URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 45.248.194.48
Firstseen:2021-02-14 03:03:02 UTC
Total malware sites :42
Online malware sites :0 (0%)
Offline Malware sites :42 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-14 03:03:04 45.248.194.48Not listedAS135259 SKYSIKAR-AS- INyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-22 00:37:05http://45.248.194.48:51128/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-08-19 13:08:08http://45.248.194.48:49780/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-08-17 13:13:16http://45.248.194.48:49780/iOffline32-bit elf mips Mozi ext geenensp
2021-08-15 00:31:05http://45.248.194.48:49780/mozi.mOffline tammeto
2021-08-13 10:37:07http://45.248.194.48:41317/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-08-07 08:21:16http://45.248.194.48:33918/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-08-05 07:44:04http://45.248.194.48:33918/mozi.aOffline tammeto
2021-08-03 13:52:05http://45.248.194.48:52859/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-31 15:36:09http://45.248.194.48:52859/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-07-30 05:00:11http://45.248.194.48:52859/iOffline32-bit elf mips Mozi ext geenensp
2021-07-30 04:27:12http://45.248.194.48:52859/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-07-23 15:04:04http://45.248.194.48:48298/Mozi.mOfflineMozi ext Gandylyan1
2021-07-20 19:02:19http://45.248.194.48:48298/iOffline32-bit elf mips Mozi ext geenensp
2021-07-20 02:03:10http://45.248.194.48:52061/iOffline32-bit elf mips Mozi ext geenensp
2021-07-20 01:34:08http://45.248.194.48:52061/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-07-16 11:23:05http://45.248.194.48:52061/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-15 17:38:12http://45.248.194.48:60522/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-07-10 21:23:18http://45.248.194.48:60522/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-07-02 17:39:05http://45.248.194.48:40520/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-28 18:38:10http://45.248.194.48:60350/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-25 23:36:04http://45.248.194.48:37856/mozi.mOffline tammeto
2021-06-22 01:08:21http://45.248.194.48:37562/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-11 09:38:19http://45.248.194.48:57699/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-08 13:09:12http://45.248.194.48:46677/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-06-04 17:11:21http://45.248.194.48:48575/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-25 01:25:15http://45.248.194.48:50391/iOffline32-bit elf mips Mozi ext geenensp
2021-05-25 01:03:12http://45.248.194.48:50391/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-05-23 05:24:15http://45.248.194.48:50391/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-05-22 07:24:11http://45.248.194.48:50391/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-05-06 18:55:07http://45.248.194.48:47553/Mozi.aOfflineelf Mozi ext lrz_urlhaus
2021-04-21 19:35:06http://45.248.194.48:47553/iOffline32-bit elf mips Mozi ext geenensp
2021-04-21 19:08:08http://45.248.194.48:47553/bin.shOffline32-bit elf mips Mozi ext geenensp
2021-04-15 03:03:08http://45.248.194.48:47553/Mozi.mOfflineMozi ext Gandylyan1
2021-04-13 12:56:08http://45.248.194.48:34242/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-04-06 15:29:09http://45.248.194.48:54030/iOffline32-bit elf mips Mozi ext geenensp
2021-04-01 06:03:08http://45.248.194.48:54030/Mozi.mOfflineMozi ext Gandylyan1
2021-03-23 11:43:09http://45.248.194.48:52096/iOffline32-bit elf mips geenensp
2021-03-21 03:05:07http://45.248.194.48:52096/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-03-16 09:29:04http://45.248.194.48:39561/iOffline32-bit elf mips geenensp
2021-03-16 09:02:06http://45.248.194.48:39561/bin.shOffline32-bit elf mips geenensp
2021-03-05 13:36:09http://45.248.194.48:50702/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-02-14 03:03:04http://45.248.194.48:55704/Mozi.mOfflineMozi ext Gandylyan1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-22 00:37:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-19 13:08:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-17 13:13:16c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-15 00:31:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-13 10:37:07c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-07 08:21:16c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-05 07:44:04c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-08-03 13:52:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-31 15:36:09c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-30 05:00:11c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-30 04:27:12c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-23 15:04:04c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-20 19:02:19c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-20 02:03:10c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-20 01:34:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-16 11:23:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-15 17:38:12c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-10 21:23:18c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-07-02 17:39:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-28 18:38:10c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-25 23:36:04c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-22 01:08:21c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-11 09:38:19c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-08 13:09:12c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-06-04 17:11:21c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-05-25 01:25:15c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-05-25 01:03:12c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-05-23 05:24:15c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-05-22 07:24:11c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-05-06 18:55:07c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-21 19:35:06c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-21 19:08:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-15 03:03:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-13 12:56:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-06 15:29:09c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-04-01 06:03:08c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-03-23 11:43:09c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-03-21 03:05:07c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-03-16 09:29:04c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-03-16 09:02:05c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-03-05 13:36:09c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf 
2021-02-14 03:03:03c672798dca67f796972b42ad0c89e25d589d2e70eb41892d26adbb6a79f63887elf