URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-07-04 07:32:58 | 114.66.48.136 | Not listed | AS136188 CHINATELECOM-ZHEJIANG-NINGBO-IDC | CN | yes | |
| 2025-05-27 12:46:01 | 115.231.176.150 | Not listed | AS136188 CHINATELECOM-ZHEJIANG-NINGBO-IDC | CN | no | |
| 2025-05-13 11:52:46 | 120.26.141.229 | Not listed | AS37963 ALIBABA-CN-NET | CN | no | |
| 2025-05-19 20:19:06 | 113.142.186.1 | Not listed | AS134768 CHINANET-SHAANXI-CLOUD-BASE | CN | no | |
| 2025-05-19 20:19:10 | 60.6.0.136 | hebei.6.60.in-addr.arpa | Not listed | AS4837 CHINA169-Backbone | CN | no |
| 2025-05-19 20:19:10 | 49.119.113.4 | Not listed | AS4134 CHINANET-BACKBONE | CN | no | |
| 2025-05-19 20:19:05 | 183.61.243.6 | Not listed | AS4134 CHINANET-BACKBONE | CN | no | |
| 2025-05-19 20:19:06 | 183.61.168.6 | Not listed | AS4134 CHINANET-BACKBONE | CN | no | |
| 2025-05-19 20:19:12 | 125.89.169.9 | 9.169.89.125.broad.mz.gd.dynamic.163data.com.cn | Not listed | AS4134 CHINANET-BACKBONE | CN | no |
| 2025-05-19 20:19:12 | 116.153.82.197 | Not listed | AS4837 CHINA169-Backbone | CN | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2020-10-19 15:05:09 | https://bloglg.com/indexing/LLC/V8rNH9SdKLAmF/ | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
CN