URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 116.114.95.174
Firstseen:2019-12-23 13:26:31 UTC
Total malware sites :16
Online malware sites :0 (0%)
Offline Malware sites :16 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-12-23 13:26:33 116.114.95.174Not listedAS4837 CHINA169-Backbone- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-01 09:04:09http://116.114.95.174:54570/Mozi.mOfflineMozi ext Gandylyan1
2020-06-23 03:05:48http://116.114.95.174:54660/Mozi.mOfflineMozi ext Gandylyan1
2020-05-27 03:03:10http://116.114.95.174:32911/Mozi.mOfflineMozi ext Gandylyan1
2020-05-18 21:05:03http://116.114.95.174:36753/Mozi.mOfflineMozi ext Gandylyan1
2020-05-14 03:04:51http://116.114.95.174:60102/Mozi.mOfflineMozi ext Gandylyan1
2020-04-22 09:07:02http://116.114.95.174:44852/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-15 06:07:09http://116.114.95.174:44395/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-12 09:08:55http://116.114.95.174:35242/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-03-09 15:05:22http://116.114.95.174:39692/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-02-24 18:04:04http://116.114.95.174:40178/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-29 12:05:54http://116.114.95.174:43196/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-25 02:05:26http://116.114.95.174:39506/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-15 04:03:38http://116.114.95.174:44813/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-13 12:04:40http://116.114.95.174:43168/Mozi.mOfflineelf Mozi ext Gandylyan1
2020-01-05 16:09:46http://116.114.95.174:43934/Mozi.mOfflineelf Gandylyan1
2019-12-23 13:26:33http://116.114.95.174:38243/Mozi.mOfflineelf Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-01 09:04:09bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-06-23 03:05:48bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-27 03:03:10bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-18 21:05:03bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-05-14 03:04:51bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-04-22 09:07:02bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-15 06:07:09bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-12 09:08:55bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-03-09 15:05:22bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-02-24 18:04:04bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-29 12:05:54bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-25 02:05:26bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-15 04:03:38bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-13 12:04:40bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2020-01-05 16:09:46bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf 
2019-12-23 13:26:33bba18438991935a5fb91c8f315d08792c2326b2ce19f2be117f7dab984c47bdfelf