URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.4
Firstseen:2019-12-21 23:01:47 UTC
Total malware sites :20
Online malware sites :0 (0%)
Offline Malware sites :20 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-21 23:01:54 111.42.66.4Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-25 15:03:18http://111.42.66.4:37445/Mozi.mOfflineMozi ext Gandylyan1
2020-05-11 00:05:28http://111.42.66.4:50140/Mozi.mOfflineMozi ext Gandylyan1
2020-04-16 03:04:10http://111.42.66.4:46800/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-11 06:05:59http://111.42.66.4:35397/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-04-02 00:04:11http://111.42.66.4:51064/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-24 09:04:53http://111.42.66.4:46946/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-22 21:04:04http://111.42.66.4:43858/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-12 18:04:05http://111.42.66.4:55097/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-27 16:03:05http://111.42.66.4:34122/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-22 14:04:20http://111.42.66.4:44371/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-11 12:07:49http://111.42.66.4:57995/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-01 20:05:19http://111.42.66.4:58626/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-30 02:04:09http://111.42.66.4:40099/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-24 21:05:47http://111.42.66.4:59534/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-20 19:04:14http://111.42.66.4:52018/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-15 23:05:00http://111.42.66.4:43146/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-09 17:05:49http://111.42.66.4:37269/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-03 01:04:12http://111.42.66.4:54865/Mozi.mOfflineelf Gandylyan1
2019-12-29 17:41:10http://111.42.66.4:34773/Mozi.mOfflineelf Gandylyan1
2019-12-21 23:01:54http://111.42.66.4:52403/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-25 15:03:18bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-11 00:05:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-11 06:05:59bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-02 00:04:11bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-24 09:04:53bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-22 21:04:04bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-12 18:04:05bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-27 16:03:05bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-22 14:04:20bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-11 12:07:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-01 20:05:19bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-30 02:04:09bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-24 21:05:47bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-20 19:04:14bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-15 23:05:00bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-09 17:05:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-03 01:52:46bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-29 17:41:10bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-21 23:01:50bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf