URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: erp.zilymax.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-27 10:41:27 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-07-29 13:02:57 91.195.240.94Not listedAS47846 SEDO-AS- DEno
2021-01-27 10:41:31 208.91.199.159bh-6.webhostbox.netNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-27 10:41:31https://erp.zilymax.com/fpx0m0.zipOfflinedll Dridex ext reecdeep

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-04-05 17:58:18646c1bbf97d3cf9404b98f92db5c00ab2826b36e21abf8494cffce534e261d8edll Dridex
2021-03-06 03:18:09b0dbd2b0c2f3fe77b936c0087d0e83c305b21dcc4a43cd5dd0c45909c0e98d0edll Dridex
2021-02-10 11:29:40e7ebb18c440d2d07e871e4ad27adb1d67ab0da8ba518ca4b4ff6401ce80b5b89dll Dridex
2021-01-28 15:42:02d38482b2ee3862fb7d2823365820cad52050abb419dae03bde2cf75f5af607f6dll Dridex
2021-01-28 06:42:377a200360163701a899ef12510b1bfb5a88bb904800e8cf8c687ca2a5a36247dddll Dridex
2021-01-27 20:37:57b6669b0677186d99b92663c86ac5c035884271e4fa76aaa9fa054dcc3d13969cdll Dridex
2021-01-27 18:16:04cf9638eb6d3bc3bd78b17dc84a4d78dd79586e48ed78770f8f50e1cd67deca08dll Dridex
2021-01-27 16:43:221aebe4e7d4af56d65b83ccda8db82cf539970862513554a01812fcb6dc085b68dllDridex
2021-01-27 16:15:18e58605284b9af2bfe1f5d32ffeb2a93d6e610001ed43fe6db62e8668254d1061dllDridex
2021-01-27 15:24:04ee0d0cdb50a25529043244c035bafe10936194d268ebcce2cd55387e3491ba5ddllDridex
2021-01-27 13:26:55656e8cfb9d183adf792ed933c5c177190f10064cbff62090977f2174cce9df0ddllDridex
2021-01-27 12:55:5815144d693b83175b6dbf9e9468a33660aa6ab1f29a2650c945993af8031779c6dllDridex
2021-01-27 12:35:525156f1647dabebf075ad3f98f12f34d30df1bac046407f014349ded1a406a0ebdll Dridex
2021-01-27 11:22:56b35b57fbcd696d157001d60ae06b778e0a8c08a02f8d2812c701dc8c82b0cd99dllDridex
2021-01-27 10:41:3024a58167e594184da27ab543258bf883decabf055099a2c786295596a8a38b08dllDridex