URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.36
Firstseen:2019-12-25 16:06:08 UTC
Total malware sites :28
Online malware sites :0 (0%)
Offline Malware sites :28 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-25 16:06:16 111.42.66.36Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-06-02 15:03:36http://111.42.66.36:58771/Mozi.mOfflineMozi ext Gandylyan1
2020-04-10 07:26:21http://111.42.66.36:33019/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-24 18:05:26http://111.42.66.36:56509/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-15 16:08:03http://111.42.66.36:34079/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-07 01:04:46http://111.42.66.36:49100/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-06 16:04:55http://111.42.66.36:36235/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-03 00:09:07http://111.42.66.36:51837/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-30 21:04:14http://111.42.66.36:56696/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-30 01:05:01http://111.42.66.36:53261/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-29 06:07:14http://111.42.66.36:52668/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-26 14:05:13http://111.42.66.36:58339/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-24 03:03:25http://111.42.66.36:39812/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-21 11:04:13http://111.42.66.36:45124/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-19 00:04:51http://111.42.66.36:50840/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-16 12:05:12http://111.42.66.36:40662/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-15 04:03:55http://111.42.66.36:42329/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-13 08:05:29http://111.42.66.36:54471/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-12 04:04:15http://111.42.66.36:51704/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-10 01:04:54http://111.42.66.36:42502/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-09 19:03:26http://111.42.66.36:47162/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-05 12:19:29http://111.42.66.36:56066/Mozi.mOfflineelf Gandylyan1
2020-01-04 02:53:31http://111.42.66.36:52140/Mozi.mOfflineelf Gandylyan1
2020-01-03 12:01:32http://111.42.66.36:47791/Mozi.mOfflineelf Gandylyan1
2020-01-01 21:19:58http://111.42.66.36:45039/Mozi.mOfflineelf Gandylyan1
2019-12-29 14:17:55http://111.42.66.36:57597/Mozi.mOfflineelf Gandylyan1
2019-12-28 17:42:13http://111.42.66.36:58257/Mozi.mOfflineelf Gandylyan1
2019-12-27 11:17:05http://111.42.66.36:50666/Mozi.mOfflineelf Gandylyan1
2019-12-25 16:06:16http://111.42.66.36:53850/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-06-02 15:03:36bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-24 18:05:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-15 16:08:03bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-07 01:04:46bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-06 16:04:55bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-03 00:09:07bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-30 21:04:14bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-30 01:05:01bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-29 06:07:14bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-26 14:05:13bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-24 03:03:25bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-21 11:04:13bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-19 00:04:51bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-16 12:05:12bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-15 04:03:55bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-13 08:05:29bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-12 04:04:15bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-10 01:04:54bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-09 19:03:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-05 12:19:29bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-04 02:53:31bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-01 21:19:58bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-29 14:17:55bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-28 17:42:13bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-27 11:17:05bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-25 16:06:10bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf