URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: jxbaohusan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2018-03-24 16:05:25 UTC
Total malware sites :24
Online malware sites :0 (0%)
Offline Malware sites :24 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-06-03 07:28:16 173.239.5.6Not listedAS27257 WEBAIR-INTERNET- USno
2019-06-03 07:28:16 173.239.8.164icsvm3.webair.comNot listedAS27257 WEBAIR-INTERNET- USno
2019-06-03 07:28:16 213.247.47.190Not listedAS8315 ACNBB- USno
2019-07-05 05:09:15 185.53.178.7Not listedAS61969 TEAMINTERNET-AS- DEno
2018-03-24 16:05:31 218.247.94.30Not listedAS139021 WEST263GO-HK- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2018-09-27 23:03:34http://jxbaohusan.com/En_us/Attachments/092018Offlinedoc emotet ext heodo ext unixronin
2018-09-27 21:33:03http://jxbaohusan.com/En_us/Attachments/092018/Offlinedoc heodo ext zbetcheckin
2018-09-25 18:10:12http://jxbaohusan.com/US/Clients/092018/Offlinedoc heodo ext zbetcheckin
2018-09-25 17:36:14http://jxbaohusan.com/US/Clients/092018Offlinedoc emotet ext heodo ext Anonymous
2018-09-24 09:44:12http://jxbaohusan.com/38OPAYMENT/GDZJ841728301Y...Offlinedoc heodo ext zbetcheckin
2018-09-24 09:26:04http://jxbaohusan.com/files/En_us/Latest-paymentOfflinedoc heodo ext zbetcheckin
2018-09-14 05:01:54http://jxbaohusan.com/408019WUPITIGG/PAYROLL/Pe...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-13 06:43:42http://jxbaohusan.com/408019WUPITIGG/PAYROLL/Pe...Offlinedoc emotet ext heodo ext Anonymous
2018-09-11 05:09:19http://jxbaohusan.com/205OR/identity/Business/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-09-10 23:25:35http://jxbaohusan.com/205OR/identity/BusinessOfflinedoc emotet ext heodo ext unixronin
2018-08-28 04:45:31http://jxbaohusan.com/4823PN/PAYROLL/Business/Offlinedoc heodo ext zbetcheckin
2018-08-27 11:35:27http://jxbaohusan.com/4823PN/PAYROLL/BusinessOfflinedoc emotet ext heodo ext ps66uk
2018-08-22 22:21:29http://jxbaohusan.com/doc/En_us/Invoice-Correct...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-08-22 04:23:51http://jxbaohusan.com/doc/En_us/Invoice-Correct...Offlinedoc emotet ext heodo ext Cryptolaemus1
2018-07-31 20:43:31http://jxbaohusan.com/files/En_us/Latest-payment/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-30 16:00:08http://jxbaohusan.com/8RQXS/Offlineheodo ext JayTHL
2018-07-30 14:33:09http://jxbaohusan.com/8RQXSOfflineemotet ext epoch2 heodo ext payload Cryptolaemus1
2018-07-28 01:24:36http://jxbaohusan.com/newsletter/En_us/Invoice-...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-24 05:31:50http://jxbaohusan.com/files/US/FILE/Invoices/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-23 19:15:31http://jxbaohusan.com/files/US/FILE/InvoicesOfflinedoc emotet ext heodo ext Anonymous
2018-07-20 03:44:00http://jxbaohusan.com/doc/US/DOC/Invoice-49764/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-19 09:31:06http://jxbaohusan.com/doc/US/DOC/Invoice-49764Offlinedoc emotet ext heodo ext ps66uk
2018-07-13 17:11:12http://jxbaohusan.com/newsletter/US_us/Client/I...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-03-24 16:05:31http://jxbaohusan.com/Nm7pmp/Offlineemotet ext exe heodo ext cocaman