URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.12
Firstseen:2019-12-20 20:19:50 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-20 20:19:57 111.42.66.12Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-03 18:06:17http://111.42.66.12:46862/Mozi.mOfflineMozi ext Gandylyan1
2020-04-24 06:03:20http://111.42.66.12:43703/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-10 18:05:28http://111.42.66.12:50309/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-05 03:03:23http://111.42.66.12:56025/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-04 00:04:37http://111.42.66.12:34232/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-25 18:04:47http://111.42.66.12:48316/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-18 00:04:56http://111.42.66.12:57055/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-14 08:06:18http://111.42.66.12:38540/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-09 13:06:13http://111.42.66.12:38694/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-05 01:07:00http://111.42.66.12:33224/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-03 01:07:35http://111.42.66.12:44772/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-24 03:03:29http://111.42.66.12:33137/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-18 11:05:36http://111.42.66.12:55970/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-17 15:03:12http://111.42.66.12:52946/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-10 23:04:42http://111.42.66.12:34301/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-10 11:04:38http://111.42.66.12:46922/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-08 02:05:18http://111.42.66.12:37392/Mozi.mOfflineelf Gandylyan1
2020-01-03 11:46:12http://111.42.66.12:51057/Mozi.mOfflineelf Gandylyan1
2019-12-29 19:10:55http://111.42.66.12:42733/Mozi.mOfflineelf Gandylyan1
2019-12-28 12:15:27http://111.42.66.12:38257/Mozi.mOfflineelf Gandylyan1
2019-12-20 20:19:57http://111.42.66.12:59935/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-03 18:06:17bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-24 06:03:20bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-10 18:05:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-05 03:03:23bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-04 00:04:37bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-25 18:04:47bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-18 01:08:11bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-14 08:06:18bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-09 13:06:13bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-05 01:07:00bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-03 01:07:35bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-24 03:03:29bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-18 11:05:36bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-17 15:03:12bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-10 23:04:42bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-10 11:04:38bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-08 02:05:18bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-03 12:49:20bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-29 19:10:55bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-28 12:15:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-20 20:19:52bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf