URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 111.42.66.45
Firstseen:2019-12-22 08:44:45 UTC
Total malware sites :21
Online malware sites :0 (0%)
Offline Malware sites :21 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-22 08:44:54 111.42.66.45Not listedAS132525 CMNET-HEILONGJIANG-CN- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-05-07 09:06:03http://111.42.66.45:52007/Mozi.mOfflineMozi ext Gandylyan1
2020-04-27 03:06:23http://111.42.66.45:44883/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-30 21:07:22http://111.42.66.45:44927/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-23 21:03:49http://111.42.66.45:60954/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-20 12:06:48http://111.42.66.45:40203/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-13 21:05:57http://111.42.66.45:42825/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-11 18:04:51http://111.42.66.45:36325/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-06 00:05:36http://111.42.66.45:40339/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-18 06:06:28http://111.42.66.45:35749/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-09 09:04:21http://111.42.66.45:51949/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-05 23:05:25http://111.42.66.45:55485/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-30 00:05:46http://111.42.66.45:60005/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-25 06:03:40http://111.42.66.45:44775/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-22 15:04:08http://111.42.66.45:41207/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-12 04:04:41http://111.42.66.45:50999/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-07 16:03:08http://111.42.66.45:58463/Mozi.mOfflineelf Gandylyan1
2020-01-02 11:38:09http://111.42.66.45:34273/Mozi.mOfflineelf Gandylyan1
2019-12-29 00:12:16http://111.42.66.45:44261/Mozi.mOfflineelf Gandylyan1
2019-12-25 21:36:27http://111.42.66.45:49386/Mozi.mOfflineelf Gandylyan1
2019-12-24 13:08:34http://111.42.66.45:59538/Mozi.mOfflineelf Gandylyan1
2019-12-22 08:44:54http://111.42.66.45:35050/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-05-07 09:06:03bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-30 21:07:22bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-23 21:03:49bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-20 12:06:48bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-13 21:05:57bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-11 18:04:51bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-06 00:05:36bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-18 06:06:28bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-09 09:04:21bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-05 23:05:25bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-30 00:05:46bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-25 06:03:40bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-22 15:04:08bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-12 04:04:41bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-07 16:03:08bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-02 11:38:09bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-29 00:12:16bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-25 21:36:27bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-24 13:08:34bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-22 08:44:47bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf