URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 106.41.71.243
Firstseen:2022-11-28 00:25:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-11-28 00:25:12 106.41.71.243Not listedAS4134 CHINANET-BACKBONE- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-12-10 13:05:05http://106.41.71.243:33296/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2022-11-28 00:25:12http://106.41.71.243:47141/.iOfflinehajime geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-12-25 18:30:37fc46d6971cddda09b32caa15052c3de9540f84b530ee9f406d81ccdbcd88d590elf  
2022-12-25 14:59:293d7ffe28e7b60ea7a7beb7d5f79abb2cd98f6fe5213640a841a1a21a2b9e6e7aelf  
2022-12-25 14:14:056b284ea2f2ea14efc8d680695891ca694361ab035ea869ae0be615f5c54992f7elf  
2022-12-25 12:23:47c1a892f2cdc45a5466ac735c220be02730b01b5d087c64e0fb4d4302d9f9d750elf  
2022-12-25 11:40:419ffaf828779e2475226d567f28e3cf0ff6651440e70db616d6a5efa7265e0ad4elf  
2022-12-25 10:12:54ea91ecc487eab0a9819062e05d955d2bfcafca39f74838e2392a539f8a78fbb8elf  
2022-12-25 06:41:0934286fbedc65302f77233051f1abcc3be9120a3c2104665215151161294ef9f3elf  
2022-12-25 06:07:2975c17d9dbe32e3e13d36c941f9a517e8321669b754501cab6e9254683e2f5ad1elf  
2022-12-25 01:57:04acf33057c6c6ed86e1b1b19768f8f05be32ff7c3088d21917e80e0bac86c7446elf  
2022-12-25 00:55:1709869760766dba8f98d326710444ae3fd33ee21147f63d275a95e8752eabc0a0elf  
2022-12-25 00:17:0734053fed7349f4d08826e5b4e4521feaedf5fbb2343ba15fce5fd9c7bda102b1elf  
2022-12-24 20:57:34b55f34900137f51842e9a4870f5971f34e91589fc3039d41786fe1a86fcce25delf  
2022-12-24 18:54:002f6fe825419d567cd2957638d30d8ad2056dc1499fa599ad50c6fc59a8c8a4a3elf  
2022-12-24 17:45:2196e6cbf452372d1b26772151fd85ddddbe19d3964eec5a054be7f8940e5bfc26elf  
2022-12-24 13:42:13a2ea9dca175aafb4a96867ffc76cfef84f4cddef82fd2cece61dd1cf535335fbelf  
2022-12-24 08:59:27a8f65950f6df648f3802b807412fba1d1f15edc44c6d1218ed16e4b2d285f7cfelf  
2022-12-24 08:15:54116f8441904c5d8024765d61d8928c039cfdb89d1503513d40c55d80ac73c159elf  
2022-12-24 07:19:18e62612443715920e204bda790c1eb909fa6fe9934d218a0f3ba284f889fa85eaelf  
2022-12-10 13:05:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2022-11-28 00:25:06a04ac6d98ad989312783d4fe3456c53730b212c79a426fb215708b6c6daa3de3elfHajime