URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 121.130.79.237
Firstseen:2020-10-31 11:50:03 UTC
Total malware sites :27
Online malware sites :0 (0%)
Offline Malware sites :27 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-31 11:50:08 121.130.79.237Not listedAS4766 KIXS-AS-KR- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-11-11 20:05:10http://121.130.79.237:36866/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-11-04 05:35:07http://121.130.79.237:41580/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-10-20 05:42:07http://121.130.79.237:33186/mozi.mOffline tammeto
2021-10-15 22:34:07http://121.130.79.237:38008/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-10-15 02:49:11http://121.130.79.237:52557/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-16 06:35:16http://121.130.79.237:38616/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-08 14:20:12http://121.130.79.237:49475/Mozi.mOffline lrz_urlhaus
2021-09-08 06:04:05http://121.130.79.237:45178/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-03 17:50:14http://121.130.79.237:47270/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-08-14 23:50:08http://121.130.79.237:41014/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-08-13 17:35:14http://121.130.79.237:56643/Mozi.mOffline lrz_urlhaus
2021-08-06 08:20:17http://121.130.79.237:41507/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-19 22:06:15http://121.130.79.237:52064/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-17 10:50:06http://121.130.79.237:51818/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-12 09:04:21http://121.130.79.237:42335/Mozi.mOfflineMozi ext Gandylyan1
2021-07-09 21:04:03http://121.130.79.237:59765/Mozi.mOfflineMozi ext Gandylyan1
2021-05-27 06:22:12http://121.130.79.237:36343/iOffline32-bit elf mips Mozi ext geenensp
2021-05-19 22:51:52http://121.130.79.237:52913/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-06 13:21:17http://121.130.79.237:45446/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-21 17:07:08http://121.130.79.237:34338/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-14 14:06:06http://121.130.79.237:39403/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-01-15 00:20:16http://121.130.79.237:56139/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-01-14 02:34:06http://121.130.79.237:50577/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2021-01-13 23:20:14http://121.130.79.237:50577/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-09 14:50:05http://121.130.79.237:54797/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-27 11:35:06http://121.130.79.237:40216/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-10-31 11:50:08http://121.130.79.237:57181/Mozi.mOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-11-11 20:05:10f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-11-04 05:35:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-10-20 05:42:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-10-15 22:34:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-10-15 02:49:11f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-09-16 06:35:16f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-09-08 14:20:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-09-08 06:04:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-09-03 17:50:14f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-08-14 23:50:087e0607e5f3d2192613a2b35942bf799a9ba3dc9d556912ec94c8ccf5ac4f7fe3elf  
2021-08-13 17:35:14f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-08-06 08:20:17f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-07-19 22:06:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-07-17 10:50:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-07-12 09:04:21f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-05-27 06:22:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-05-06 13:21:17f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-21 17:07:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-14 14:06:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-01-15 00:20:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-01-14 02:34:069e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2021-01-13 23:20:149e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-12-09 14:50:05aa8280d9ee9649a1492f19bb233ffb913b0701828712f8d4b9e8fb6d7638cba9elf  
2020-11-27 11:35:064d177953811b6036f4dbd9ca033332a9a0f74d1ed360cd1ad5cde2b93cc7b36aelf  
2020-10-31 11:50:07eddd5df9edb31a486d5074d682a22b4b7b9e2ed831eca35cf5de39e90f9064d7elf