URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 185.133.214.138
Firstseen:2024-04-16 12:21:05 UTC
Total malware sites :2
Online malware sites :1 (50%)
Offline Malware sites :1 (50%)
Newest active malware site :2024-04-16 12:21:15 UTC
Oldest active malware site :2024-04-16 12:21:15 UTC (Age: 2 years, 1 months, 22 days, 1 hours, 8 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-04-16 12:21:15 185.133.214.138Not listedAS133524 GTCL-AS-AP- MMyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-06 12:53:10http://185.133.214.138:29245/Mozi.mOfflineelf hajime NDA0E
2024-04-16 12:21:15http://185.133.214.138:29245/iOnlineelf hajime ClearlyNotB

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-20 05:25:5983f1cc08c430107e70a2976aef153eb5e8f25fecc561f4a55d226158c080ace9elf  
2025-11-20 03:40:32dd81f8b28ffba84f418b7ba15c3406b9e69e722281ab5822e8191aea1ae6e728elf  
2025-11-20 03:14:17d8430372204682e98e75cdf589ab45e2f09960cd0aff5af741341671481b3656elf  
2025-11-19 22:33:3121a30884617807065a4855173ed554d2bf7dc41fe4fec749055ca2072d7e69e7elf  
2025-11-19 18:11:54d5aadfcde4a266619be66a0b06d156f644e151283856630e6cd849adcb51e032elf  
2025-11-18 23:15:27c328f4faf73b6e4685568ce8114a03773aae20ec7395c10bb2c7d3683b62675felf  
2025-11-18 23:13:15eaa08f7cedc2ed4a97fdff1e549b54726ae32832f1bcf0294b767f983213a157elf  
2025-11-18 16:09:25edd1e9268ff4961c7d0d2364d7215925d38852fa8646636d8edb3e97900e53acelf  
2025-11-18 09:54:31c0b1ac2a4e9df27794b10c8738057ba5476357bd5129bee50a2a1ab9f8183853elf  
2025-11-18 05:05:576b09183fdd3eb3af13a88f61d0534bfb15a3fd30c2129ad51f51a7359ea7b1d1elf  
2025-11-18 04:44:02d4b125064e284d4586ccbe058f214c34ae4a973a3f276f7db1a1b1da0e9f97b6elf  
2025-08-26 03:56:133cc5075bcfaad4ad2a21e6bb10f9e2b861bfd63cda8cfe96d09977766db3f967elfHajime
2025-08-25 08:53:51b38eea6d2365d7735c194f9dfafcb8e827f671b2557d40186ae457323db026d3elfHajime
2024-12-12 13:18:29ff7be862ce8598ec2193df64170942518445c558bfd6b13b59453f1ea0b5aa9delf  
2024-10-06 12:53:10020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0elfHajime
2024-06-20 13:05:1664d671e954c370655d61855ba22381f9bbd929ac713322765686619cebeac480elf  
2024-06-20 09:44:530c8555271eb8e5ec0a17685fff0af8fa9c8ffc8b3a5e5b1affd1772db0d9e5f6elf  
2024-05-08 21:08:33d5db5782bc7194a26773dd757da5de9b3f4f5d0dc2771f89518745b1c29b1eecelf  
2024-04-16 12:21:12020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0elfHajime