URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 95.6.8.14
Firstseen:2019-10-09 15:40:21 UTC
Total malware sites :12
Online malware sites :0 (0%)
Offline Malware sites :12 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-10-09 15:40:28 95.6.8.1495.6.8.14.static.ttnet.com.trNot listedAS9121 TTNet- TRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-08 21:46:32http://95.6.8.14:40334/iOffline32-bit elf mips Mozi ext geenensp
2020-11-29 14:31:14http://95.6.8.14:33972/iOffline32-bit elf mips geenensp
2020-11-29 14:24:06http://95.6.8.14:33972/bin.shOffline32-bit elf mips geenensp
2020-11-25 09:07:08http://95.6.8.14:51937/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-21 13:51:05http://95.6.8.14:50951/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-18 12:52:05http://95.6.8.14:51875/iOffline32-bit elf mips geenensp
2020-11-15 12:03:05http://95.6.8.14:56697/Mozi.mOfflineMozi ext Gandylyan1
2020-11-13 17:50:06http://95.6.8.14:49567/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-11-13 01:21:06http://95.6.8.14:42738/Mozi.mOfflineelf Mozi ext lrz_urlhaus
2020-09-23 22:42:04http://95.6.8.14:47679/iOffline32-bit elf mips geenensp
2020-09-23 22:09:05http://95.6.8.14:47679/bin.shOffline32-bit elf mips geenensp
2019-10-09 15:40:28http://95.6.8.14:53459/.iOfflinehajime Petras_Simeon

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-08 21:57:034293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7elfMozi
2020-11-29 14:31:14b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-29 14:24:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-25 09:07:08b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-21 13:51:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-18 12:52:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-15 12:03:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-13 17:50:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-11-13 01:21:06b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-09-23 22:42:04b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2020-09-23 22:09:05b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605elf  
2019-10-25 14:44:20e9e14459d8b31629179bb9f59bd0e6b4f301180264e1566f917de995e61efb4celf  
2019-10-23 13:05:42eb9ff15855c891d83e0f23437859345385bc572b662d715123c2db77ac3cdd14elf  
2019-10-18 10:51:080f78a75dcadb451fd1f829eee902e20da6854e3888be563d42ba0ad8e9f60527elf  
2019-10-18 05:33:3086ae82238d0e426e259104ec2feb117e7432e637e9d19ca3daa398a5f17ba233elf  
2019-10-09 15:40:27020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0elfHajime