URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 211.14.236.80
Firstseen:2020-10-24 03:04:06 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-24 03:04:10 211.14.236.80d-211-14-236-080.ftth.katch.ne.jpNot listedAS59108 MAINT-JPNIC- JPyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-04-17 08:50:06http://211.14.236.80:59844/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-01-12 00:06:06http://211.14.236.80:42136/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-01-04 01:50:05http://211.14.236.80:52124/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-12-30 17:06:15http://211.14.236.80:58876/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-12-25 09:50:06http://211.14.236.80:45953/iOffline32-bit elf mips Mozi ext geenensp
2021-12-25 08:19:05http://211.14.236.80:45953/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-12-21 15:21:10http://211.14.236.80:55131/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-12-20 08:51:12http://211.14.236.80:44515/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-09-13 14:52:05http://211.14.236.80:35435/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-27 00:07:17http://211.14.236.80:58711/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-12-04 20:50:06http://211.14.236.80:48605/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-19 21:50:06http://211.14.236.80:46464/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-07 12:06:09http://211.14.236.80:49209/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-06 19:35:05http://211.14.236.80:56009/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-01 16:06:05http://211.14.236.80:45645/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-10-30 07:51:06http://211.14.236.80:51291/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2020-10-28 04:35:05http://211.14.236.80:37419/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-10-24 03:04:10http://211.14.236.80:51573/Mozi.mOfflineMozi ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-04-17 08:50:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2022-01-12 00:06:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2022-01-04 01:50:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-12-30 17:06:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-12-25 09:50:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-12-25 08:19:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-12-21 15:21:10e792df1b95a5bf6ca1ef0a2436026a7252d4692d49b3b32ec49bddf876f040ccelf  
2021-12-20 08:51:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-09-13 14:52:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-07-27 00:07:179e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-12-04 20:50:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-19 21:50:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-07 12:25:17f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-06 19:35:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-11-01 16:06:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-10-30 07:51:069e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2020-10-28 04:35:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2020-10-24 03:04:09cb03a733ede34b0866751ad4267a079716e16e85aa0c12d2c1479c8a0fddb1f4elf