URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 5daofeng.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 18:48:11 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 15:27:03 129.227.60.150Not listedAS21859 ZEN-ECN- HKyes
2020-08-18 07:53:51 122.114.118.92Not listedAS4837 CHINA169-Backbone- CNno
2020-08-14 18:48:20 122.114.30.201Not listedAS4837 CHINA169-Backbone- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-17 20:47:35http://5daofeng.com/ddokb/9gv0eb0v06/common-rq9...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-08-14 18:48:20http://5daofeng.com/ddokb/9gv0eb0v06/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-18 06:19:3695949b60f4f62597acb4c3f6aef2a3fb60c59f24eb80fc37c3491342432624dbdocHeodo
2020-08-18 00:16:39fda68ab66880ec8154bdc1a9595ec1f34fbf612ed3e9c9d13c7424ca0df1a5f4docHeodo
2020-08-17 23:15:13b2641f58611eeb5d42675a9aa68ae865ed1136d543e7ddafcaaec3f5d6429687docHeodo
2020-08-17 22:48:43818e631aced6291b95a641f2eace827a0b9f2ee202b364a3a09378bc52401e03docHeodo
2020-08-17 21:05:3847b3fee25d6683706ef483aa30125377edf7bb21dd17638c81c52fa7e64966f7docHeodo
2020-08-17 20:47:3536657a2c319a75fb01062c12c134050249024acdfc8e5d32c6f02e6f783d2e97docHeodo
2020-08-15 10:28:5355f8854dbcaa2832aa10f768c129ab27544b5b153c7e4ea008f7ae9444681eecdocHeodo
2020-08-15 10:00:17e3dc10847c610fb756b701eb6c9eff581d98adda60bbd1df9ca1c41f43e6710fdocHeodo
2020-08-15 09:30:320d05dd18608b5e67e89cd5c7cba41f47e7094084294b33950992871764e43321docHeodo
2020-08-15 09:12:52f8b496c0f286d5a7fccc4ede8b957465c515601307821f28b9353d38e79ad46edocHeodo
2020-08-15 08:53:2559931fc10797afb244cd5fad842662e6195c228946e63c010c8d619147c57a21docHeodo
2020-08-15 08:31:05e4755fb87595acbe2efa782aba44cec85fc8e2fc968d3e54d60b9459ed8b4c9cdocHeodo
2020-08-15 07:44:23ee97f9a6d45b17138a70dd059c12b950dc5cfd7ea2ea195a0174e656506608c9docHeodo
2020-08-15 06:50:21efaf2ad634e680575e71775d7e7081272a70e9d96a70a2da8691a0e4e95f21aedocHeodo
2020-08-15 06:18:10c12ce349d77a95a82eb81a398a26887ad0df1a06882a7542d61a090751bc2ebddocHeodo
2020-08-15 05:55:1642cd0e6beccc89544b7f23aad7d7c476b8751a76a55e1c0e054c9609e1f41283docHeodo
2020-08-15 05:37:1339305c6dbc4d4612cfc18efe4df05ca5898cd752b92635429f393159a7734448docHeodo
2020-08-15 05:05:329577843fa24ed4ebc24ae7e8cb7c73c1f2dad112ebd0f9eaa65cb9512750c4c5docHeodo
2020-08-15 04:47:584277af4aea547eeb89b49825bfa0ae17686669afea0350b9850d3ad6ce0928b6docHeodo
2020-08-15 04:37:210d12b5e9f5f5999ef15565f91ef3a2e631ca0a35c8747a808a542b2a8d8100b2docHeodo
2020-08-15 04:05:175cf289830a79e1608f952fbb47868d1791f30a61fca435f7f76c5bd33b623451docHeodo
2020-08-15 03:36:140d3465f8f227108fdc7caadec5319a2f0b0309acaf36286e782a5dd70ba7105fdocHeodo
2020-08-15 03:01:279498d65a9d2c5a65e01e599a3d146655f1f3f647168ea647285b8f27d0e6e842docHeodo
2020-08-15 02:35:332052c0368adb81017535da7aa5dae9846fb5cdd1ad7b3dc089d9c2b7152608bbdocHeodo
2020-08-15 01:02:3202e13d73ecd528b2cf8e528ad97ffd6dae1b2e3e6e443fe37a6877919d9de1c1docHeodo
2020-08-15 00:42:09c1f1f9b4ea3631f3eaf9afa4e8f27d8dcfbcbce4c65a47b6ca4778a833104ec1docHeodo
2020-08-15 00:05:552282676dff6e201e68e1817f507dbb2f5ecbeb498367e7aada3916d32e89511ddocHeodo
2020-08-14 22:30:4275a72a41ab01b2732ce7d72f8099772cfa9eeffd6de415ac468e8f979c38d466docHeodo
2020-08-14 22:13:04c837fd8744bd36a0ac0a3a3f11e102063d60651777ee888c2f3f8e83c54a6483docHeodo
2020-08-14 21:48:50f868e00a4f8d182360784894248a210bb56e707c5a830c89485b157ff1a72402docHeodo
2020-08-14 21:37:36e8444ce3ccd2f148db30a39cc0b699662f8cf96302119a5e7f2dd0ce42a94cdbdocHeodo
2020-08-14 21:24:52025ef755f910aeb461ef36e7993d5201b78cb2aded971137274727ec619d72a1docHeodo
2020-08-14 20:57:45739eab0c4f294e4ba8fff9f685d6ab8303b5e4ab1caf9482d846afec5aeab316docHeodo
2020-08-14 20:19:394a4029474014846a17463695f4af7917f8fc4fd250f36e96bcc1964d4bce93d0docHeodo
2020-08-14 20:06:120038e0ca501ee60207c503e64f1fc43f5d2e98b5db85c9c24b8dcbdecc2caee5docHeodo
2020-08-14 19:28:20b118fd8dcf97cf570ff2c1e3640e17e7fe7bd4f73b7ec79f4aac13d6b1fcca19docHeodo
2020-08-14 19:01:3970feb9efa08111fe7c484ceb84655548d7cb35980e388a8832207a68bc29fc58docHeodo
2020-08-14 18:48:1587257c3d34ffa05f4d177c92995d8a973b2ebcdcf8ff92e46c85fc42dbef7724docHeodo