URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: qqziyuanwang.com
Domain registrar:Tencent -
Domain registration date:2022-01-19 02:26:16 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-02-07 16:31:06 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-07 16:31:09 43.128.58.161Not listedAS132203 TENCENT-NET-AP-CN- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-02-24 19:03:07http://qqziyuanwang.com/wp-includes/KtXrm5GwJ/Offlineemotet ext epoch5 exe heodo ext Cryptolaemus1
2022-02-07 16:31:09http://qqziyuanwang.com/wp-includes/Tad/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-14 14:47:38a703d8e0ca130309276ea48982b7f863ac706bbe0083f6af3f0a8a20ea25ce9ddll Heodo
2022-03-12 12:42:511ce456323940457344ce1b5a011d42f9e58f6c7b7c871093ba70a9c43eac6a7fdll  
2022-02-24 19:03:0792a5651f84adcfa8ac7b9e7bf445497566f64f105a81323bf48817a3a9911ec9dllHeodo
2022-02-09 08:10:113486b2c85f7a0f66d2939738ba6b0e041c8856ba6ad314f2e8822699d4427b84dllHeodo
2022-02-09 07:28:430d39e2ee80d72ed710c56b0ce867e4a877e857d972ebe8acc29999d1aa3e818edll Heodo
2022-02-09 06:47:07bf202fb7be8cabafea52d2f969399a22d833b144a79162e386615cd23fa48e02dll Heodo
2022-02-09 05:57:48c37d622fc4559c7b5ddfee4b1f119b2f3e59df435be0422d386acb495de3e953dll Heodo
2022-02-09 04:48:5161e6ff6451c81abe79f6098488416025bda4fcd738d25d73b561cbcbba55e4c1dll Heodo
2022-02-09 04:31:59f226eab94216caafee8093cf2209a2e06587477584fb597441f585f818b7803edll Heodo
2022-02-09 03:00:1728c193e018a37c7462d09ec9f79a30865d50644bafc3aaa75b1849ccbe7aa886dll Heodo
2022-02-09 02:00:107cc077de7834d66076c59806fd46d2712f241d94203b15fabcf70c16349a1964dll Heodo
2022-02-09 01:48:38ffe9577a342754fdaf955382779476d815a459d40981fc8943bd95388876de7fdll Heodo
2022-02-09 00:51:413cf855597e0ffeddad18c0224579ddc1b9920a2bd7ed0495880d3980dab06a7edll Heodo
2022-02-09 00:29:26ea015cc156c1ab5b49ffe21f639152dd2870a64786dd7974921e7ef247e00d41dll Heodo
2022-02-08 23:57:04b5cd0f86a4b1dd618b8d2404b1cb16ddcde4b9bfc848db058e0d70b7f6e33acfdll Heodo
2022-02-08 23:26:46f9e318d1d6bfca42fd3e45b940716d08a2d8d61df7d351cc55df3fd255396d75dll Heodo
2022-02-08 22:46:13cc2c4556c4584846a2d8617c3f9c8ed1867e6ac1abce3dcf7e5f2a6f6f48d31adll Heodo
2022-02-08 21:35:435f32b3487d26abe753ee933e09607cf4303f2a2104a0268a5bd7acb3d8faca6edll Heodo
2022-02-08 21:23:32056e6dbd31800aac571bcc8181cbf2e02d74f61e8db8913fccabf7a8968908a8dll Heodo
2022-02-08 20:17:46bfc7c790ece3798b35cf61ec904704a34c35a9cd3518ba638c6e81d1eb4b94d2dll Heodo
2022-02-08 19:20:2843b09ea13979f080bff6156b5a95ceecbdc108c6b949c1720b872e657ee650abdll Heodo
2022-02-08 18:10:2452d8de69e81f180ed398700e1dbdf86893bf121622455457e59f25d96668e9a5dll Heodo
2022-02-08 18:00:3490531ae84db4170c19d9b3bbe6fd6320d2b0c4c2d9d46140bb993e1263c6f478dll Heodo
2022-02-08 17:40:447dc07222a42d936f4dc0d9a65f2a193f3e4f68380b1bdf4bece8ea495cd83a2fdll Heodo
2022-02-08 17:21:43a206438b093f1907afd7e2cf1417b698a25dd04a9ca909b34d665e3d3f6a47b4dll Heodo
2022-02-08 15:27:42c90793f68adc59aac52ae5ac80f10bbeb6b0f5b54ac36c3fd64554ee15d59940dll Heodo
2022-02-08 15:22:45ff7bac2dcd0ff92b8a63907d681034b0478b4a513036e471efeb2dcc9c7dfb45dll Heodo
2022-02-08 14:57:336b67abcdb4a747f018007392b68d91a2ee26a0f9787858936a59ef20e52e8884dll Heodo
2022-02-08 13:27:208c90f8ae0794fc178868530771a46a620101dcc8f53e27434a411a93948d495adll Heodo
2022-02-08 12:51:07035606904e69943568e45fad535a3532ca7920aa962b2d1d51804cad43d596a1dll Heodo
2022-02-08 11:56:59757d8ac37f16c3e4a2f871abb80276989984488347190014e5366c39279ca72cdll Heodo
2022-02-08 11:02:22e6c18a242ff5c44eabe1377643d84fffc411a6bf67728fd7bca6381539b025c9dll Heodo
2022-02-08 10:02:25a96af36f4a670e0db6fa978d96c994fc77bed6a576cc67cfa3b342afa32d2b45dll Heodo
2022-02-08 08:20:318bc94689f7f722bb57eb0bef7a89262cffacf5ad8a4bde59660deeb2b6164da5dllHeodo
2022-02-08 08:04:5555993f753205fedac77bbb9fe3225de478e233db20eeb616dff4b0a1bb723fdedll Heodo
2022-02-08 07:30:51606fb40c447cf62c8663cc9c44429a7d0901f5d596b3e85f6adf1274cbd11865dll Heodo
2022-02-08 06:40:09afdc5ecf42d39be31b789c43b74e36b9b07f8a62a2eb328fd7b8fc34eb5029dfdll Heodo
2022-02-08 06:08:50f47a951e234829d8476fd4c7b7120e058731bad427864625bb6fd66ab767b65cdll Heodo
2022-02-08 04:26:22d25b53d0d7f2a5b203e932922103e2aa6491fa04fb51d1c391699cf74df25d33dll Heodo
2022-02-08 04:10:00bf9bf2b26c25e993bad2a3f6c3fba9c398b6084b30ff340f4ed59886f9148527dll Heodo
2022-02-08 03:24:32a540b210f797b20114b29af9784646c6f3c80e70194ca5d7c6db9c152894d9c0dll Heodo
2022-02-08 02:48:4463333b0f1a9ff2f5a66fda2285c9a48ee9662b6318edc2531c2018d067850613dll Heodo
2022-02-08 01:51:156819dd97e9c10182de7f8de3a4bf8ef18489e6c42a4d18ce5a8e608019a4f005dll Heodo
2022-02-08 00:05:283135fabe0b8677d10d8f51212e5a4b271790c5cc2c983f351e7caf79d053ca5ddllHeodo
2022-02-07 23:15:441bcbd9e7cf4234c3ae8492a94fc0f7480d948bd90ab2defefa161b411e005e56dll Heodo
2022-02-07 22:19:51c4e56bc97701748c38b91dfe4a3e797d5d72eabde1118d9411566e4d95759256dll Heodo
2022-02-07 21:11:25ef0a554615e9f90149c9864e623bf7f485183abe91ab22c9441e0d9a5e81e5bddll Heodo
2022-02-07 20:23:237a9d530238d88764092678d974642297c2d55ceb1f6594220bfa9110c7221bf0dll Heodo
2022-02-07 20:04:276c111ba80a20370ead0bf22fce4600d20a5e148fe4d51bfc3ed41db0d1a51bc7dllHeodo
2022-02-07 19:11:45428d22ebc5eb92d2826d752cb3681be1f5154c78a7a983aa70a3ee80b3d84c5adll Heodo
2022-02-07 17:56:02d71fca3b9975f10b35508430658a92de35776339470f7396f9a536343035eb53dll Heodo
2022-02-07 17:02:3118577aa6a9195d92f30c051d460e7a342599ca67ee564b3838823382bc16d77ddll Heodo
2022-02-07 16:31:073e3bb93169a812d7a8ecf0d1c5c2d44848a93bfe5baab0923170e9f52a28c5e7dll Heodo