URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.cliplus.cn
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-21 19:27:36 UTC
Total malware sites :1
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-04 12:14:39 47.76.127.217Not listedAS45102 ALIBABA-CN-NET- HKno
2025-10-04 12:14:39 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2025-10-04 12:14:39 8.218.208.240Not listedAS45102 ALIBABA-CN-NET- HKno
2025-04-27 23:33:11 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 23:33:11 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2025-05-26 00:33:44 104.21.59.218Not listedAS13335 CLOUDFLARENETn/ano
2025-05-26 00:33:44 172.67.184.147Not listedAS13335 CLOUDFLARENETn/ano
2020-08-24 09:27:22 172.83.154.35Not listedAS201106 SPARTANHOST- USno
2020-07-21 19:27:42 47.57.91.108Not listedAS45102 ALIBABA-CN-NET- HKno
2020-07-22 07:05:04 38.143.3.254Not listedAS174 COGENT-174- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-21 19:27:42http://www.cliplus.cn/keys/open_box/external_HX...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-22 09:46:39d3d731e1c5ed00a3123112f5f1b4d029a74b742ddf0b5a2639209b85f2930b18docHeodo
2020-07-22 09:30:1221443c68d64ecddd740c7966067a4bed9de79aa081c06b9ad97fe8d8d0e0716bdoc Heodo
2020-07-22 08:58:12fe72f51e83a5d435947cbe8244e3e7c469c1728cdae403e320e0d86c99d8a4b5doc  
2020-07-22 08:41:53656f9f7c087bc9a3d272d1aea2c369dcfa89d33e5fe59b61e4a57d7b181904d2doc Heodo
2020-07-22 08:30:51586155893603026b83f2f51289bcb32825a2cbcf7f5b0bd9dad28b470d8453c0doc  
2020-07-22 07:59:125f8f03dac259139c91440fac04597d61760db8a622f10373db2ee788bad842c3doc  
2020-07-22 07:37:58737f7e0557c9203033464070e06e23e7675c8325abd0083d1ebbdaca3f7eac2edoc  
2020-07-22 07:22:298aec85cd8e1f0f312d2a3442272e4634ea845690457c6a516b51378c868a1c34doc Heodo
2020-07-22 07:05:0020f29a9a1184a44a6ce629ca9668c86c1e6cbd4479a1bc1c3df082d17a1762dbdoc Heodo
2020-07-22 00:15:4680521c4140fb416730b8ae61ecbff6869f7ec3833a13b87ce652285e69632c58doc  
2020-07-22 00:02:40812ed74f92912f98accd025c7c64b9c943032b3379fe1c9654a9deeac6d8b981doc  
2020-07-21 23:53:45435f4fc1e9a6888f671e834bbdce6aafc5928c7dcffbbbe728f18573b73da965doc  
2020-07-21 23:39:48f03863257ba6bfc7e029c245f3dd3f892fe5a6aed79b625b2c7314f3398b723edoc  
2020-07-21 23:26:52c1cc356eaf49711b7673b9c27f015163363a60417ad3b9b7e6883015b65d80d8doc  
2020-07-21 23:11:35fcafb5e437845e9ae17fd02ebb6233cf43399f17ea4371629c71a80ab5f17444doc  
2020-07-21 22:58:482027e8348e8d2f364d55b2bf47f9a4b37fd2ff7aabdda5ed056e3f6cd42cf777doc  
2020-07-21 22:46:33139f5bcf4c7fcbe0a8a5d940c5d38dd847e2c979df74dcf680208e73b8ac668ddoc  
2020-07-21 22:34:36205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3doc  
2020-07-21 22:24:307b6d030461fbd94c985e17703889f54e8012d5ba9af413f3009e010eb28fae17doc  
2020-07-21 22:10:12db88b385b97b7038cd233960f7f99ce350a72a3eecf6bbbcb227645f111d4e7cdoc Heodo
2020-07-21 22:00:54ca4ae10db92df8cf44bacee70e7560ae411a37d1559687ad47687282ca447526doc  
2020-07-21 21:49:0596f45a5c51839644dbf8e9f7ffaa226944422285dd997fc0ff8c23a883b18410doc  
2020-07-21 21:35:528aa3e958943656f026b02437d4c84ed9268018560390b8ab0d9807c7b23c8b41doc  
2020-07-21 21:02:3398d8b98bd54ffaf58b4138432af87d23d2ae108878d2778b22625ff04317237ddoc  
2020-07-21 19:27:39a498a07bd860a86bd937ea230aea64bdbc55c3040d90c13e57a2670608c1af3fdoc