URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: yanyouyun.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-21 14:38:05 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-21 14:38:08 154.211.12.228SBL636079AS142403 YISUCLOUDLTD-HK- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-21 14:38:08http://yanyouyun.com/wp-content/Reporting/uw1l7...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-22 23:12:5859235980108e00a0011ebeca9348c5a39ef6d6ec0b052e15ddeb825e9c21e3d5docHeodo
2020-10-22 22:40:347e0233149682bb9be3e19f93517b3bbe9f5db41ce48dfa6ee88253a0a98bd678doc Heodo
2020-10-22 22:11:34be4c7d09c56502c45ff8439dadfb9497515c9df9558129f5b2e9884932adbd50doc Heodo
2020-10-22 21:35:44f90f25c4d93aec229941322b4e7d2a590396de4d16baccd18793fcccaab5f374doc Heodo
2020-10-22 20:49:44188d183f83a1b99f55ae2810384c67e6f7be09014e6004bb5ddbf245abda02b3doc Heodo
2020-10-22 20:17:3140ad317b6909d6800860af835411d7aedd3ff816bd1e02c7aa0553dadb8735b1doc Heodo
2020-10-22 20:10:343735f679e476203802d9f194df12715cf31c7784072d4140c6630dea9184ce26doc Heodo
2020-10-22 19:50:408ce84cc08c61ef8da560dab9863109bab6dac208bdb030c9d513aa71dc7b3492doc Heodo
2020-10-22 19:08:477a56b5b48ac48e157ed7a853c891fe72ec3df342d02414d2aca77a1b62772ad8doc Heodo
2020-10-22 18:45:52cd20ae1b00fceba422cc5bd5b2c7e42686f65e5ea4ef237340ffc7dd3e1a28f1doc Heodo
2020-10-22 18:31:07d8bbe49377ebac547c2afa2ab29a64b774b4ddb3501f62becbaedf4d24c33a0fdoc Heodo
2020-10-22 17:54:3679736f48bc5bedb3ed839a65879732bd7302955da6defa742dbc590f04c2d043doc Heodo
2020-10-22 17:26:01401e3ed004f6a908758dcda91de701a2bf29c67379e11a3fa21438ceb5323864doc Heodo
2020-10-22 17:16:55ba76faaf67244b22ede91ccbdb43e3988b58539eeac446392d0c61afbb5ef437doc Heodo
2020-10-22 16:39:240cbc8f1c920ee2d242a6ca5d19dfadee47264af9f96e500ffd59de43cc83bd0ddoc Heodo
2020-10-22 16:26:3130aa3f0d8ff2254375695811a076d309440d33b009b142827eb9e890dba07864doc Heodo
2020-10-22 15:52:4161c90e0b60ab1ac4a891679a1e051a65654201f44b65be90543c41691ebe8204doc Heodo
2020-10-22 15:27:1320cb9774c3025651dcd7afb95472891f1b6bdab40da18e17775e4ec56084d0a0doc Heodo
2020-10-22 15:07:48f22e043076e2cafc9155e8e740e5ab74406ed9e83d3f875772e3f82b69d8d93cdoc Heodo
2020-10-22 14:19:274a44eb422716acd382deed2b165d37ce8de2d799d1c466a1aa2e1952f4b943eedoc Heodo
2020-10-22 13:57:4205902a6c459b5ee113e0160231e64f0c1e0a6023654d545ea93abeaf435b71bedoc Heodo
2020-10-22 13:37:562bc5c1591569f6e8a480a530bf343df21867da564b7503824cb0e5193d3f8937doc Heodo
2020-10-22 13:01:32fcc90ffa2119faa6417ad4df76ac4e324afd8f543b1e3896337c6ce2ba635a21doc Heodo
2020-10-22 12:46:1314a0d5ba65a4585300b4daafa06c20898b303bcea1302012ef2f19559124edbadoc Heodo
2020-10-22 12:19:354d7e619f0381816bed7d0ffb6ea0a43ebd6050cbfb10f691c1bf8d8466c11345doc Heodo
2020-10-22 11:47:3172da9c13652853256f7cab8762f533e63f52328ba4b06d4bf44d3dc0cd5fe2c5doc Heodo
2020-10-22 11:45:1249e99a2c9064c24011dc0c71ff29d661e2b447f8213bc858b7feaa28d5d22576docHeodo
2020-10-21 14:38:0790828b96547b35641ebd76b91c0200f8f057974be00f528002acf24663c9991fdocHeodo