URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 2.55.98.253
Firstseen:2020-12-20 06:50:03 UTC
Total malware sites :29
Online malware sites :2 (7%)
Offline Malware sites :27 (93%)
Newest active malware site :2026-02-22 13:35:18 UTC
Oldest active malware site :2026-02-13 17:38:16 UTC (Age: 14 days, 10 hours, 34 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-12-20 06:50:05 2.55.98.2532-55-98-253.orange.net.ilNot listedAS12400 PARTNER-AS- ILyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-02-22 13:35:18http://2.55.98.253:43513/bin.shOnline32-bit elf mips Mozi ext geenensp
2026-02-13 17:38:16http://2.55.98.253:43513/iOnline32-bit elf mips Mozi ext geenensp
2025-10-03 21:00:30http://2.55.98.253:47550/iOfflineMozi ext threatquery
2025-08-04 02:44:04http://2.55.98.253:44868/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-07-26 11:59:06http://2.55.98.253:44868/iOffline32-bit elf mips Mozi ext geenensp
2025-06-30 21:08:11http://2.55.98.253:51193/iOffline32-bit elf mips Mozi ext geenensp
2024-12-09 04:41:05http://2.55.98.253:40399/iOffline 32-bit elf mips geenensp
2024-12-09 04:32:11http://2.55.98.253:40399/bin.shOffline 32-bit elf mips geenensp
2024-12-08 11:34:06http://2.55.98.253:40399/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-11-02 00:40:07http://2.55.98.253:57850/iOffline32-bit elf mips Mozi ext geenensp
2024-11-01 00:35:07http://2.55.98.253:57850/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-10-25 21:50:07http://2.55.98.253:57850/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-10-05 12:04:07http://2.55.98.253:39347/Mozi.mOfflineMozi ext Gandylyan1
2024-09-24 09:56:05http://2.55.98.253:39347/iOffline32-bit elf mips Mozi ext geenensp
2024-09-22 20:41:05http://2.55.98.253:39347/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-09-06 18:19:04http://2.55.98.253:46624/iOffline32-bit elf mips Mozi ext geenensp
2024-09-06 17:58:06http://2.55.98.253:46624/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-08-14 16:01:06http://2.55.98.253:59386/iOffline32-bit elf mips Mozi ext geenensp
2024-08-14 15:36:05http://2.55.98.253:59386/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-08-13 20:05:06http://2.55.98.253:59386/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-07-17 09:59:05http://2.55.98.253:42514/iOffline32-bit elf mips Mozi ext geenensp
2024-07-17 09:31:13http://2.55.98.253:42514/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-07-16 11:35:15http://2.55.98.253:42514/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-04-19 03:34:07http://2.55.98.253:41586/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2024-04-14 17:04:08http://2.55.98.253:41586/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-03-26 21:31:14http://2.55.98.253:41586/iOffline32-bit elf mips Mozi ext geenensp
2024-03-26 20:48:04http://2.55.98.253:41586/bin.shOffline32-bit elf mips Mozi ext geenensp
2022-12-14 23:50:05http://2.55.98.253:34052/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-12-20 06:50:05http://2.55.98.253:43418/Mozi.mOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-02-22 13:35:184293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2026-02-13 17:38:164293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2025-08-04 02:44:04b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2025-07-26 11:59:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2025-06-30 21:08:114293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-12-09 04:41:05006f1f2dd6988c9dceda595ac84a67c0b2efe7980db0e7b1a5e9b7182c6c08bfelf 
2024-12-09 04:32:11006f1f2dd6988c9dceda595ac84a67c0b2efe7980db0e7b1a5e9b7182c6c08bfelf 
2024-12-08 11:34:06006f1f2dd6988c9dceda595ac84a67c0b2efe7980db0e7b1a5e9b7182c6c08bfelf 
2024-11-02 00:40:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-11-01 00:35:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-10-25 21:50:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-10-05 12:04:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-09-24 09:56:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-09-22 20:41:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-09-06 18:19:04b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2024-09-06 17:58:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2024-08-14 16:01:064293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-08-14 15:36:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-08-13 20:05:064293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-07-17 09:59:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2024-07-17 09:31:13b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2024-07-16 11:35:15b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2024-04-19 03:34:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-04-14 17:04:084293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-03-26 21:31:144293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2024-03-26 21:04:364293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-12-14 23:50:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2020-12-20 06:50:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf