URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: juhuanguo.cn
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-22 12:47:03 UTC
Total malware sites :1
A record(s) observed :23

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-01 07:10:54 66.203.146.29Not listedAS59371 DNC-AS- HKyes
2025-09-24 05:34:48 182.16.54.154Not listedAS45753 NETSEC-HK- HKno
2025-09-27 00:13:36 148.66.10.190Not listedAS45753 NETSEC-HK- HKno
2025-08-27 21:41:42 148.66.10.189Not listedAS45753 NETSEC-HK- HKno
2025-08-19 16:40:54 148.66.10.188Not listedAS45753 NETSEC-HK- HKno
2025-08-06 08:33:06 182.16.54.158Not listedAS45753 NETSEC-HK- HKno
2025-08-01 10:07:21 148.66.10.187Not listedAS45753 NETSEC-HK- HKno
2025-07-16 22:36:32 206.238.198.16Not listedAS399077 TERAEXCH- SGno
2025-07-02 02:39:24 206.238.198.102Not listedAS399077 TERAEXCH- SGno
2025-06-04 04:09:53 154.82.93.122Not listedAS399077 TERAEXCH- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-22 12:47:16http://juhuanguo.cn/wp-admin/28JF9MR2FbrMmxlgNT...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-25 00:27:26768f3c029cc79ae21d7c732487da93f0e8c7d19a83737f9ce7e107e3adc9054cdocHeodo
2020-12-23 03:57:26c80244df2388e37d8c799e9968c52c9ad8c72b789ad85a2a91c35f8c28b0afd3docHeodo
2020-12-23 03:32:484eba0fea9764ce2f90ad0ab87a752c374f7f33295336278b98cea9f8cf47255fdocHeodo
2020-12-23 03:12:46ef1b1013a1aee1aea1889ea4f3f736bac21dca5f8d940f13dbd2c332a8c8ac69docHeodo
2020-12-23 02:54:584640454cfd6ef0ed4ed3784c186840f5eae9bb870b37064a6f5ee53f245c325adocHeodo
2020-12-23 02:37:49ba96b09e7eeac72b4363f7b0749f36b0f3b68ecb4b3c40462d0f9d426b4cb483docHeodo
2020-12-23 02:11:3064df2f4241becefb0876d62be5908b4d62620e2aeb97828cb2819d952d106f11docHeodo
2020-12-23 01:57:53e56e47b889fb43e8b9f183ee7abca3a349cede2826008e189de20df4b7bb481cdocHeodo
2020-12-23 01:39:469a8b914d6bb8ae09a04b32fc897fdb9a9ffc073975b436b031ac837b7eeefb0bdocHeodo
2020-12-23 00:42:3547a492a3a0bfd3d8e0e6c5b72d0594fc8f387d657c457da34d5b7c097f8ab9dedocHeodo
2020-12-23 00:16:31d4b572062438c3b6331322be310ee0209e104c180931c63dab258983c69f6daddocHeodo
2020-12-23 00:09:1264e04bddf27b3d535ea895f4dc08267a98a4c401edadc68e3caf7f6f850c4f64docHeodo
2020-12-22 23:50:48815857993a030da4586f91406591e013e670d9a286faac31e529668bb9a169c8docHeodo
2020-12-22 23:15:1605c57f48c8b1958bf16f64a292f9aa05a43f6185d02c54a0d8cf03b2fbc56ab5docHeodo
2020-12-22 22:59:47893d0822b033e0d5ea0484d9a61ce0354833603684cfb54e8e493f2740641784docHeodo
2020-12-22 22:41:396db84ec96bdba956f2a1aaf37771903b47d79d69fc01b53e33ba039b8e7669addocHeodo
2020-12-22 22:28:00bdfab9675a34c6da34487f2c70f297960002e6c3c2a8e6fdc60ae7edbe67101edocHeodo
2020-12-22 22:15:35e2e85f53c26daaa6cc7e1fe602e51f272ac256cc0c23725350d37b4a5a888520docHeodo
2020-12-22 21:42:226420b73153baa8bc93494e5f2cac6f1248c102e7bfccb497d71bc67791603ca3docHeodo
2020-12-22 21:24:1029d2dd0591e75e000a0c6b8b889a9a1cafe79ce1f5b6a3468d55e31d7a820490docHeodo
2020-12-22 21:01:269f7aad87f317746b7406ba4aca0dd08523157fee59f582eb3e1022e92fad7f73docHeodo
2020-12-22 20:31:54e992706fe1c263e83911d8cd96067ecadffda1437a6516db6097fae0d542f0eedocHeodo
2020-12-22 20:20:35f7c7d960892c6eceda47d8b21609311323d84eee43e2d6fe065c9c770204941bdocHeodo
2020-12-22 19:54:257202951f9a61583025149c17fbbfd11c028ddf3fb0c080886b3022f117c9b0e7docHeodo
2020-12-22 19:27:1373132ef9149825650cd15e4cc30adc5672a95f12f241a676c2887d1af9d205ecdocHeodo
2020-12-22 19:13:17964002e25b6ff27acd3902a75ecc4293ba67968a23055e94748a0ba2c31c8d78docHeodo
2020-12-22 19:02:36c56452bc0ff9abfcda3df47210eba4e178e55a49d0673f42c9d192ce0234ca64docHeodo
2020-12-22 18:43:057502643f790e60f6929633b08e891ff81ad310001525c345b9dc2b448c1373b0docHeodo
2020-12-22 18:23:40fabd2798310f1b90dc1321bffbfa1ee8c41695839459d40fd6e32618d3df7ccbdocHeodo
2020-12-22 18:04:314665b18e5944f23543e9221d4726aac54759376ebfec0ef20574655e71d77076docHeodo
2020-12-22 17:46:09d86732f28284b8dbef93bd8eeee3150fa2696a1ccc22d520bd82a2a53c58c32bdocHeodo
2020-12-22 17:23:18dbd081ee503b65669b9a1a61dac9d5e95765bd9376783e784d2dae26751309cbdocHeodo
2020-12-22 17:16:59b4c07579191b925b8d588484fde55e5ff1e83e7b82f482d041b8913d1f2d7485docHeodo
2020-12-22 16:27:2146d74826799bc3bea6197713c8b199ed1faed920028c4d3acc7cbcc186276b6fdocHeodo
2020-12-22 15:30:426f31c56a8ea0949ade1a3cabc55e00d367bb073cfaf7f1b447258c79483910f4docHeodo
2020-12-22 15:04:070906ccd9d06e96d68c703f978adce40508265b51032f906a9d16c86e0194f779docHeodo
2020-12-22 14:23:0211d7157111eded889bd4d863a18cf0f5b5f5db649956d7775cf499658e7fce60docHeodo
2020-12-22 13:55:35ff2954eadcc20b415743bd17518e46bff0bd81c42bafb57b28eba3bed664b041docHeodo
2020-12-22 13:17:40f1d7afa9f6fa472313a13e477f62a40c8a9bd241db908f877589ba665eb6fbdbdocHeodo
2020-12-22 12:47:167ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36docHeodo