URLhaus Database
You are currently viewing the URLhaus database entry for http://182.116.50.112:50970/i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.
Database Entry
You are viewing an historical record
While the URL referenced below may have been used by threat actors to spread malware, the URL seems to be clean now and is not serving any malware payload at the moment. Hence this URL / website no longer represents a threat. As a result, URLhaus considers this record as historical. This database entry has not impact on the reputation of the website / domain nor does it appear in any of our blocklists.
| ID: | 3904726 |
|---|---|
| URL: | http://182.116.50.112:50970/i |
| URL Status: | Offline |
| Host: | 182.116.50.112 |
| Date added: | 2026-08-17 06:17:06 UTC |
| Last online: | 2026-08-18 01:XX:XX UTC |
| Threat: | |
| Reporter: | |
| Abuse complaint sent (?): | Yes (2026-08-17 06:18:16 UTC to hqs-ipabuse{at}chinaunicom[dot]cn) |
| Takedown time: | 19 hours, 33 minutes |
| Tags: | Mozi |
Payload delivery
The table below documents all payloads that URLhaus retrieved from this particular URL.
| Firstseen | Filename | File Type | Payload (SHA256) | VT | Bazaar | Signature |
|---|---|---|---|---|---|---|
| 2026-08-17 | n/a | elf | 4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7 | n/a | Mozi |