URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.chunbuzx.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Blocked
Firstseen:2019-04-10 11:41:02 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-09 17:42:52 104.21.70.29Not listedAS13335 CLOUDFLARENETn/ayes
2025-08-09 17:42:52 172.67.218.206Not listedAS13335 CLOUDFLARENETn/ayes
2025-07-16 09:07:26 172.65.190.172Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 11:04:07 156.246.11.178Not listedAS54801 ZILLION-NETWORK- SCno
2019-08-06 06:51:14 116.206.106.99Not listedAS46606 UNIFIEDLAYER-AS-1- SCno
2019-04-10 11:41:13 211.149.129.27Not listedAS38283 CHINANET-SCIDC-AS-AP- CNno
2025-08-08 21:05:12 172.65.185.109Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-16 13:08:10https://www.chunbuzx.com/wp-includes/I2/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1
2019-04-12 10:09:06https://www.chunbuzx.com/wp-includes/sOMT-vShih...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2019-04-10 14:48:35http://www.chunbuzx.com/wp-includes/legale/Frag...Offlinedoc emotet ext epoch1 Cryptolaemus1
2019-04-10 11:41:13https://www.chunbuzx.com/wp-includes/legale/Fra...Offlineemotet ext heodo ext erdnuss

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-17 18:19:4950843f1c34dbe3de77a86615f7cc0064ebdabca83d2248dae7b93fbf8c7bb80eexe Heodo
2019-04-17 17:01:08cabd6a707a679f24d05dc9017033592b7edefb0d4ff28ab374db176c5488ca42exe Heodo
2019-04-17 16:23:52f349869e1e5d51c932e1645562ba7bfe325faea0f049e81703325207c71103beexe Heodo
2019-04-17 15:45:11ea67fc00d50c55079eb9089884d66b2b9639e286cb18699def145898cb5d56e1exe Heodo
2019-04-17 15:13:191cd3db53176d88f4b7244429ef03ee120373c066335a8a5b81f94e2597188636exe Heodo
2019-04-17 14:26:12ba1a79b61bfaca2b9e6c7ee3a38ae1dc906ace1804ba2a66eb7a3e657551789aexe Heodo
2019-04-17 13:39:089635c10648c4dccb9c9de1260429441a6936fcbd0f7eb16c4c149adc5888a32fexe Heodo
2019-04-17 12:52:55c306d1aa0d90419ce49f701285115a1db8030032f4c6a0258977085725228b98exe Heodo
2019-04-17 12:16:5683647c0694695ea763d0a7382a53e95d7715e9052227efd4b610d4e65229f730exe Heodo
2019-04-17 11:29:4086814aaa96560342434fd38b84e6be4f1bb2f4e9656e03de086765e8facafacfexe Heodo
2019-04-17 10:58:43270696e681aae3f24c7a3886f75952fd82c2bc94374c7fa1e72c5ae1583efcc0exe Heodo
2019-04-17 10:26:378fb5b09d0b6a3e1b6b99bca416aad60be0d6bc498cbc8d4db996c28e1ed31005exe Heodo
2019-04-16 17:05:0742d5b442bcba882b9b67d483d983812918c8f16bf244617e5125e54ed39c45b4exe Heodo
2019-04-16 16:18:374015b2182a198d775500fdb03aa57a82906d72c72c4066af16764478721c889dexe Heodo
2019-04-16 15:31:38152e556e2278eaee55be9349acce867563cb11d48b67789d49acaf26c417cfa7exe Heodo
2019-04-16 14:45:234560e947ae656cb4265a83cecfde6b696b31a09fa31ecf250cfa6149287ba553exe Heodo
2019-04-16 13:59:37bda6816587e81833d001e856dec7e8eb528eda404244810c35ac14dda30bf2e8exe Heodo
2019-04-16 13:25:20c481b71e426986b974b3b8a3438ed20e02acceb15e3cef087df32ee7663f34f5exe Heodo
2019-04-16 13:08:094bba21068231dfd43232ff7dc61e0a7fb17195c86b4acebcf0bc395e24fe9a94exe Heodo
2019-04-12 23:48:20d0819ed578beb38c8875532613ff761b6b4816f653ee41042f853fb87cdb592djsHeodo
2019-04-12 20:17:25804b01b391cf622f6207d52fd43586ff8323ce6209873f2bf92609e4ef959a1cjs Heodo
2019-04-12 18:10:32cc2b5224a9d1331460439d49a3295a044b45274753207fe28ddbe9760ae06f98doc Heodo
2019-04-12 17:39:24a337638a8cadf540561aed4ec545415e5b2502216a08d8fe426c5a717ee86c67doc Heodo
2019-04-12 17:07:257b8e0e43c6fc604494de61789257c020a623d8da87965b427cba5d3ae0afe170doc Heodo
2019-04-12 16:36:229ff3aaa377fbdb25692e2c9624a684af93324259564ac9921f31b439d9be3e22doc Heodo
2019-04-12 16:04:28661f7d9aea272c78f3b9ce42bcafe6062e48e5ff803b1dfd9c11b3c8053b2ea6doc Heodo
2019-04-12 15:33:27a3cfd0e6eca49517a28f5b354291312c2781d3517a17b7002281d043e60d66a4doc Heodo
2019-04-12 15:02:36c892bc440d5444b162ce0d9b5255ec2e006a288563c30f1993cb3b7beaef98dedoc Heodo
2019-04-12 14:00:4618f7ecfd84049ad910120fdb48ecb6ee3daec7684678b183dc219e3c8f883816doc Heodo
2019-04-12 13:29:2204a0e4e5809e9acffde247f6f388f9da11ec5bc45d8a07af8be6945c32012748doc Heodo
2019-04-12 12:57:20390f49546497cbf91f151a5985aa4aca806d34215debbeb097989a7a0a25edffdoc Heodo
2019-04-12 10:09:061f18a298cc1cdd9527f5345e3ac6438cadffdbf62a1f2a4dc69a22a626980c41js Heodo
2019-04-12 09:57:331cb1730670ec3dce6db6afa0762f9bfa74d06df041829c68a6f161ec6cf6bdf5doc Heodo
2019-04-12 09:01:2396786504ad52978d682b65996187b87e60297bf202a1ef9a9c150a06f0b87e4cdoc Heodo
2019-04-12 08:50:42f759230b06349e6287b5aed73fa0b8e481ef4c175f3155804e97fb7a61925125doc Heodo
2019-04-10 20:29:167d91ca89ded649dd8a7f691d603d22435d13fc741a7d78b3f587b18370184029js Heodo
2019-04-10 13:49:18c5aa88145481b5ec57a620084e533210b7d896e4b5f7b4aca8abdb68646a8343js Heodo
2019-04-10 11:41:1020f61d43bb940c959db46366a7210ec321b90552f17e6bf3502bb26b5490ded2js Heodo