URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 203.99.190.45
Firstseen:2021-01-17 08:53:02 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-01-17 08:53:05 203.99.190.45Not listedAS17557 PKTELECOM-AS-PK- PKyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-11-14 02:36:06http://203.99.190.45:55528/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-11-06 00:41:05http://203.99.190.45:39455/iOffline32-bit elf mips Mozi ext geenensp
2021-11-02 13:06:07http://203.99.190.45:35018/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-10-27 01:20:07http://203.99.190.45:60772/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-10-15 00:20:18http://203.99.190.45:56544/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-10-12 19:23:06http://203.99.190.45:40458/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-13 16:51:16http://203.99.190.45:39849/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-10 10:05:19http://203.99.190.45:51034/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-19 18:24:15http://203.99.190.45:41077/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-06-19 18:15:13http://203.99.190.45:41077/iOffline32-bit elf mips Mozi ext geenensp
2021-06-19 18:01:18http://203.99.190.45:41077/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-06-13 11:08:06http://203.99.190.45:41602/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-27 09:18:09http://203.99.190.45:34406/iOffline32-bit elf mips Mozi ext geenensp
2021-04-24 08:39:06http://203.99.190.45:34406/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-04-23 08:53:07http://203.99.190.45:34406/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-03-09 21:05:01http://203.99.190.45:47547/Mozi.mOfflineMozi ext Gandylyan1
2021-02-28 00:21:08http://203.99.190.45:57372/iOffline32-bit elf mips Mozi ext geenensp
2021-02-26 20:50:07http://203.99.190.45:46429/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-02-26 18:11:06http://203.99.190.45:46429/iOffline32-bit elf mips Mozi ext geenensp
2021-02-23 00:10:09http://203.99.190.45:52582/bin.shOffline32-bit elf mips geenensp
2021-02-19 12:05:08http://203.99.190.45:60077/Mozi.aOffline lrz_urlhaus
2021-02-05 07:24:06http://203.99.190.45:51627/bin.shOffline32-bit elf mips geenensp
2021-01-17 08:53:05http://203.99.190.45:38877/Mozi.mOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-11-14 02:36:062e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-11-06 00:41:052e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-11-02 13:06:072e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-10-27 01:20:072e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-10-15 00:20:182e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-10-12 19:23:062e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-09-13 16:51:164293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-09-10 10:05:194293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-06-19 18:24:152e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-06-19 18:15:132e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-06-19 18:01:182e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-06-13 11:08:062e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-04-27 09:18:094293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-04-24 08:39:064293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-04-23 08:53:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-03-09 21:44:332e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-02-28 00:21:084293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-02-26 20:50:074293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-02-26 18:11:064293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2021-02-23 00:10:092e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-02-19 12:05:082e4506802aedea2e6d53910dfb296323be6620ac08c4b799a879eace5923a7b6elf  
2021-02-05 07:24:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2021-01-17 08:53:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi