URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.51gua.vip
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-21 17:59:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-17 16:14:26 154.215.114.174Not listedAS139880 OWGELS-AS-AP- SCyes
2025-04-27 10:49:44 45.200.55.139Not listedAS139646 HONG7-AS-AP- MUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-21 17:59:14https://www.51gua.vip/css/DOC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-23 15:13:425de801d1734e78ebab4e8a80a424bb6f06e1e7c72938e6d7922073bc7a0370d7docHeodo
2020-07-23 13:41:043a98bd3d64fec9076ea404e7746ed00031e861bf3ec74cc90c0a262afa41b736doc Heodo
2020-07-23 13:29:097ae0262abfeb81f5186b2d2a3228db31f1e8c2e76f64307cb4bcda3f113c5e43doc Heodo
2020-07-23 13:17:142e6835bb4cbe6487d7ca03ecaa11680c6a1c67ae96b80f9b13a40a15408abd39doc Heodo
2020-07-23 13:03:45a6d53ac3f7ddf730b2265f40cc8621657d2533c9b9068b969f9b644f72825a37doc Heodo
2020-07-23 12:51:5429e6dc4e9c118ba98db7b5aab063c19788100ccf19ff84d03d8412ffa61765b8doc Heodo
2020-07-23 11:20:101c56aa7dbe76d3dc0b79031a147c2ee610dc26c768ff2c239385653b7ac877f6docHeodo
2020-07-23 10:30:01516119b22bf255a207f5453e26a9292d9eba7cb81b8619dd36a560fb057094afdoc Heodo
2020-07-23 09:49:1271e846994ca39d459d644c80d1e9101d8dcd0fbe9853b0bec73d33586ed88773doc Heodo
2020-07-23 09:34:45dc7fcde663a9d815ecd5773ded15b90adcb4da90b556db8ce5474fd8b0526419doc Heodo
2020-07-23 09:22:09c7a0c36d929c3967281ea2e2e6f999ac17cdce4a691339ad9850e367ff10976adoc Heodo
2020-07-23 09:05:25ac4ca26e0b1ce2149f23d81e941c7425adb9f7deaa16b60a33d1f7bec9f99d26doc Heodo
2020-07-23 08:51:165c3ece93e2a6644d09daac8a92d6d624794c5e88db7781c77eb5ffd03d2ff8ffdocHeodo
2020-07-23 08:30:119d24cd113094edffa574173b3ce1295006fd5e243bc82578b6fb81a7d28e95f5doc Heodo
2020-07-23 08:24:22ba47c9b58933467ff3dc60684c70211f6f2d086227a4b381c0158d1847e7c4bfdoc  
2020-07-23 07:30:06d204d9a16bd7b8412ab3ea6b430424ed732cd685e4b7b8e08b2f10a7151503c4doc  
2020-07-23 06:52:28c5af9e9fa8e2d32ee0e979cd671f80652356deee03af4f1fbb226630fcf7038bdocHeodo
2020-07-23 06:30:31ecfcada8131c01436ccd879656898e0c54347fc88b8e4c523fcfe2faa885cea5docHeodo
2020-07-21 18:41:03c22e26dfab6e9d1a9b274c81e01683828409ad629bf7883a0d58600c1f8db403doc  
2020-07-21 18:27:37d5d3845f7ac2c48853a2875dfcfd036f82983a6318546346d14d8e35d6c63177doc  
2020-07-21 18:27:35d5d3845f7ac2c48853a2875dfcfd036f82983a6318546346d14d8e35d6c63177doc  
2020-07-21 17:59:0602ede2ba12e1681f4c4a1fb052fc69e0fc87cc31e9cf6bf00b5bedc8ba1fd6c3doc Heodo