URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 188.114.199.203
Firstseen:2025-08-08 20:39:03 UTC
Total malware sites :9
Online malware sites :2 (22%)
Offline Malware sites :7 (78%)
Newest active malware site :2026-01-23 07:14:17 UTC
Oldest active malware site :2026-01-23 06:46:13 UTC (Age: 10 days, 15 hours, 35 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-08 20:39:05 188.114.199.203Not listedAS6789 CRELCOM-NET- UAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-01-30 21:04:04http://188.114.199.203/iOfflineMozi ext threatquery
2026-01-23 07:14:17http://188.114.199.203:52253/iOnline32-bit elf mips Mozi ext geenensp
2026-01-23 06:46:13http://188.114.199.203:52253/bin.shOnline32-bit elf mips Mozi ext geenensp
2026-01-19 07:05:15http://188.114.199.203:36922/iOffline32-bit elf mips Mozi ext geenensp
2025-09-20 15:01:16http://188.114.199.203:46895/iOffline32-bit elf Mozi ext threatquery
2025-09-17 09:30:24http://188.114.199.203:57700/iOffline32-bit elf mips Mozi ext geenensp
2025-09-17 09:22:25http://188.114.199.203:57700/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-08-08 21:06:05http://188.114.199.203:42819/iOffline32-bit elf mips Mozi ext geenensp
2025-08-08 20:39:05http://188.114.199.203:42819/bin.shOffline32-bit elf mips Mozi ext geenensp