URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 103.99.11.61
Firstseen:2019-12-29 11:59:55 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-29 11:59:57 103.99.11.61Not listedAS56309 SIAMDATA-TH- THyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-11-05 11:34:09http://103.99.11.61:42740/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-31 13:04:04http://103.99.11.61:50267/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-31 12:49:05http://103.99.11.61:50267/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-20 20:49:05http://103.99.11.61:47152/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-18 08:49:06http://103.99.11.61:59848/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-17 01:19:05http://103.99.11.61:41497/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-15 09:34:05http://103.99.11.61:38438/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-15 09:19:05http://103.99.11.61:38438/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-10 15:19:05http://103.99.11.61:57449/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-07 12:19:06http://103.99.11.61:39803/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-04 05:34:05http://103.99.11.61:40179/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-02 14:34:05http://103.99.11.61:45268/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-30 20:34:05http://103.99.11.61:51416/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-09-17 20:35:12http://103.99.11.61:46076/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-01-29 17:04:08http://103.99.11.61:35895/Mozi.mOfflineelf mirai ext Mozi ext Gandylyan1
2019-12-29 11:59:57http://103.99.11.61:45285/Mozi.mOfflineelf mirai ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-11-05 11:34:0912013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-31 13:04:0412013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-31 12:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-20 20:49:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-18 08:49:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-17 01:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-15 09:34:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-15 09:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-10 15:19:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-07 12:19:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-04 05:34:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-02 14:34:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-09-30 20:34:0564cd497a29a6801daa66b3ca23b63a1355b0b84fdf5a23a12810b88685b22f63elf 
2020-09-17 20:35:1212013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-01-29 17:04:08e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai
2019-12-29 11:59:56e15e93db3ce3a8a22adb4b18e0e37b93f39c495e4a97008f9b1a9a42e1fac2b0elfMirai