URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ntdjj.cn.

Database Entry


Host:ntdjj.cn
Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-06-26 18:33:19

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-03-01 23:27:43127.0.0.1localhostNot listedAS0 yes
2019-02-27 11:32:17124.248.241.94124-248-241-94.as4646.netNot listedAS38478 SUNNYVISION-AS-AP SunnyVision Limited- HKno
2018-09-06 14:52:24103.27.126.35103-27-126-35.as4646.netNot listedAS38478 SUNNYVISION-AS-AP SunnyVision Limited- HKno
2018-09-06 14:14:45124.248.195.252124-248-195-252.as4646.netNot listedAS38478 SUNNYVISION-AS-AP SunnyVision Limited- HKno
2018-06-29 12:15:10124.248.240.119124-248-240-119.as4646.netSBL416345AS38478 SUNNYVISION-AS-AP SunnyVision Limited- HKno
2018-06-26 18:33:24124.248.240.98124-248-240-98.as4646.netNot listedAS38478 SUNNYVISION-AS-AP SunnyVision Limited- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-06-30 06:09:26http://ntdjj.cn/facturasOfflineemotet heodo Clean@p5yb34m
2018-06-30 06:09:20http://ntdjj.cn/fact-q120Offlineemotet heodo Clean@p5yb34m
2018-06-28 22:44:18http://ntdjj.cn/Fact-Q120/Offlinedoc emotet epoch1 heodo Clean@JRoosen
2018-06-26 18:33:24http://ntdjj.cn/facturas/Offlinedoc emotet epoch1 heodo Clean@JRoosen