URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ruitaiwz.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-11-02 21:50:12 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-19 07:23:30 156.239.1.134Not listedAS62468 HKCLOUDX- SCyes
2025-06-05 10:17:49 154.205.104.90Not listedAS9294 GNETINC-AS-AP- SCno
2025-05-27 17:58:41 172.233.219.123viridian02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-05-27 17:58:41 172.233.219.49viridian01.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-05-27 17:58:41 172.233.219.78viridian03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2025-05-22 08:00:39 72.52.179.175lb01.parklogic.comNot listedAS32244 LIQUIDWEB- USno
2025-04-27 16:22:51 45.125.111.247Not listedAS26658 HENGTONG-IDC-LLC- HKno
2023-03-12 18:51:06 23.106.11.133Not listedAS396190 LEASEWEB-USA-SEA- USno
2022-11-02 21:50:20 45.207.116.84Not listedAS142286 HKIDC-AS-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-10 08:19:08http://ruitaiwz.com/wp-admin/MXlp5IsUKwT1k0DtzT/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1
2022-11-02 21:50:20http://ruitaiwz.com/wp-admin/sV1NeVxLDiHJ1xm/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-11-12 07:45:051c6ec6fe416247eff1ec6171d694e29def3e17adda3581817d18a5347ce8193adll Heodo
2022-11-12 07:06:16e72ad29bcbe52de140425bea46fd225a2762318a4b96c0a9e781b7b676b1ebc9dll Heodo
2022-11-12 05:40:1720809548c79204f0c4c3bcb0b14b53b0df6363250ea66e87967eff9a4bab8099dll Heodo
2022-11-12 04:58:00a856df05418b9cce89f61bb0f7aeb9f8e554f6d577f7e17730da0e7d03411b5bdll Heodo
2022-11-12 03:57:06c3062eddd27c99ee437883e033c956e1de4bfcc5c275c458bf9a52a01ec1d933dll Heodo
2022-11-12 03:38:1218c42a77b991417e31958ffd3f2a29d4564a052e95096eb40b36662f96091f6bdll Heodo
2022-11-12 02:08:48d3d2c5cd5a6987fa132f9f6aac6e7cbb328ce76c8d6e1a0495ad62f37f093ed5dll Heodo
2022-11-12 01:48:56199e86b4e920bdb38fa5840ee1df59146ffc07982ed81ee12a3c03acfeab85c7dll Heodo
2022-11-12 00:37:246b69de1abc462602e56789b49c22cfed452bd7618bf79d51d3c6fd81c299b8a4dll Heodo
2022-11-11 23:20:00c7cb098c75dbf4eb313340d22f89f3927c34be3c89c5468491797ca10087355bdll Heodo
2022-11-11 22:19:56d807143471a6d10994bab4b31b80437205b3dfd13d72c4c2609852782b8dfa46dll Heodo
2022-11-11 21:15:4418607b46006fc10ea01b08b67a127282eafc57912a0102f257fea21426c9e12adll Heodo
2022-11-11 20:16:0227b79e90befecaf2f655c4bb752a4878befea2f8d69c9f4f867d6b20e322fd0bdll Heodo
2022-11-11 18:57:425a64e611a189dba8b7069d4749e13fee8824a23713eb6c0a332268d17fdac5f1dll Heodo
2022-11-11 18:04:49904207c5ee08d7ba56e4633f9ef70a9f3b8032ba514c6532566a40ab3b06c08adll Heodo
2022-11-11 17:38:47eb511bccfb92d11f1573c9ff68545bf1e863f065e7b45862cfeab2bb593ad42fdll Heodo
2022-11-11 16:24:53dd161d451de66da6287ffb278756a98c5644a80642461bc974db5acf6014d892dll Heodo
2022-11-11 15:29:18cd3a05e0e13a7d0d2c2d1af1a9c9e9424269f61d94a2a6dc6abdade5a7b52577dll Heodo
2022-11-11 14:31:0960c8facd06ecf87311c668b79faeeb9013451b4e057cd3642740d6e29921359fdll Heodo
2022-11-11 13:42:08112c0da723906f42700411f6ce3c8accb6190da1dfd04fc77c1803adfdcc0d53dll Heodo
2022-11-11 13:13:28378f21d4cc12744ec0b7b4d98afa98987f2c53bc5b06d9c11a41d16c51f2f7bedll Heodo
2022-11-11 12:16:5803b1bb672ca166d3653955672a82635213c4da2ebed5d1adc50b82e2dd792407dll Heodo
2022-11-11 11:04:03c22d9ab11d9a11d5f5b994561e14be6fa0681f7e195f891b0974274b6d812da2dll Heodo
2022-11-11 09:50:57e992ca6b80b749e4e99621195076f31c58f2ed65c958ca134b331a9e15286438dll Heodo
2022-11-11 09:12:24430cbca5cd4c43c7d07d164ca6ce04dccfec9791e8ac1ab100f9ce16b636a822dll Heodo
2022-11-11 08:35:0073f0ca5754ae0ec6016750fea2063df618a4d0d2c70aad2b3516f1be38ea1a82dll Heodo
2022-11-11 06:56:12ebd6930a90392575e220630406206a15ee53d3a7c5a174e51cae415604e7cc89dll Heodo
2022-11-11 06:07:151ee49e6e95432a3c1589b063b28be652d8c81b988e9370fed016fa009908d952dll Heodo
2022-11-11 05:55:20bd7cd1368e503c25f76058f412a1a6bf93b44664b9f45daf7b605fcf5a843de2dll Heodo
2022-11-11 04:44:388f04f9063b2c67dd586f2b8d5313b179c5c54d6de33063466c3f8b57ba970c23dll Heodo
2022-11-11 03:08:31317b6a5fbd5e8c0a5852bfb0fa42bcea438a6d336e928f80bdd6336fd48cdceedll Heodo
2022-11-11 02:25:37bc01fd3a7fd43e635cfe823444c279b46d68a8a564c21301e1c3eb8e7dcfdcf8dll Heodo
2022-11-11 01:44:25c7308686ea9bd0d1c0556b3a0df141bf7511d337a515b5174b23dbb95d97159adll Heodo
2022-11-11 00:58:22aaa9e4ea98da162f800c136df1525177802e6b8d2c97a2b7cd96d2bbe662e22cdll Heodo
2022-11-10 23:27:0355f67575a2c1e21c3263baa8acdee84abf127ab4060e4bee18d97e5b33285d6edll Heodo
2022-11-10 22:34:322760e02191c8abee3def3fc84908045bcf80a3f80ff09e9595b2dd102679bf19dll Heodo
2022-11-10 22:01:50675e04f7b40610d148914b68fe3b686addd0829f075cd7c326ca6cc51e5f8d14dll Heodo
2022-11-10 21:21:0936b422fcd522ee685b98fe7992bb141bc12e31c5c6b79e6bae37297a0a8717a4dll Heodo
2022-11-10 20:30:0939b94b9b3d16e8d894fd6147ed4a7021faac1328af059a694125f5370187f51adll Heodo
2022-11-10 19:24:027decc0a3109d2f42bc85eaa8ee4b45203029ac9e11be3f846492ae7bbfd41170dll Heodo
2022-11-10 19:04:11f79bad28514a0132db4093a0f117bae6dbc7ec250c478fb963bc5b7ae42e32d1dll Heodo
2022-11-10 18:30:243390862e32b5156a4b91c3dda5e8011a80a69b66f21c0811ca9dd825482a51bfdll Heodo
2022-11-10 17:07:45cbb8a2699980de88b8ea73006461f7655dc88db88dec52d36e301e42c6089c14dll Heodo
2022-11-10 16:08:32d9dbafe39985bc5365bb2213dd4e9eb64afb81cb478c10a4844798f5a5c74015dll Heodo
2022-11-10 15:20:2480c4255d7a45c7a06e376d626b98e6accef5551e396b12716ca9affe1fb09783dll Heodo
2022-11-10 14:25:214fa7179fe18c46c62ef1d06555cd55279ad74719edc2e88e97a17c536c57fb7fdll Heodo
2022-11-10 12:21:361f4a7355cdc217bae88c2af6f23d77c67ab2376858fdbf8e45772eb079e0336ddll Heodo
2022-11-10 11:03:52fc0797684292d44bcd2c7a67c4fe2f01920d88903dc11845f9cdbe1d53c37885dll Heodo
2022-11-10 10:28:41e9a6ea8caed6cf87ba761f830065fbd710ac0a1cc5ca6551e8901e490e3eca00dllHeodo
2022-11-10 09:45:36523aa89d42a7540eadac629174fbcae2d40a7d00f9ddaf1f587a78524371f5b7dllHeodo
2022-11-10 08:19:0802e0cabab708f49e0c45a49c15c5cac4b2f47eb8f6f3be828f97eb678ecd8db1dll Heodo
2022-11-04 19:03:09bc7122be21ec5a18aa95a0740e69e0919abb345a09bb183f235742ec2b09b35bdll Heodo
2022-11-04 17:13:33b155880d385845375397337b24e8777653f31dd8272ad24e792ec7c4f5a74e6edll Heodo
2022-11-04 15:54:529ae519d792e64aa30ea5791b6014594649dccd338522ca0a559f2fb0b80ca2e2dll Heodo
2022-11-04 15:29:01e8cb5822bcfc014d3a7115f35e3b8dfdea65349cdfcecf789a4d336d86b3f55cdll Heodo
2022-11-04 13:52:38fff3514679466dadaf8eeac15f6e0624811e78526180c7619928057722c454eadll Heodo
2022-11-04 13:33:002cf9bff413a72f586d083cb5a92ed9348cc578651ed00f24e2807a7cc4463322dll Heodo
2022-11-04 11:51:00ced1916ead3d801fefbd8567d167ea5d3e243694902c374a2c023367548d261ddll Heodo
2022-11-04 10:43:0820d8d4d82d3e9a1f57b4cce4d487ae629102aef8a70fff1777621c8458b4acecdll Heodo
2022-11-04 09:19:1140705b29b3d05f9ba5931e130c7c5121ee01365ebbc9a8c5577274ccbaddc726dll Heodo
2022-11-04 08:06:41970a5357bf1f06e5baeec345133443d1d660ed207de0d4f7eb4fe5a4af23a87fdll Heodo
2022-11-04 06:58:54ada51199fed40c1740678acda2975c6a50109e1ec01876644ffa2f80ba8a1d56dll Heodo
2022-11-04 06:20:3674ce85b671e6ae26ee659a97f8417e3c636161cc501913f82bb8c18cfeb72a6fdll Heodo
2022-11-04 05:01:05288e7a42eb60029d7e3ce9c244c62ae5b43d02f57a7612807dcd2168526e2665dll Heodo
2022-11-04 04:24:558effd8b0f09bf1592059f88823673b55b3612303ee836dbf8f327ecd914683a2dll Heodo
2022-11-04 03:58:2608b8e19a1e933edceac6c2d14888e33b98d8ad8463c8b6eed3b8dac9ad9062c1dll Heodo
2022-11-04 02:47:14ae8e13e476716b6ef0722c3f3e95b117d179ec83d2d7d2a9c5384042b3a713fbdll Heodo
2022-11-04 01:28:280489e4fceb4e26aaf8f182f5d9008cf4b08f9e232c1dd8980287a726279b152edll Heodo
2022-11-04 01:19:04503f7942144b3291c527ded2051eda9565a8ec4484ef322d56c1cb3176d6af62dll Heodo
2022-11-04 00:09:59b7febe7593c00271a05d2f3567d65ba4c55c7ae4916e7bccb32b43f2a8e52c91dll Heodo
2022-11-03 23:14:414e77dbea74e266b680310ca4401c7da8f89fdfca3908908e757c30dfa98925aedll Heodo
2022-11-03 22:03:56d969cfb1fb531a876f7f258e0c4cc91816b2cab4f912f7cb9e4976439644c9e9dll Heodo
2022-11-03 21:17:062f5818fe553b31e51bca5c8c2d191c846d142c4ab85ed46d8ad5b0118fc00500dll Heodo
2022-11-03 20:25:237c35a9874e6655caf7dc4afcdaba08f7afe955c52218ef40f4df50ac45eb0188dll Heodo
2022-11-03 19:48:0094ec51f20e89405d86e1ea0a069b651eab9dcbf5935175e9b74b6a999710752ddll Heodo
2022-11-03 18:30:16191d51139527ae92070646be389c61a73825a9b60a621ad7425ae0aff297d0bcdll Heodo
2022-11-03 17:33:0898f4c6a0f57c2d03e504c4e14d79893997f5198f5b4016b3bc9f15a0452ebf1fdll Heodo
2022-11-03 17:03:2167d625bbe1d7daad57af5aa4b3b901c88284711609a07f9f8887058dfa6e095edll Heodo
2022-11-03 16:06:109091211cd5951df9efa278fd902e6867251481797b95b9864070ba63bcb76ac0dll Heodo
2022-11-03 14:54:2517a556ac56a6d1909838b8a015de9c0f0e8267443e47117cff7c22d280edd62bdll Heodo
2022-11-03 14:02:370242dfdaf45d9bedb212ef7ac658e694d60a8fc53646966384e309ae2817f4b4dll Heodo
2022-11-03 13:49:28e684d4d8c165a1f633ae8b3754bcb60f8bea4d114d51eedcecee230d43fd9127dll Heodo
2022-11-03 13:01:511da8a0bf32d2e9a11cc7cf733aecd528919882f06d9dd20f13bea465c55b924bdll Heodo
2022-11-03 11:38:421a4f0c834acc4490567b24215d6101f4ffa14c83b6a672aa1a3d7a27fc1ece27dll Heodo
2022-11-03 11:03:151037f6a8cf9aafb7e9783fa4830afef33d8bf82dfadda68edba4d4457ec18c04dll Heodo
2022-11-03 09:48:37d2478f8d3d7e45be316a3edab831c7115edb17080d5dd9b498f5e608355a639edll Heodo
2022-11-03 09:34:04d0f816ac4fb83904b6b4974159003aaf1e3cb608180d6566bbf7e3e36136583fdll Heodo
2022-11-03 08:01:335941f05aa1d896bd0fd76baeef1330461f5579351e995ccc6cfd87fc07a8cb29dll Heodo
2022-11-03 07:31:00a4c504becf30fbec68837934c5674ce05b937552e9fc5ded9e2982f556b05c9edll Heodo
2022-11-03 06:47:2962129912a900bc7695a3252316826b3c584051b517e0de141ca898996c9b5fa2dll Heodo
2022-11-03 06:00:44ae7534c9f61a8b074814c29037c45aff116dffe7b9deaec86f1fede6580dc7efdll Heodo
2022-11-03 05:02:416da0cf72c67d9b64c54495e9458dc652f3049e8ccc6e8c1a5532c039290e6d69dll Heodo
2022-11-03 04:08:0357a8b81d7dac2a02fb02a7eea0ffad51c40f390c8cc2364f1e305a66270bb270dll Heodo
2022-11-03 03:22:5191c88a88c53f6ac796ebf522e78deab2ee68c7578af5cdeed8c8ae8370f4606ddll Heodo
2022-11-03 02:40:1851a20bf74a762dc1774b2cca29f6d3ff7d7ec0d2146412eff1e132f57f1026c8dll Heodo
2022-11-03 01:29:49b70bdc0d28f205641af3cda7f0ea3bbfcf3aaf25774b0d811c13ee16ae79c460dll Heodo
2022-11-03 00:45:57dd35cbab493f640b1d8b3fff3bea652365de1954b885378864dd407c0a259c69dll Heodo
2022-11-03 00:04:04333719ee68238fa9cf71d2c479bfdc21e7baf0bcc1946131f6dadc1809d00026dll Heodo
2022-11-02 22:38:03e4421f01a95b352e8f7e13a1cbefdc5219b1cf6079be208b283a76a57452d019dll Heodo
2022-11-02 21:50:197dd5bb6936142d0db3553a241bf40cd53cc7e0e98b44c625cd7506d1be5483a3dll Heodo