URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-11-09 09:32:15 | 154.89.237.71 | Not listed | AS139880 OWGELS-AS-AP | SC | yes | |
| 2020-01-08 12:29:53 | 150.138.249.207 | Not listed | AS58540 CHINATELECOM-SHANDONG-JINAN-IDC | CN | no | |
| 2019-10-12 07:21:12 | 150.138.249.209 | Not listed | AS58540 CHINATELECOM-SHANDONG-JINAN-IDC | CN | no | |
| 2019-05-25 01:42:17 | 150.138.249.206 | Not listed | AS58540 CHINATELECOM-SHANDONG-JINAN-IDC | CN | no | |
| 2019-09-21 08:40:43 | 106.13.21.68 | SBL400657 | AS38365 Baidu | CN | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2019-05-27 20:44:08 | http://cuijunxing.cn/wp-content/opuxfo4w52dxan_... | Offline | doc emotet | |
| 2019-05-25 01:42:17 | http://cuijunxing.cn/wp-content/FILE/XwwkhYgxtW... | Offline | doc emotet |
The table below shows recent payloads delivery by this host.
SC
CN