URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.18
Firstseen:2019-12-19 12:35:20 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-19 12:35:26 111.42.66.18Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-26 12:04:27http://111.42.66.18:48305/Mozi.mOfflineMozi ext Gandylyan1
2020-05-26 09:05:12http://111.42.66.18:39621/Mozi.mOfflineMozi ext Gandylyan1
2020-05-16 00:04:33http://111.42.66.18:52231/Mozi.mOfflineMozi ext Gandylyan1
2020-04-27 15:04:04http://111.42.66.18:54276/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-02 06:05:16http://111.42.66.18:50712/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-01 09:04:10http://111.42.66.18:46983/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-24 18:05:47http://111.42.66.18:34086/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-04 09:03:28http://111.42.66.18:47559/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-27 21:04:29http://111.42.66.18:53642/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-19 06:04:14http://111.42.66.18:42719/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-17 18:07:25http://111.42.66.18:42643/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-13 08:04:40http://111.42.66.18:60172/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-11 02:04:54http://111.42.66.18:39225/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-03 02:05:27http://111.42.66.18:48657/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-29 23:07:28http://111.42.66.18:41894/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-28 10:06:24http://111.42.66.18:60881/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-26 14:06:01http://111.42.66.18:34489/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-24 05:05:26http://111.42.66.18:59889/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-21 12:04:52http://111.42.66.18:46108/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-12 19:03:49http://111.42.66.18:34531/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-09 07:05:22http://111.42.66.18:54757/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-03 20:06:07http://111.42.66.18:35925/Mozi.mOfflineelf Gandylyan1
2019-12-19 12:35:26http://111.42.66.18:34728/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-26 12:04:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-16 00:04:33bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-27 15:04:04bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-02 06:05:16bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-01 09:04:10bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-24 18:05:47bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-04 09:03:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-27 21:04:29bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-19 06:04:14bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-17 18:07:25bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-13 08:04:40bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-11 02:04:54bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-03 02:05:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-29 23:07:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-28 10:06:24bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-26 14:06:01bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-24 05:05:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-21 12:04:52bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-12 19:03:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-09 07:26:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-03 20:06:07bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-19 12:35:22bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf