URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.43
Firstseen:2019-12-30 11:38:56 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-30 11:39:04 111.42.66.43Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-11 12:03:08http://111.42.66.43:37259/Mozi.mOfflineMozi ext Gandylyan1
2020-05-04 06:06:52http://111.42.66.43:54641/Mozi.mOfflineMozi ext Gandylyan1
2020-04-19 06:04:26http://111.42.66.43:49655/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-20 09:04:05http://111.42.66.43:46548/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-14 09:04:38http://111.42.66.43:59559/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-23 18:06:28http://111.42.66.43:50267/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-17 06:06:49http://111.42.66.43:47015/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-09 12:06:40http://111.42.66.43:58716/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-08 13:03:49http://111.42.66.43:48039/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-30 06:07:25http://111.42.66.43:50386/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-28 04:03:23http://111.42.66.43:39051/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-23 21:03:43http://111.42.66.43:36307/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-21 12:04:27http://111.42.66.43:56875/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-19 01:04:28http://111.42.66.43:35713/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-16 15:04:43http://111.42.66.43:45539/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-14 10:03:27http://111.42.66.43:32886/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-04 11:55:07http://111.42.66.43:42372/Mozi.mOfflineelf Gandylyan1
2019-12-30 11:39:04http://111.42.66.43:60416/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-11 12:03:08bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-04 06:06:52bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-19 06:04:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-20 09:04:05bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-14 09:04:38bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-23 18:06:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-17 06:06:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-09 12:06:40bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-08 13:03:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-30 06:07:25bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-28 04:03:23bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-23 21:03:43bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-21 12:04:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-19 01:04:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-16 16:14:17bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-14 10:03:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-04 11:55:07bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-30 11:38:58bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf