URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: download.ningzhidata.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-04-17 05:39:06 UTC
Total malware sites :6
Online malware sites :0 (0%)
Offline Malware sites :6 (100%)
A record(s) observed :52

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-06-28 08:30:38 59.80.39.110Not listedAS134542 UNICOM-GUIAN- CNno
2020-06-28 08:30:37 182.118.11.119hn.kd.ny.adslNot listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:36 211.97.73.224Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:39 211.91.160.228Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:37 116.178.66.65Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:38 220.194.224.197Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:44 14.204.74.140Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:37 36.248.26.205Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:41 116.95.25.196Not listedAS4837 CHINA169-Backbone- CNno
2020-06-28 08:30:42 118.212.234.144144.234.212.118.adsl-pool.jx.chinaunicom.comNot listedAS4837 CHINA169-Backbone- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-04-17 06:09:18http://download.ningzhidata.com/download/IDG-FE...Offlineexe zbetcheckin
2020-04-17 06:07:08http://download.ningzhidata.com/download/SVMV1....Offlineexe zbetcheckin
2020-04-17 06:01:39http://download.ningzhidata.com/download/IDG-NI...Offlineexe zbetcheckin
2020-04-17 05:58:43http://download.ningzhidata.com/download/IDG-NJ...Offlineexe zbetcheckin
2020-04-17 05:57:58http://download.ningzhidata.com/download/IDG-MI...Offlineexe zbetcheckin
2020-04-17 05:39:10http://download.ningzhidata.com/download/svmins...Offlineexe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-04-20 20:09:271c8702238ef6022bfb35ca9528d5a326873c04a1a44b3e7af9d3afbead72c8f7exe Adware.Generic
2020-04-20 19:15:1463234aee514db7b7d790229690ff7226acbe20818b3fa1907bd0c53575e10812exe Adware.Generic
2020-04-20 17:42:021262ff3dded5993236ac2baa9ae4c88ab74a6563c76272bdc7fb5703bfd0fe76exe Adware.Generic
2020-04-20 17:29:26f237c1b98806191715472192f2aa2e9ee6a2f0b0fcca6559578b4663cfe73382exe Adware.Generic
2020-04-20 14:07:12c32e61dfce0588fd5399e43e1ba0f0049bf5ac7021828bb9dfce19728d6aea0eexe Adware.Generic
2020-04-20 07:33:483d4e8a60c8c5793060b8cf5ca879a2a110c4d01e932e09f21f1f02b3bfdeab33exe Adware.Generic
2020-04-20 06:50:5498939b989bb1bc9efbdd6762b3fdc470a93bd4d0b1c61fd9aac80981fd7a430bexe  
2020-04-20 06:36:0038d43321cece98557958546ffb61e8c180f957e7f75f4035c478db9f41e5429bexe Adware.Generic
2020-04-20 05:41:1035c6d7013f7accda6c6502c8ae2592c97052fe23d6366cab3fc8ec2a4034ee83exe Adware.Generic
2020-04-20 04:45:542d0a05c859a26c79af5e8c3d3c31f95d188085ebf397d9dc2fb279a054cb713dexe  
2020-04-20 03:19:207b247fa30b3d52ea640ce39b6b49f70e916f2b5eb77da04a6516b1479b1bb0a6exe Adware.Generic
2020-04-20 03:19:190e06168bb4274d3fe01456319ecdd8e94879275709b33ccc68afcf8fed31fe5bexe  
2020-04-20 02:50:2067928b79d396beb963e8b6083256c38ea2b5e29a12d4d034685599ef68bdc72fexe  
2020-04-19 00:57:242d0a05c859a26c79af5e8c3d3c31f95d188085ebf397d9dc2fb279a054cb713dexe  
2020-04-18 00:00:17b8466b4ba70344a05797914e5cfacb240fd0cd01bcf03a4511bcffa80ece145aexe  
2020-04-17 23:48:322bd6c327dc104f24200c3f0d25eaebe4b09ed2204a4842a1112d0bc4c95b2978exe Adware.Generic
2020-04-17 06:09:1677ee7b0a10f3c0ab08c1b1f88ceb0dd979e9c2fee17ac5fd14c9ce27002f6078exeGoldenSpy
2020-04-17 06:07:0741103f32f247ba744a8fbe17deac4bd26aeba323f3161e44adc35f8dd81ce4d3exeGoldenSpy
2020-04-17 06:01:38f21623311a947d8a9f2dd05c098f45c3ef12be3cbf79fb49659e5bfc1588cdfeexeGoldenSpy
2020-04-17 05:58:43c5c5e59bb18bad1427714d0007b676e658d8e08faf5a0632ed88912f5816d525exeGoldenSpy
2020-04-17 05:57:584f86175e5500be87cc95ea9fcaf565970e15a86b2aa3223f8ef8d25e72cec376exeGoldenSpy
2020-04-17 05:39:093b8761d2e19bc5185f55cc2f575bbe54a45a52fc1c8650a60f1bd13e01e24655exeGoldenSpy