
2026-01-11 06:36:1025867252c8cf51ca1367c0f787ca2a49967eef7079f2bdefa7e4d48f9583a547elfMirai
2026-01-11 06:36:069d12da9e5ef9de2f989fb4bcffc6c5624ab2458f7f927c6ab9fbb62fde8fe1a0elfMirai
2026-01-11 06:35:581fa40a6e5340a17237ad598affbe9257e6b15a8c2fab0931e6fd4fe47e244b40elfMirai
2026-01-11 06:35:58943f01df1b8f78c6e32ffcf8d7c42d0ee899f0dd301da4b009d25899a2534c53elfMirai
2026-01-11 06:35:434bff688f2817cc74b2475f40edbec64df2132a73307a5f318f3080c3765c8a90elfMirai
2026-01-11 06:35:4228296a84e8af74b68c4f324b1880f740db296216aa20a5f0adc255a1851908d4elfMirai
2026-01-11 06:35:411bc624498a150c2401e968c270b38f92756ea2da878fb96419b243c07811395belfMirai
2026-01-11 06:35:35c38e027efd5771db1e66be14bad4ddbfd9b4e1d7fc9dafcc8ac366999e553f45elfMirai
2026-01-11 06:35:26d507ffc2c116e7f381e5ee9a1dcf78abef840ff892964c7be3e55899397546e5unknown  
2026-01-11 06:35:263c5bef23cdfb817f153224c50d75ad5a03925e32d5038ba253a445df0d84219delfMirai
2026-01-11 06:35:21ddc4128f17d4802d7cfe743c9754645de58805587e7d08df23e00ae418d45e6aelfMirai
2026-01-11 06:35:1461be202e72812079720499618029b135d393710d5c357273bb77ab0039a39be9elfMirai