URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.cenfeng.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-26 09:33:03 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-18 00:52:44 128.14.74.107Not listedAS21859 ZEN-ECN- USno
2025-08-18 00:52:44 128.14.74.124Not listedAS21859 ZEN-ECN- USno
2025-05-18 02:49:10 198.200.45.116Not listedAS54600 PEG-SV- USno
2020-10-26 09:33:06 129.211.131.96Not listedAS45090 TENCENT-NET-AP- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-26 09:33:06https://www.cenfeng.top/wp-admin/Pages/2zkn7HO9l0/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-26 14:34:53af5bec962b175e3e4f5df0a4f2717783bf78df335fcc78d65762cda9a39c626edocHeodo
2020-10-26 14:07:059643f549d482e6be9950a7ed247dd56080bbf3a13886de1c941e48199f11bcb2docHeodo
2020-10-26 13:47:3877eb4c7120067d48b4170418e4b3e3fc183c4164d4d4fd4986b52e67c27cf5e9docHeodo
2020-10-26 13:37:419051c3262b2cf8fe3c7d6e53b49107c37a032d9a2e542c5f7ba91c45eaf7310edocHeodo
2020-10-26 13:26:275ecb598ee6956d9ef707aa782dc3cb1df34132b0d9402a303a5f7e9e27f12604docHeodo
2020-10-26 13:10:49b09c1e57573cb81b0caf6e7689249181086b61251099164768fe6546c4caa9e6docHeodo
2020-10-26 12:40:39a0022dd3bfc83d3b114afdd94b9fdcc716c5d68befa55c21ff1b7ac91defa798docHeodo
2020-10-26 12:27:5313e88cb0531b6aa50e377b366ea172183d59ea40224f08de97fb1b979dd60f32docHeodo
2020-10-26 12:14:4876e0827be9357a1ff7eac067a0a1e6041c71f5d0d6577c6c51114136d8d43150docHeodo
2020-10-26 12:04:3238c14dd44d07e90b9ef6f45e6cbb218b3ff3d99721455910a3b5054c2e3b19cedocHeodo
2020-10-26 11:46:482bc26aa0c65df591c12916f46ff55e5a6b241a3306a07f6bc71c74affc78d401docHeodo
2020-10-26 11:31:455eb5558d4c71465be427ddf9b051aa164d5ae1dd3b28ca9ff2d0e40ddc2d01d7docHeodo
2020-10-26 11:15:234a56faf2105cc8e1a37accab9e4464a990ba0e6ed853a5ea074c18f3a4d582b2docHeodo
2020-10-26 10:54:236d91807585909756c047d6afd49811e9e0b4ff3bd9f57329990dea30b6948dd0docHeodo
2020-10-26 10:45:456a64b3fa74a681a170803db2fc82075c2d1aa71b3b85f19b53250a32ad672db5docHeodo
2020-10-26 10:27:31001c7f2cf9518d78d50711633e4f0cb168bbc4ab2c923ead7c41febf6e3fdfaddocHeodo
2020-10-26 10:18:356c73d0f17a9c1e3d6139834005569d2622fcb6c0b85c46b91e924b0377e9d997docHeodo
2020-10-26 10:03:086c8bfd57277439037aeb95048c523ea5d18f98bf548d73dd699989aafda23971docHeodo
2020-10-26 09:33:06bb0bd4259f7a68fcbea33a17f5f1694bed9d55db4c224ce81cbdc771c2ef3b90docHeodo