URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 125.134.169.139
Firstseen:2020-09-13 13:57:02 UTC
Total malware sites :22
Online malware sites :0 (0%)
Offline Malware sites :22 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-13 13:57:05 125.134.169.139Not listedAS4766 KIXS-AS-KR- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-12 00:05:06http://125.134.169.139:50818/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-12-05 09:19:06http://125.134.169.139:56329/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-29 16:19:07http://125.134.169.139:39787/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-15 11:51:07http://125.134.169.139:44093/iOffline32-bit elf mips geenensp
2020-11-15 05:50:12http://125.134.169.139:44093/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-11 17:05:06http://125.134.169.139:37425/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-09 12:08:06http://125.134.169.139:59457/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-02 03:34:06http://125.134.169.139:42167/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-10-26 00:50:07http://125.134.169.139:34313/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-10-08 08:28:07http://125.134.169.139:49198/iOffline32-bit elf mips mirai ext geenensp
2020-10-08 07:31:06http://125.134.169.139:49198/bin.shOffline32-bit elf mips mirai ext geenensp
2020-10-07 12:20:06http://125.134.169.139:49198/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-07 01:50:33http://125.134.169.139:49198/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-04 19:47:05http://125.134.169.139:47742/iOffline32-bit elf mips mirai ext geenensp
2020-09-22 13:58:05http://125.134.169.139:42636/bin.shOffline32-bit elf mips mirai ext geenensp
2020-09-22 13:47:04http://125.134.169.139:42636/iOffline32-bit elf mips mirai ext geenensp
2020-09-22 06:35:49http://125.134.169.139:42636/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-19 06:40:06http://125.134.169.139:36915/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-17 13:41:05http://125.134.169.139:38531/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-17 10:26:05http://125.134.169.139:38531/Mozi.aOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-09-13 14:52:09http://125.134.169.139:42777/bin.shOffline32-bit elf mips mirai ext geenensp
2020-09-13 13:57:05http://125.134.169.139:42777/iOffline32-bit elf mips mirai ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-12 00:05:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-12-05 09:19:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-29 16:19:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-15 11:51:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-15 05:50:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-11 17:05:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-09 12:08:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-02 03:34:06dbfbc39345d32772b2ec446263da602e456ed7d0a39a9bedb9bb3e11b7764a06elf  
2020-10-29 17:41:59f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-10-26 00:50:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-10-08 08:28:079e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-08 07:31:069e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-07 12:20:069e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-07 02:22:339e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-04 19:47:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-22 13:58:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-22 13:47:049e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-22 06:35:499e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-19 06:40:069e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-17 13:41:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-17 10:26:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-13 14:52:099e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-09-13 13:57:059e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai