URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 94.179.174.30
Firstseen:2022-05-04 12:51:03 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-05-04 12:51:07 94.179.174.3030-174-179-94.pool.ukrtel.netNot listedAS6849 UKRTELNET- UAyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-08-21 09:04:05http://94.179.174.30:55339/Mozi.mOfflineMozi ext Gandylyan1
2022-08-08 08:21:05http://94.179.174.30:53052/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-06-19 19:45:05http://94.179.174.30:48668/iOffline32-bit elf mips Mozi ext geenensp
2022-06-19 19:28:04http://94.179.174.30:48668/bin.shOffline32-bit elf mips Mozi ext geenensp
2022-06-13 04:35:04http://94.179.174.30:56362/iOffline32-bit elf mips Mozi ext geenensp
2022-06-13 04:08:04http://94.179.174.30:56362/bin.shOffline32-bit elf mips Mozi ext geenensp
2022-06-11 22:20:04http://94.179.174.30:56362/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-06-08 01:03:04http://94.179.174.30:43770/iOffline32-bit elf mips Mozi ext geenensp
2022-06-01 12:08:04http://94.179.174.30:56474/bin.shOffline32-bit elf mips Mozi ext geenensp
2022-05-30 04:40:40http://94.179.174.30:33415/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-05-21 07:06:04http://94.179.174.30:44942/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-05-13 13:51:05http://94.179.174.30:49386/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-05-09 18:06:05http://94.179.174.30:38871/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2022-05-04 12:51:07http://94.179.174.30:59903/Mozi.mOfflineelf Mozi ext lrz_urlhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-08-23 21:34:3436629f0e810abf7800ca382e6e643b2e3870cb941737d17bb5feb65624b75cacelf  
2022-08-21 09:04:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-08-08 08:21:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-19 19:45:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-19 19:28:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-13 04:35:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-13 04:08:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-11 22:20:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-08 01:03:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-06-01 12:08:034293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-05-30 03:51:06a5cae1a63747e60ed69d3a522d889beda4514014f06c7a33868eef217c45ccdcelf  
2022-05-30 01:08:0775bcb3a3bd2f15e32ae70119ce34aad4d2b72acedc1e79a99b2d8c08293fc8bcelf  
2022-05-30 00:52:10af413f5f22f2245f433736c3f2d296a990188ec83d741a1646d9fb96e77a5843elf  
2022-05-29 23:50:0929ae75e97b319fd84aaac3b5a9a3ee7dd9d9d54b67d48502c0fb7b355a206dbdelf  
2022-05-29 23:13:041509cb4a59087be095de34a01f19e292933a3133bc63de252555d0188d0710bdelf  
2022-05-29 22:48:093a63d3b7432d806cf40fe764265219243b397b0748d02f6093f988c161a51d31elf  
2022-05-29 21:58:04fac304cd1e585eb8ff37f87dd9b232edde171204a9870257dcee1bc0deb4717felf  
2022-05-29 21:20:094293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-05-21 07:06:044293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-05-13 13:51:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-05-09 18:06:054293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2022-05-04 12:51:064293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi