URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.zhnwj.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-04-16 19:14:07 UTC
Total malware sites :1
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-15 17:20:55 104.21.62.122Not listedAS13335 CLOUDFLARENETn/ayes
2025-07-15 17:20:55 172.67.223.135Not listedAS13335 CLOUDFLARENETn/ayes
2025-05-31 10:34:11 45.194.131.249Not listedAS134548 DXTL-HK- HKno
2025-04-27 10:45:34 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2025-04-27 10:45:34 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2019-12-07 14:57:47 15.164.83.206ec2-15-164-83-206.ap-northeast-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- KRno
2019-07-12 06:26:25 104.253.231.208Not listedAS834 IPXO- USno
2019-04-16 19:14:10 45.39.5.72Not listedAS9009 M247- CAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-04-16 19:14:10http://www.zhnwj.com/engl/QpyUw-RLCl0sKa5xHBCZs...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-04-17 15:44:513b0dfca7ea59595a6d9f8fc164f4a9bd607e328c9dc98325095c192cc7918704doc Heodo
2019-04-17 15:12:512c3d98d9cf62717a08786330e03a60adc1a2ce47c12851e8888f49a3848226d2doc Heodo
2019-04-17 14:25:49117c73553fa0070aab697f65bba5b77da6045b6ca7ec15fb413dc4cdfac3abb1doc Heodo
2019-04-17 13:38:51b2d98f938220671e568ae705b2bac4c01de4c95b40bc84638f91c6e3b05ba17ddoc Heodo
2019-04-17 12:52:4065dd3fe8106394e45384e0fd7d150fc9e5084dd5715e5fa0649e356c14ad6e18doc Heodo
2019-04-17 11:29:2619d0d1e90c44dcc4378723b28ab150034bffb15c5740d1d9741ee618e669d91edoc Heodo
2019-04-17 10:58:28cfb063f4941a5cb9a6839ab562df96961c4865ec5058960bcac0b17219dffc02docHeodo
2019-04-17 10:26:21f6339ecff9972ad336d7f8205dca001b36969fa1fe9a0096ee6e4e0adc896b61doc Heodo
2019-04-17 09:57:32e6536063f41983237a1e7f47ef9a102a604c1ac7ad900cb75165aa7777e14741doc  
2019-04-17 08:40:313550884afe09106b97b5b292849c061da9e51cf6c5502e8b80a2bb669de9aa07doc Heodo
2019-04-17 06:45:15c1b0c4f67991d3ab081a20b0d018ee2bf4d310e751b44625ee47be0f9e9265bfdoc Heodo
2019-04-17 05:59:1785971fb168e24ef993e45d31ab444c6a9b43d2df4ec1473ecbae42cea63dcfb7doc Heodo
2019-04-17 05:13:1372bf89319753610fed457407c2e29a6d4abf243862e0a85129c5b825d9f74d67doc Heodo
2019-04-17 04:28:146d24d29c50ef972b44f93ef0a4485ac1efde90c14c184aa2867c38a16c538bdedoc  
2019-04-17 03:47:11ce70a0d3e4ff34a67d5afae375a13450288eedd8734af6ce559bd070a261a87adoc Heodo
2019-04-17 03:15:15bfb750355455d137129deb8624aaf22659550caaa836eb63d9ca824f6e2e1e39doc Heodo
2019-04-17 02:29:1278c7f1c6bd57c9b5fd9deccd6c8eee1d22dbcab88b6093c634c49f50d92d8fe9doc Heodo
2019-04-17 01:54:22277f3c8d2bebb7ba81bc20c3f884f7ba97fa475595a794b701718526c739aa05doc Heodo
2019-04-17 01:08:1136a99335c6d27af2f6e4b23062c90335dae2d995592cc45eb67dc1a3e47b39d6doc Heodo
2019-04-17 00:22:21fd6b351aa651a795ccc36478ab92b5fb40497dc6e48bc99f46dcc8ff9ef8fc49doc Heodo
2019-04-16 23:49:13575dde62d6879599051db95345289d694bf6500cf6e0200fdbd87665498ab758doc Heodo
2019-04-16 23:02:15230bacc1603f28b1d4d085ad5429d0e07d2df7a155eb1d25e42a87e82dfa8268doc Heodo
2019-04-16 22:16:22938b12f5460469f75a747202beb87f30466c63b9c7ec13a8dce23ab4e38963a4doc Heodo
2019-04-16 21:43:11f32cbe4ff74b1e382bea6fa729854bef952194a257b1a6a04f3606e2f7baf419doc Heodo
2019-04-16 20:56:15de36dc4b54247a8172cda67b22d570a1b6c67b709c2d0ef6ebd9d3878d87dde2doc Heodo
2019-04-16 19:14:106cc2c95cd1419ff8937bab7e2c08b5e3a50dfc8d2e2626841100f9dd28e64918doc Heodo