URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 121.161.35.243
Firstseen:2020-10-21 05:56:11 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-21 05:56:16 121.161.35.243Not listedAS4766 KIXS-AS-KR- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-04-14 01:06:06http://121.161.35.243:18050/.iOfflinehajime geenensp
2020-11-02 15:21:11http://121.161.35.243:32866/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-11-02 11:19:06http://121.161.35.243:32866/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-24 09:59:05http://121.161.35.243:59781/iOffline32-bit arm elf mirai ext geenensp
2020-10-22 12:54:06http://121.161.35.243:59781/bin.shOffline32-bit arm elf mirai ext geenensp
2020-10-22 05:05:08http://121.161.35.243:59781/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-21 05:56:16http://121.161.35.243:59781/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-09-12 18:20:46a7969f6e3271b52409a22afa1397424dce8cc88d59915210654b597ea694800delf  
2023-09-07 03:48:51d9074b518992fac0b545447a2b25ebd9c58aae6d8404860af54a4075e3961389elf  
2023-08-20 16:02:431e60e090325757a855276d839d05d32043c86742f0298b8beada3c9dc2e37347elf  
2023-08-17 13:18:213d6313d867d3210dca79e2633951588ff82b31dd31c749e2b1015ef81feffce7elf 
2023-08-06 17:58:44b82e420c071c1c1a5cbf1ad8ba143f5b804a6fe4fd2fbcd28db20f471b7065abelf  
2023-08-04 00:24:0217e070e9b5acfa337b368c2d3284f0cb9a1cc5f42f1f42b621b666f198bfe39belf  
2023-08-03 01:24:24d6d5a7a89431c7f99aae6ae0a9d88c3ab71528de8fd4020fe683e3e22b86f37felf  
2023-08-02 05:47:09ca51c2a935453ee3924d8ccc7767db2f60eb4d75d80e2244c83f4602efdffb90elf  
2023-08-01 17:07:59e874e713b6d03c43fc10ad947cd151b7111dbb4536a7aea2a39804d3011a72e0elf  
2023-07-24 09:53:218776bed069ebb888679fb5b50b094296bfad230902e7bb85345bb121051a4553elf  
2023-07-14 20:46:5086666d4c93cf443f50e781c5bef3582044c0183d5b5d71d570538d4ad5c01845elf  
2023-07-11 09:56:35e54977e44c282dfd33e0f66190a0ee51079730168368c196e3f45177d1346c30elf  
2023-06-28 21:43:050267d1a79736e41e7aa40cbf186f8b0cf66bc978a35e9a0c16ad3a113ea7ba07elf  
2023-06-28 09:21:33ca5f7b054e58918e4a095f6042d972040ba567bf28f1ae785ce52d24b868deeaelf  
2023-06-22 16:17:57fc25983df085d7031a4028ef057a08efcd261d3e370bca6f92163a6d75f87635elf  
2023-06-14 23:45:4608b24e6011c4960cac668b4fa0c54bb0ce5207a5bf7669245ec1378a963d13b0elf  
2023-05-20 08:35:45f0a712b4468a2ba0bee0511df056f66d3f51d66eb8460c733f73b19336370686elf  
2023-04-17 14:56:5620ada0172398ca8f9836bc87905e249a19ee01323c55a44c5722d868307e1628elf  
2023-04-14 01:06:06a04ac6d98ad989312783d4fe3456c53730b212c79a426fb215708b6c6daa3de3elfHajime
2020-11-02 15:21:1112013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-11-02 11:19:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-24 09:59:0512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-22 12:54:0612013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-22 05:05:0812013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai
2020-10-21 05:56:1512013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0efelfMirai