URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 14.56.245.211
Firstseen:2020-11-14 09:04:02 UTC
Total malware sites :20
Online malware sites :0 (0%)
Offline Malware sites :20 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-14 09:04:05 14.56.245.211Not listedAS4766 KIXS-AS-KR- KRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-06-12 04:50:05http://14.56.245.211:41229/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-07 04:35:14http://14.56.245.211:33879/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-05 14:22:10http://14.56.245.211:35076/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-31 22:19:22http://14.56.245.211:45211/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-26 09:07:13http://14.56.245.211:48515/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-22 23:04:08http://14.56.245.211:46737/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-26 02:23:12http://14.56.245.211:60147/iOffline32-bit elf mips Mozi ext geenensp
2021-04-26 01:53:05http://14.56.245.211:60147/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-04-24 18:20:09http://14.56.245.211:60416/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-20 15:38:05http://14.56.245.211:35411/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-17 12:06:09http://14.56.245.211:45366/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-03-23 17:34:11http://14.56.245.211:51661/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-02-02 21:49:06http://14.56.245.211:59295/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-12-26 05:42:06http://14.56.245.211:58167/iOffline32-bit elf mips geenensp
2020-12-26 05:23:06http://14.56.245.211:58167/bin.shOffline32-bit elf mips geenensp
2020-12-20 20:04:05http://14.56.245.211:49984/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-29 23:19:05http://14.56.245.211:59805/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-27 22:34:33http://14.56.245.211:59734/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-24 14:05:06http://14.56.245.211:45563/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-14 09:04:05http://14.56.245.211:43721/Mozi.mOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-06-12 18:43:05fe5d0583c96dc1eb2751f2870083abbaf09ace1934e89225efd903568e3391edelf  
2021-06-12 18:13:37f36fdb4229a7e44a838b0ead24522173fba5c36d281d9318447f9d06cf69b194elf  
2021-06-12 17:50:5583df8eb7fc8c54eab64f8b9e2e39af660995fb4687db4b2c71fa54d943952dc0elf  
2021-06-12 17:36:32b064614444ff1c765eaff36618998b1d02d39dff89f439aef6d08f2a83ba179celf  
2021-06-12 17:23:28d8374d0fb70d26d9f5b5813712df64902306bd6aa1219480b00ba1a6aca2553celf  
2021-06-12 16:40:0122b46240d9263a1b705a591b0916bdfd690fd9a760beae4c82dc398bee8c7823elf  
2021-06-12 16:24:17663059cd57db6d555af8032b80de5d372ba345050f9b3331740fe352f230e1d9elf  
2021-06-12 16:03:03cf696b8d5aa19ee51439b35bc5e46e51e9d39178868f1d32eca8871854738cf9elf  
2021-06-12 13:21:084c54cbecedc77c2ca7970f22a3bdaf07d0241de111886ab48a22fd4c07743674elf  
2021-06-12 11:04:46dde3018f8fbd31e121064ce41165adceb137bdf029ec1735c989d4f92eefe504elf  
2021-06-12 10:44:28387b896256ed320dd493bd1f02edf09611396d49cde851a10806e554fe3ab3cfelf  
2021-06-12 10:30:25e69b0ad392848ec63c48ed187ad69252bfa9a7389d92a365fe4e06b926e2839eelf  
2021-06-12 10:13:222086ad60902f95428976f3407d39c23ac948cedd00d35792b735fcfd35cce100elf  
2021-06-12 09:53:21ac0a84fc473880b1d9a46f503a17a9557e570948c78f49d1732ed6df9d400967elf  
2021-06-12 09:11:25da9d3e5d392d1b2c1f4e6edc116a1d9d9f2d7643c1db4bb468f4092157785a82elf  
2021-06-12 08:50:50089f61868d9f3f19f8984b384c88623da5f7bcb878d08571bc11eab8ed0ab01belf  
2021-06-12 07:41:23cb27a33d69443d756d5636b99cb071190a84bda1f9279bd918144c9ee28d620delf  
2021-06-12 07:32:527e9dd1f517c01ca670f94a0225b1103717c85b3538b0819c9c307fccb250df42elf  
2021-06-12 07:14:152a6ab50fa9473ddf23cebffa0c2f6e0ad5719e62d30b22b1da40c5f67b82ef61elf  
2021-06-12 05:04:53f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-06-12 04:50:052590b081da2ebbd2220f6568b06c54fe5cf0cdab996f12a020d1fab3137ef2e7elf  
2021-06-07 04:35:14f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-06-05 14:22:10f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-05-31 22:19:22f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-05-26 09:07:13f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-05-22 23:04:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-26 02:23:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-26 01:53:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-24 18:20:09f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-20 15:38:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-04-17 12:06:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-03-23 17:34:11f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-02-02 21:49:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-12-26 05:42:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-12-26 05:23:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-12-20 20:04:0514ad0b3c2749527a85e3144e6946035b4c81ab3c145d50aa903adfcd91039cfcelf  
2020-11-29 23:19:05dc83114618ef1226f7e62b45564cfa316a22b91a05d62ed3fa5410b11868a56belf  
2020-11-27 22:51:45f8be2a2014a8a3aa5ca1afc3029d82314490983427c4ccd132e0714f13abc77felf 
2020-11-24 14:05:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-14 09:04:054ecfcae2a74de875fd04fd34dc297d560bd2881138e4462d378452fa653a0e15elf