URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 91.225.163.226
Firstseen:2021-11-22 03:43:03 UTC
Total malware sites :57
Online malware sites :2 (4%)
Offline Malware sites :55 (96%)
Newest active malware site :2026-04-25 12:47:07 UTC
Oldest active malware site :2026-04-25 12:45:09 UTC (Age: 2 days, 1 hours, 9 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-11-22 03:43:04 91.225.163.226Not listedAS56400 ASSPDChernega- UAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-04-25 12:47:07http://91.225.163.226:45102/iOnline adliwahid
2026-04-25 12:45:09http://91.225.163.226:45102/bin.shOnline adliwahid
2026-04-15 04:10:06http://91.225.163.226:39631/iOffline adliwahid
2025-10-09 20:36:12http://91.225.163.226:53118/iOffline32-bit elf mips Mozi ext geenensp
2025-10-09 20:28:16http://91.225.163.226:53118/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-07-01 06:37:05http://91.225.163.226:58186/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-06-30 21:09:09http://91.225.163.226:58186/iOffline32-bit elf mips Mozi ext geenensp
2025-05-28 08:44:24http://91.225.163.226:33267/bin.shOffline32-bit elf mips Mozi ext geenensp
2025-04-25 19:38:12http://91.225.163.226:49786/iOffline32-bit elf mips Mozi ext geenensp
2025-04-25 19:13:04http://91.225.163.226:49786/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-26 20:03:04http://91.225.163.226:42667/iOffline32-bit elf mips Mozi ext geenensp
2024-12-26 19:40:07http://91.225.163.226:42667/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-22 09:03:05http://91.225.163.226:47547/Mozi.mOfflineMozi ext Gandylyan1
2024-12-19 02:36:04http://91.225.163.226:47547/iOffline32-bit elf mips Mozi ext geenensp
2024-12-19 02:09:06http://91.225.163.226:47547/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-15 02:15:08http://91.225.163.226:37007/iOffline32-bit elf mips Mozi ext geenensp
2024-12-15 01:58:05http://91.225.163.226:37007/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-12 04:07:05http://91.225.163.226:43632/iOffline32-bit elf mips Mozi ext geenensp
2024-12-12 03:36:05http://91.225.163.226:43632/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-07 20:35:10http://91.225.163.226:39949/iOffline32-bit elf mips Mozi ext geenensp
2024-12-07 20:10:08http://91.225.163.226:39949/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-12-04 10:49:05http://91.225.163.226:41450/iOffline32-bit elf mips Mozi ext geenensp
2024-12-04 10:23:04http://91.225.163.226:41450/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-11-27 19:46:07http://91.225.163.226:57749/iOffline32-bit elf mips Mozi ext geenensp
2024-11-27 08:18:06http://91.225.163.226:57749/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-09-18 01:22:04http://91.225.163.226:33726/iOffline32-bit elf mips Mozi ext geenensp
2024-09-18 00:59:05http://91.225.163.226:33726/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-08-15 13:29:04http://91.225.163.226:35713/iOffline32-bit elf mips Mozi ext geenensp
2024-08-15 13:07:04http://91.225.163.226:35713/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-07-31 21:35:05http://91.225.163.226:55181/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-07-31 02:26:05http://91.225.163.226:55181/iOffline32-bit elf mips Mozi ext geenensp
2024-07-30 11:25:06http://91.225.163.226:55181/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-07-27 22:43:05http://91.225.163.226:48712/iOffline32-bit elf mips Mozi ext geenensp
2024-07-27 22:15:05http://91.225.163.226:48712/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-06-02 17:34:07http://91.225.163.226:45204/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-05-19 08:05:08http://91.225.163.226:55695/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-05-19 00:53:05http://91.225.163.226:55695/iOffline32-bit elf mips Mozi ext geenensp
2024-05-19 00:25:08http://91.225.163.226:55695/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-03-04 01:46:05http://91.225.163.226:57822/iOffline32-bit elf mips Mozi ext geenensp
2024-03-04 01:26:04http://91.225.163.226:57822/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-01-19 06:19:05http://91.225.163.226:38209/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2024-01-14 06:02:06http://91.225.163.226:33640/bin.shOffline32-bit elf mips Mozi ext geenensp
2024-01-02 14:19:06http://91.225.163.226:50064/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2023-12-30 03:32:05http://91.225.163.226:50064/bin.shOffline32-bit elf mips Mozi ext geenensp
2023-12-27 22:34:05http://91.225.163.226:55851/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2023-09-30 01:19:05http://91.225.163.226:33584/iOffline32-bit elf mips Mozi ext geenensp
2023-09-30 00:41:05http://91.225.163.226:33584/bin.shOffline32-bit elf mips Mozi ext geenensp
2023-04-04 10:50:16http://91.225.163.226:56661/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2023-04-01 02:43:18http://91.225.163.226:56661/iOffline32-bit elf mips Mozi ext geenensp
2023-04-01 02:17:21http://91.225.163.226:56661/bin.shOffline32-bit elf mips Mozi ext geenensp
2023-03-28 05:35:22http://91.225.163.226:60813/Mozi.mOfflineelf mirai ext Mozi ext lrz_urlhaus
2023-03-28 05:20:27http://91.225.163.226:60813/iOffline32-bit elf mips mirai ext Mozi ext geenensp
2023-03-28 04:57:12http://91.225.163.226:60813/bin.shOffline32-bit elf mips mirai ext Mozi ext geenensp
2023-03-15 04:51:14http://91.225.163.226:50315/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-11-23 21:09:10http://91.225.163.226:34303/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2021-11-22 04:09:04http://91.225.163.226:34303/iOffline32-bit elf mips Mozi ext geenensp
2021-11-22 03:43:04http://91.225.163.226:34303/bin.shOffline32-bit elf mips Mozi ext geenensp

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-04-25 12:47:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2026-04-25 12:45:09f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2026-04-15 04:10:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-10-09 20:36:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-10-09 20:28:16f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-07-01 06:37:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-06-30 21:09:09f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-05-28 08:44:24f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-04-25 19:38:12f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2025-04-25 19:13:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-26 20:03:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-26 19:40:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-22 09:03:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-19 02:36:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-19 02:09:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-15 02:15:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-15 01:58:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-12 04:07:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-12 03:36:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-07 20:35:10f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-07 20:10:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-04 10:49:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-12-04 10:23:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-27 19:46:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-11-27 08:18:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-09-18 01:22:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-09-18 00:59:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-08-15 13:29:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-08-15 13:07:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-07-31 21:35:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-07-31 02:26:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-07-30 11:25:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-07-27 22:43:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-07-27 22:15:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-06-02 17:34:07f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-05-19 08:05:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-05-19 00:53:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-05-19 00:25:08f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-03-04 01:46:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-03-04 01:26:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-01-19 06:19:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-01-14 06:02:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2024-01-02 14:19:06f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-12-30 03:32:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-12-27 22:34:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-09-30 01:19:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-09-30 00:41:05f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-04-04 10:50:15f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-04-01 02:43:18f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-04-01 02:17:21f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2023-03-28 05:35:229e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2023-03-28 05:20:279e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2023-03-28 04:57:129e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600elfMirai
2023-03-15 04:51:14f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-11-23 21:09:10f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-11-22 04:09:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf 
2021-11-22 03:43:04f6c97b1e2ed02578ca1066c8235ba4f991e645f89012406c639dbccc6582eec8elf