URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: codemb.cn
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 19:15:35 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-08 09:49:16 47.76.127.217Not listedAS45102 ALIBABA-CN-NET- HKyes
2025-11-08 09:49:16 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKyes
2025-11-08 09:49:16 8.218.208.240Not listedAS45102 ALIBABA-CN-NET- HKyes
2025-04-28 03:25:20 137.175.74.208Not listedAS54600 PEG-SV- USno
2020-08-14 19:15:37 122.51.14.26Not listedAS45090 TENCENT-NET-AP- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 19:15:37http://codemb.cn/pmhyz/e87cj8t9/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 10:28:4455f8854dbcaa2832aa10f768c129ab27544b5b153c7e4ea008f7ae9444681eecdocHeodo
2020-08-15 10:00:52e3dc10847c610fb756b701eb6c9eff581d98adda60bbd1df9ca1c41f43e6710fdocHeodo
2020-08-15 09:28:080d05dd18608b5e67e89cd5c7cba41f47e7094084294b33950992871764e43321docHeodo
2020-08-15 09:12:51f8b496c0f286d5a7fccc4ede8b957465c515601307821f28b9353d38e79ad46edocHeodo
2020-08-15 08:54:0559931fc10797afb244cd5fad842662e6195c228946e63c010c8d619147c57a21docHeodo
2020-08-15 08:31:02e4755fb87595acbe2efa782aba44cec85fc8e2fc968d3e54d60b9459ed8b4c9cdocHeodo
2020-08-15 07:44:27ee97f9a6d45b17138a70dd059c12b950dc5cfd7ea2ea195a0174e656506608c9docHeodo
2020-08-15 06:50:21efaf2ad634e680575e71775d7e7081272a70e9d96a70a2da8691a0e4e95f21aedocHeodo
2020-08-15 06:18:12c12ce349d77a95a82eb81a398a26887ad0df1a06882a7542d61a090751bc2ebddocHeodo
2020-08-15 05:56:2542cd0e6beccc89544b7f23aad7d7c476b8751a76a55e1c0e054c9609e1f41283docHeodo
2020-08-15 05:37:0239305c6dbc4d4612cfc18efe4df05ca5898cd752b92635429f393159a7734448docHeodo
2020-08-15 05:06:05df46f526192787058b497745baa89076f7a146abf7904a166ff3c88913d6fe8ddocHeodo
2020-08-15 04:48:094277af4aea547eeb89b49825bfa0ae17686669afea0350b9850d3ad6ce0928b6docHeodo
2020-08-15 04:37:300d12b5e9f5f5999ef15565f91ef3a2e631ca0a35c8747a808a542b2a8d8100b2docHeodo
2020-08-15 04:08:155cf289830a79e1608f952fbb47868d1791f30a61fca435f7f76c5bd33b623451docHeodo
2020-08-15 03:35:160d3465f8f227108fdc7caadec5319a2f0b0309acaf36286e782a5dd70ba7105fdocHeodo
2020-08-15 03:01:269498d65a9d2c5a65e01e599a3d146655f1f3f647168ea647285b8f27d0e6e842docHeodo
2020-08-15 01:02:262b1defff772c7e6448125be396c10f7b34b8bbe01d902999824e216358a78338docHeodo
2020-08-15 00:42:12c1f1f9b4ea3631f3eaf9afa4e8f27d8dcfbcbce4c65a47b6ca4778a833104ec1docHeodo
2020-08-15 00:06:022282676dff6e201e68e1817f507dbb2f5ecbeb498367e7aada3916d32e89511ddocHeodo
2020-08-14 22:13:09c837fd8744bd36a0ac0a3a3f11e102063d60651777ee888c2f3f8e83c54a6483docHeodo
2020-08-14 21:48:5789b652d336e7f0a20bd1bd21b124d8ed57ce32cb67dc8b3d24e73dec89cbf848docHeodo
2020-08-14 21:37:38e8444ce3ccd2f148db30a39cc0b699662f8cf96302119a5e7f2dd0ce42a94cdbdocHeodo
2020-08-14 21:22:48025ef755f910aeb461ef36e7993d5201b78cb2aded971137274727ec619d72a1docHeodo
2020-08-14 21:02:05053bcb57b5ca7d1a79d314c8400775b718dc86231907694a9f45db73779f04afdocHeodo
2020-08-14 20:20:3318eac692518c945b0bd23be239abac9df98f3e77f39773df35ac22233f25749cdocHeodo
2020-08-14 19:58:1796b6cab1427a652a35407967a7c4f7e6bb2bd63159d8e2510793ea9b9e76093bdocHeodo
2020-08-14 19:28:58f622719824dddb15ad882647aa93a4c1ada60438b2848007a681d5dede734120docHeodo
2020-08-14 19:15:374f6aece004237fd96569464bcbf2baaa1942aa7bb35322c39a4ceea35dc8848bdocHeodo