URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 200.6.91.47
Firstseen:2024-08-04 03:58:03 UTC
Total malware sites :38
Online malware sites :2 (5%)
Offline Malware sites :36 (95%)
Newest active malware site :2026-03-23 10:42:07 UTC
Oldest active malware site :2026-03-21 18:57:05 UTC (Age: 2 days, 10 hours, 37 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-08-04 03:58:05 200.6.91.47Not listedAS270458 FIBRA_MAIS- BRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-03-23 10:42:07http://200.6.91.47:54535/bin.shOnline GAYINT_DOT_ORG
2026-03-21 18:57:05http://200.6.91.47:54535/iOnline GAYINT_DOT_ORG
2026-02-05 01:46:15http://200.6.91.47:50756/iOffline32-bit elf mips Mozi ext geenensp
2026-02-05 01:06:15http://200.6.91.47:50756/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-11-12 23:56:09http://200.6.91.47:50372/iOffline32-bit elf mips Mozi ext geenensp
2025-11-12 23:30:19http://200.6.91.47:50372/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-09-07 20:09:14http://200.6.91.47:46861/iOffline32-bit elf mips Mozi ext geenensp
2025-09-07 19:50:08http://200.6.91.47:46861/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-04-26 02:37:05http://200.6.91.47:54908/iOffline32-bit elf mips Mozi ext geenensp
2025-04-07 04:29:05http://200.6.91.47:35940/iOffline32-bit elf mips Mozi ext geenensp
2025-04-07 00:10:06http://200.6.91.47:35940/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-02-03 04:23:05http://200.6.91.47:47241/iOffline32-bit elf mips Mozi ext geenensp
2025-02-03 03:48:04http://200.6.91.47:47241/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-01-05 00:44:06http://200.6.91.47:52047/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-01-04 15:54:06http://200.6.91.47:52047/iOffline32-bit elf threatquery
2024-12-30 01:51:06http://200.6.91.47:44622/iOffline32-bit elf mips Mozi ext geenensp
2024-12-30 01:35:08http://200.6.91.47:44622/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-18 08:14:06http://200.6.91.47:45347/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-17 11:35:08http://200.6.91.47:45347/iOffline32-bit elf mips Mozi ext geenensp
2024-12-12 03:30:12http://200.6.91.47:54922/iOffline32-bit elf mips Mozi ext geenensp
2024-12-12 03:05:06http://200.6.91.47:54922/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-04 02:19:06http://200.6.91.47:50525/iOffline32-bit elf mips Mozi ext geenensp
2024-12-04 01:55:07http://200.6.91.47:50525/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-11-18 16:57:06http://200.6.91.47:48522/iOffline32-bit elf mips Mozi ext geenensp
2024-11-18 16:29:06http://200.6.91.47:48522/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-11-15 02:53:06http://200.6.91.47:36718/iOffline32-bit elf mips Mozi ext geenensp
2024-11-11 11:56:06http://200.6.91.47:36718/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-10-28 10:40:07http://200.6.91.47:54114/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-10-18 17:58:05http://200.6.91.47:53786/iOffline32-bit elf mips Mozi ext geenensp
2024-10-18 17:30:10http://200.6.91.47:53786/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-10-13 05:36:06http://200.6.91.47:54881/iOffline32-bit elf mips Mozi ext geenensp
2024-10-13 05:15:07http://200.6.91.47:54881/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-09-29 17:04:06http://200.6.91.47:33937/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-09-15 04:40:07http://200.6.91.47:33937/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-09-14 12:24:05http://200.6.91.47:33937/iOffline32-bit elf mips Mozi ext geenensp
2024-08-08 20:35:07http://200.6.91.47:35821/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-08-04 05:22:05http://200.6.91.47:35821/iOffline32-bit elf mips Mozi ext geenensp
2024-08-04 03:58:05http://200.6.91.47:35821/bin.shOffline32-bit elf mips Mozi ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-03-23 10:42:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2026-03-21 18:57:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2026-02-05 01:46:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2026-02-05 01:06:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-11-12 23:56:09f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-11-12 23:30:18f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-09-07 20:09:14f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-09-07 19:50:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-04-26 02:37:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-04-07 04:29:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-04-07 00:10:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-02-03 04:23:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-02-03 03:48:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-01-05 00:44:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-01-04 15:54:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-30 01:51:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-30 01:35:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-18 08:14:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-17 11:35:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-12 03:30:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-12 03:05:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-04 02:19:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-04 01:55:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-18 16:57:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-18 16:29:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-15 02:53:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-11 11:56:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-10-28 10:40:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-10-18 17:58:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-10-18 17:30:10f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-10-13 05:36:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-10-13 05:15:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-09-29 17:04:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-09-15 04:40:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-09-14 12:24:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-08-08 20:35:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-08-04 05:22:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-08-04 03:58:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf