URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.mydianziyan.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-22 22:06:04 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-12-22 22:06:07 13.248.163.145afde296f8e5064827.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2020-12-22 22:06:07 76.223.55.133afde296f8e5064827.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-22 22:06:07https://www.mydianziyan.com/wp-includes/00BTqqe...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-23 06:13:432bed788f0ae4910b2b76b0d6a72af5f76811598705f59de52684ab9f99ca1fa3docHeodo
2020-12-23 05:58:06cf2b33d88046f8e39c8299718c9132fc22247ef02bfe6ae6d404b0ca1c7c6119docHeodo
2020-12-23 05:39:295f5a9d7e2e333beb6d779e447aca446f5bf88a9e05585ef90b1be35599c57ca3docHeodo
2020-12-23 05:18:51b534c439ac7a89c6af82331ebd70e5b5ce5e13a2e871bb7ab122b00004605e97docHeodo
2020-12-23 04:54:07fd76c945ff05629b1e31b55378f97c543c8dce7496389385dae3fd4b8acfd12ddocHeodo
2020-12-23 04:27:142cb1d46e5ca1af22841c4a613b16ee60be1c474065ae89053cc02c6d3740101bdocHeodo
2020-12-23 04:12:59525689f16129765cbfcab859edd5d99fbbec461ea04160605819b2f4b6150042docHeodo
2020-12-23 03:52:18cd26f4220386d91ffb1a0233ece99c207f4335aab6a4c6227d64756f16500ef7docHeodo
2020-12-23 03:20:207d6eb358ac00135b897eab00b943cd207655aa43d509355de0969a65d0408a3cdocHeodo
2020-12-23 02:59:18168fe6ffe9e78f01a7f784833ba9306ef1edad3ccea334df35937424ef0220bcdocHeodo
2020-12-23 02:39:36ba96b09e7eeac72b4363f7b0749f36b0f3b68ecb4b3c40462d0f9d426b4cb483docHeodo
2020-12-23 02:21:449377cbdbd93e4aed19bd96c21d35c83fa1a0927df233e481ce3f7eebe2c0b0dbdocHeodo
2020-12-23 01:57:31c29f20dc33cf2304271a54734dc3746f342898284264bd66094dee544fc133bddocHeodo
2020-12-23 01:42:139a8b914d6bb8ae09a04b32fc897fdb9a9ffc073975b436b031ac837b7eeefb0bdocHeodo
2020-12-23 01:28:25ec49319ad4b8ab163292c8a1332640a715616436de18d6b1124f4cc51b3cb4c4docHeodo
2020-12-23 01:06:241a0263e1f86a9148e3b7434c12cc232b3a3c92df63c0aa48641c627e87949106docHeodo
2020-12-23 00:50:43521ef9721a64f893dc83cf84caab9a76ce0b537e5605d20126c954d3489d89e9docHeodo
2020-12-23 00:32:05c693baac5d3227d362a0fe99ad187c18cde1f45a404c94c881d424023303a744docHeodo
2020-12-23 00:27:46b6a4c5fd2aa2119a83b7372ac02aa65feae5a7d083a93656c4a437dd865a447fdocHeodo
2020-12-23 00:05:3664e04bddf27b3d535ea895f4dc08267a98a4c401edadc68e3caf7f6f850c4f64docHeodo
2020-12-22 23:42:29000b049debe1595e96d46d2cb910795e269d9d3f1b3210bfa45901356b3b3b3adocHeodo
2020-12-22 23:29:5432dbb92d892c9f50e99fc70db5b9f3efe0721a6464984a3f84e6592cda81684cdocHeodo
2020-12-22 23:20:2254a40564f1605df3d177f233fb61ed59c38f1c8adea1284aab637fed81289a4ddocHeodo
2020-12-22 23:04:17b88940065daeda56e1e49c0db60c1e275b39e435f83b785742242104d173a57adocHeodo
2020-12-22 22:48:22bc80ebc602752fe60bc486b8620ac2692c2cf2f368e79cecd3a281ce807855e8docHeodo
2020-12-22 22:28:472d523850bbd1d5abcaf76fcaceba272f038d954a97263941a3375c3301a1e2eedocHeodo
2020-12-22 22:19:42e2e85f53c26daaa6cc7e1fe602e51f272ac256cc0c23725350d37b4a5a888520docHeodo
2020-12-22 22:06:0670325bb19664b06520c37b48c9b0deaa5232904551fa5d01a82ac5a6e735a626docHeodo