URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.dzshswkj.com
Domain registrar:NameBright.com -
Domain registration date:2021-11-17 19:24:06 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-18 20:41:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :16

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-18 11:11:04 149.56.107.108ns529975.ip-149-56-107.netNot listedAS16276 OVH- CAyes
2025-11-01 14:10:08 167.114.114.187vps-db963d43.vps.ovh.caNot listedAS16276 OVH- CAno
2025-11-09 23:28:37 51.222.158.8vps-6c269884.vps.ovh.caNot listedAS16276 OVH- CAno
2025-11-01 21:28:49 198.100.154.3vps-f90022ba.vps.ovh.caNot listedAS16276 OVH- CAno
2025-09-02 06:39:37 148.113.194.50vps-e6bc9336.vps.ovh.caNot listedAS16276 OVH- CAno
2025-09-03 02:57:34 192.99.145.61vps-f23bc24c.vps.ovh.caNot listedAS16276 OVH- CAno
2025-06-08 17:54:58 104.233.195.56Not listedAS54600 PEG-SV- USno
2025-06-05 06:58:31 172.65.185.109Not listedAS13335 CLOUDFLARENETn/ano
2023-03-16 20:24:59 154.215.175.117Not listedAS134175 SH2206-AP- HKno
2022-12-09 20:10:34 154.215.166.109Not listedAS134175 SH2206-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-18 20:41:07http://www.dzshswkj.com/wp-includes/Ochtwmy2Pdc...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-01-18 20:41:05http://www.dzshswkj.com/wp-includes/Ochtwmy2Pdc...Offlineemotet ext epoch4 redir-doc Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-19 20:50:494f48ef3036b8e2b724cbf9ec618f35baf7cb5e2017dc5fae4825659a28b58e68xlsSilentBuilder
2022-01-19 20:39:35f364484e6d3e00f20019e36759be54c6c36fab26ca0d5dbe5819354754423a1cxls Heodo
2022-01-19 20:23:162af6631e3481f468b1b17c3008374c23eff67a9f139e56ecc0bb9a0a34016048xls Heodo
2022-01-19 20:07:080bced3cd2e9c1e23162ba0e5e2ccc316b26f399a22c93a5d2b026017790db3fexls Heodo
2022-01-19 20:01:49a5d921070dd610f17b5c5922595511d63385bd7b99623f64f8ac7a0e457ab651xls Heodo
2022-01-19 19:33:39fa118d305bad13e6c33a570a4bcd6159971ca1c5c3cf06eb7c8a5612e0d42aafxls Heodo
2022-01-19 19:18:56cff13f579e3598d9be5b751b75baf9fe837772239567fd22224bce3c6e99e1d0xls Heodo
2022-01-19 18:49:2954c4606892b1fede80e10591041b980262e6a780b2017de3ce6779d96d862a44xlsSilentBuilder
2022-01-19 18:25:49ed228873fb44f8cc68edada7c0687dfda287a3ae45fb0c0cb6cf8a58bb2487fcxls Heodo
2022-01-19 18:08:045c8cb7136b7f89772e79c0a2f6ead69434dbd7cd66ed030ca620de279c9b20a2xlsHeodo
2022-01-19 17:55:48d26f4a2809e92686fcb04d7e6662638fb1da0e2e7d7dd7057ef7931d1c36f4d3xlsHeodo
2022-01-19 17:51:47fa264c33403e70b02a4aa9feedf6328187ad3e3ff96e4b6d3f60dda60f5658f1xls Heodo
2022-01-19 17:30:312973cc99c73795a2e3a00ef11ea792c3800f933fc073fe670d2907261f6c965cxls Heodo
2022-01-19 17:18:0214817a3b02e6cb0a22fd6b251c612d2f21ba516c03224741e3ddc24755c424dexlsHeodo
2022-01-19 17:02:58536fe29b4002bc97dbdb4f89a409168dd8f4166ef7a9d857252fd6e82be07950xls Heodo
2022-01-19 16:53:12c90e7d5d7b914e154dba5a9acde682aea9d957f777039a2eb165926dae35ac35xls Heodo
2022-01-19 16:30:3944da779f7768dcf98274fb702fc93b89b7c674a2de24c2547f3a765663092d4cxls Heodo
2022-01-19 16:21:36b8e79d6d4ce2e23e9b126c3397150be331952bae520caad6039e7dfd048c83f3xls Heodo
2022-01-19 15:59:3606f81a0439de4a88bddf3371586a0d0594bfb213bb35e9b00f300d012e4e2691xls Heodo
2022-01-19 15:43:182ead439d10213f8992ba0fa9c5a4ad9ef3fa50bf9b2ba0b7aa2ddd01a4e8306fxls Heodo
2022-01-19 15:32:234ea8a2a5f986391336015695a1f48749ea0956a8874d8ffe17cc4b6c0865c9faxls Heodo
2022-01-19 15:19:4508326159f288918480978f4ca2d0a705037a18c23e58f779f9bb3bd9fdde6d75xls SilentBuilder
2022-01-19 15:04:48e65457b2422f5bf91f36b2f1a6d12469325b7b580d3d07262777b764230414f0xls Heodo
2022-01-19 14:48:4045436614d9baa751a6da8b87c9736389801dd8daab1a8f82d73aa96f644da316xls Heodo
2022-01-19 14:34:434cd7a9573d00e7cf41a66b48f93031073ed5751a546dd851d52e805248aa3972xlsHeodo
2022-01-19 14:16:42b5ca16a64ab14a0b55fc7b71a1591ecbf68a94fa5a2c2d623ee21eb29091df25xls Heodo
2022-01-19 14:07:473340c74a1202b3e5f9516584a312c057b828436c35a06bbd7c3d0916e9a85289xls Heodo
2022-01-19 13:40:25f019fca804432459a70c27b9361be7db78f4dcb3754485872c11fdfb1da20e8axls Heodo
2022-01-19 13:25:3776faa078d1f1713f316cf3d152958b0db77d8e9255dd084d902b460fb3ea97cbxlsHeodo
2022-01-19 12:43:560c4b8e3f9f33c533fb5f6f6aff0802f3fe3f9c0eaeb8bdbf82687c98c999e3bexls SilentBuilder
2022-01-19 12:36:3180eee1c94351d2cf598dc0b19d25ae8ce3898e3420bbb20c67a6e2e09a4a740bxls Heodo
2022-01-18 21:07:1895141c557c2da97c647844e7c27133e0f8ba49907e167088ad774ed57e950294xlsSilentBuilder
2022-01-18 20:41:0742548ded9ad20eeaa75c1c3c3f1ac4785bc4f7047e5d96d5a020db062f55605cxls Heodo
2022-01-18 20:41:0584549d0eea85a7732786ba55544a742a8811f69deacdfbb1d33b5710c84755dahtml