URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: guanhengguandao.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-10 06:27:33 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-10 06:27:35 150.109.65.184Not listedAS132203 TENCENT-NET-AP-CN- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-10 06:27:35http://guanhengguandao.com/wp-admin/Overview/k0...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-11 00:52:07dbd17a31ceb56a1218533a46f1cd11f2672ed57bbd5f1f5bbe89e31e248234c1doc Heodo
2020-08-10 21:33:57bb9c6274ff65ac8ee339d712ae7f3d2b010cb74f04603840cc6017db29aaa3cadocHeodo
2020-08-10 21:19:067162b8aa0d13c1f17afe429527b6e4a0cadad96b24928b4b0729e34488edb1b8docHeodo
2020-08-10 21:06:07b12d83256eede079e638395e9f167cb3b119db33465a1da5dff9252e901c0a99doc Heodo
2020-08-10 19:34:112ce7d1abb43d1868d575ce543f8ce6d0c79ad406264308d9ae8e25cf75673e1adoc Heodo
2020-08-10 19:04:521bca827737bb9f023dde14a4f99e35a0ee029afe4140697631f7ad5212f33ed3doc Heodo
2020-08-10 15:34:53955cb4c47180d5f6d1fdb60ebac384f3b05a4d6f3f9d8c12268fc20b18a94c48doc Heodo
2020-08-10 15:13:11c82cbe522924e150ea3b677117518f7b51d4a6c084200611e1c73c35790bbfa8doc Heodo
2020-08-10 14:53:10365d24b51aae43c58665a5fca72115289aa276c62ddca2554fd016ac299ec917doc Heodo
2020-08-10 14:33:50f4a3bd5e626d53658fca1aff6371dde7f7537270eb24c5532e6a1162c7527479docHeodo
2020-08-10 14:05:34f602c49cb3a75d9e1621b6c62ecffcda74542f712afc23c222ea4460e3729985docHeodo
2020-08-10 13:47:37edcc83eab42c8192a4daa83887285b3884aacec4e95a3f6a17e6b2e3ff40213edocHeodo
2020-08-10 13:19:3632dcbf714d1e4a6e2115f5c3fca1c57d86c33af0cfb03fac9fd86e7e2940d881docHeodo
2020-08-10 12:56:571cae3e9b451b8db9905b161faec1f74423611de94a95d0a52fdd74b0fc42ad9ddoc Heodo
2020-08-10 12:37:03c5a9dbb440705a6a2b8b1b672176e61075d8b4b8261b9a395920e2cafd206b65doc Heodo
2020-08-10 12:20:58c3089aae17704c9ddcc67b476b66c0a66f756ef1dad5b90062f06ec428ee5d3fdoc Heodo
2020-08-10 11:34:262b2b4341e21f9930df58f0f4f10bd2642775d7eaba166ec686f12a411011c3a5docHeodo
2020-08-10 11:02:285358ef29b9e1c832a55bd66f19aa10501a806e97c4967f7eb9843c5f7c524c06doc Heodo
2020-08-10 10:45:49d46f43e38bebdbe21110ad2795afe0205af99046bbdafee4a60652848124c826doc Heodo
2020-08-10 10:25:18b6ff1abf41548c6b0d2f7edca8a8a7994c11e2b749cbf71190e4b94072b162f1doc Heodo
2020-08-10 10:06:06e7f4e7d8fc9a8aee85f81c21ba28897ffbff7c9d3fcee5db8cd808b6583b57c3doc Heodo
2020-08-10 09:48:284ef3be78e6d5e7488bfec47d05dcb528ae781bbfcccf27d5775eabaf583ec691doc Heodo
2020-08-10 09:22:32dc5077277cfc327ea738f49f77b8ccc791a515634d299c2c0467c065eeca0d6bdoc Heodo
2020-08-10 08:54:44ccad7d8f297ecf97b8a2c961ea884e9fd3acde7d74213ba337f42bc8213f2965doc Heodo
2020-08-10 08:26:48463df8dd11d5de674b664ecaa11298ea676da510e2deaf7d253f54b74e9e3743doc Heodo
2020-08-10 07:55:53c233780903a8882552bed316b7beda62f12cdd65ae4cb95e2021374d628ddd58doc Heodo
2020-08-10 07:32:0930dc3b0ef33388434eefb86c4ddb13f2d065c055c7ca67f3a53f3cbe8e97ffa0doc Heodo
2020-08-10 07:16:56c180d7fc70a8724382b3890f60de951570c845f4fdb6a3b4ca914ea95370684edoc Heodo
2020-08-10 06:58:51a7d1bb3b80b2591574ad055cd1f8ad3e8962244c76583b67396abe535439062edoc Heodo
2020-08-10 06:51:072478dec83d7a3a515a5b8b5dea46109b50e441ca28fbc1f0d43802c73acd1241doc Heodo
2020-08-10 06:27:35e1bf56fc0155d8a4fbbc227cf25bea3f74319628291a5c6f4ea86f482d80a275doc Heodo