URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: yjhgov.work
Domain registrar:Alibaba -
Domain registration date:2022-01-04 04:00:40 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-20 14:51:06 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-01-05 21:31:57 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2022-01-20 14:51:08 159.138.139.161ecs-159-138-139-161.compute.hwclouds-dns.comNot listedAS136907 HWCLOUDS-AS-AP- HKno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-20 14:51:12https://yjhgov.work/images/4YhKPqWeoAo2sakyrR5B...Offlineemotet ext epoch4 redir-doc xls Cryptolaemus1
2022-01-20 14:51:08https://yjhgov.work/images/4YhKPqWeoAo2sakyrR5B...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-21 07:24:056407591df6ce61f946e24715faa6fba1b1f3221e2baf22f6c4f5a64f1ea98eb5xlsHeodo
2022-01-21 06:59:363ca3bcd5771a06938cc8e8c44cd2c85b794376401b469fad7e5d4b513449fa27xls Heodo
2022-01-21 06:43:29e59173f043483afd41faf0edf28ff91047d48ddbcabe29efe43bbc7d238c9861xls Heodo
2022-01-21 06:32:065a6ae409ad46c453172d047a1b1d7685cbdcc317653d90c6a968509d1c2229b6xls Heodo
2022-01-21 06:20:51f35abc3dbc3faa333da128234f2b7778969e1ea5f8ef088498cc8ecf325f8a9cxls SilentBuilder
2022-01-21 06:09:067efacaa6dacfe6bf20d27faaf86184458461e64165c615cede70b42cf913f8aexlsSilentBuilder
2022-01-21 05:51:12c60a6861fc63f90b9f872e0bc131fa85f6af0daef37063eadf6d10890acf3bc0xls Heodo
2022-01-21 05:33:40d1f5ad731dbf6263cbcee95b142ffb0ebc190205ae58d4a4948bb3e5ad09e4bbxls SilentBuilder
2022-01-21 05:10:116f95d343a882d6e800379be638a48804dfc956537ffcc06361e1f57fa2938808xlsHeodo
2022-01-21 04:54:55a3d7cb606d8f77987119021ad7d89fac7d02668d86ff90db65c87e54a15e73fbxls Heodo
2022-01-21 04:42:00e06d794800a6c8e29eaee2ec0e2ccd9f60b00c7d6c9b4a80ce605a4c156f9982xlsHeodo
2022-01-21 04:30:59d314b3d22bcf83bf1f0dfb95189d8101cf360bfb61041246129f3f95f8de2402xls Heodo
2022-01-21 04:01:55702e9fcc889535f1c31e1bad34de6e4456520ca0687f9240a318140924bed3cdxls Heodo
2022-01-21 03:47:22539a3855a176457a29262e61d738250050450a8a6adb2b1e9c8961a40a6cad57xls Heodo
2022-01-21 03:42:14053d625d162a5e1ad61603ca7d6dfd915cc175e991eaf3377a55b00853fabd07xls Heodo
2022-01-21 03:20:273b8dc8f1f75a66d545d45ee9f4160ea99cff4e8cc3f5b265ea27736a3eabf381xls Heodo
2022-01-21 02:57:55d26fa50d28f1d5fecfbd935c7c439e19ed0336097938d366f8d2cb3e8c039824xls Heodo
2022-01-21 02:52:50ccd9c6eef79a18615ba690a35d8a2f238ef0d6cf1e715536299b42f9e67357d6xls Heodo
2022-01-21 02:31:43afb4a25125020d107aa065816ff0c80dfbc85d700a654a29b73aa8143c2e909fxls Heodo
2022-01-21 02:08:234c2ddd629e265246f75b3e606e6bc899afb3c82020fc9a8f440e7793d6fed047xls Heodo
2022-01-21 01:57:41278e2b44764f4223799867c585d886b7fe57313055f5f82d983f7e13e1a49aedxls Heodo
2022-01-21 01:38:593accfd2337522a6c68a1018979e3ac6603237e13aff0b962ae093662129d8609xls SilentBuilder
2022-01-21 01:27:574520398e8aeabb1aed9cd4899a2ac014545d9ad9383959288cf2470f9c1c4731xlsHeodo
2022-01-21 01:05:281b6134b3db142025a7ebff094a48928647019264965031e089063502561e7ca5xls Heodo
2022-01-21 00:53:01e57baf9289180802e131633ce599fd55a0a67db3423c45d62f4a88fbf94a0874xls Heodo
2022-01-21 00:33:0201bab18ffb7052e8d67dc6447267ec775667a721592e609cf62dd08649d7a807xls SilentBuilder
2022-01-21 00:23:33cb72aea24f710a0d9b643de1e759ace18205bc20aa8aa7a91ecf20e556cad41fxls Heodo
2022-01-21 00:01:242d259bd946fb388d1a7d75d28ba591aca3377e0ca8b49e0add414fe82b76f483xlsSilentBuilder
2022-01-20 23:53:1688c13197081731462e05ef64b1c9abbdc1b85e0e573437506270137fb7b735d8xlsHeodo
2022-01-20 23:31:01b0e176129f7c1c4ae1d31d420d8ecacaceb6c4682002848a769d98e4b0f21399xls Heodo
2022-01-20 23:26:45345965e8a8dc6b64c4fad5c48851aa3a2efb483d409eb259fb2ceaaec1f01dbcxls Heodo
2022-01-20 23:05:02536582463c4d7bc11c931e61b72316d539e0b4ed677451ec3ab8942f6a02a040xlsHeodo
2022-01-20 22:55:093e36c6f45c9f9361f6c28f811cd2048a727e022281815b02c021811cab7ed01exls Heodo
2022-01-20 22:37:407758c1ef7b05f4e4e7e283eda2aba34801589c1ed656610c149a5b1a1a0b7fc3xls Heodo
2022-01-20 22:07:5948fee052f0fa5361ddc892d4768321a00e5c80adabc60654488ea8fc1ffa135fxlsHeodo
2022-01-20 21:45:1526abe8e8297849c2a5721808548030b0abb405538a62e4a4d7bc0bf2a6279476xls SilentBuilder
2022-01-20 21:31:40e099be7b0c6f692f34ca73c32d72d85e9f0465fcf630dc6d929ff4280496c27bxlsHeodo
2022-01-20 21:12:5851dc452edd7c975ac8f632ad888d6cada4233c19aa061416076abbdb2ac596b4xlsHeodo
2022-01-20 20:55:53e33811b4dab432d10d50a8357ec88ab255590ac412e6a386ae3cee55c40df20exls Heodo
2022-01-20 20:40:285d372591b1e8b3107e0e57ec3a38f1d2bfd43afef5f04bee85334f46f57d71bdxlsHeodo
2022-01-20 20:28:29b1ee7aa00b7884ed02a3f5ddc07419b6e8dd6e7382269d8cc5511f06431d5eafxlsHeodo
2022-01-20 20:17:404102ee23d580a34ad9a1790ea81e7d9739cae27b843165e0daa30b9450585db4xls Heodo
2022-01-20 19:55:173ce617ed4d5a78ba123d6463b4c0c6b8e7ea29f0800761e9559c8bf182f21afexlsHeodo
2022-01-20 19:42:09670b10a706a22c6efc34af36bf591688d08eb44be993d5901a66525c6369bd9exlsHeodo
2022-01-20 19:19:33db6061f8252704ee6f243e9d5792be120e6743cd366b4ae8f3b56d12b00866ffxls Heodo
2022-01-20 18:58:29039adcca4d205850117d5b2348ceec561c57868668ab822350ef94a9b9467842xlsHeodo
2022-01-20 18:42:59a871770ef1ba329147828026ab5d7d1d0edf83ea93fca2bb2d0faada51cf48e1xls Heodo
2022-01-20 18:08:361406e7176ae6fb7aba0fb00e8658291ffeb38c2c9d844bdb47a8131c697342a5xls Heodo
2022-01-20 17:54:538367f873c806ac8d56f4ddb2f158e4d559c67dc1d7b66ac3221cd28a2c8079f9xlsHeodo
2022-01-20 17:40:3488f602cd8f6b66886acb349720da52c3f5fdb367fe8a72f76812af27347cf32exlsHeodo
2022-01-20 17:25:20d7f2a29fddd8dd58c32e86715969193b8a5760e98aea4208c925324af3a633f4xls SilentBuilder
2022-01-20 17:12:19687e234c7b54e2590520375221eec756b91e6e03b05bbb313e8765457906c707xlsHeodo
2022-01-20 16:52:24b7c12da037688c432bf94d80c88811b29b1a4d379a84ff3d6e6ac95eecf15680xlsHeodo
2022-01-20 16:49:33b3973d991b4f3e3870404c40bf59257bd40f4207f10dd5a6c34a8d4e29e0f7eaxlsSilentBuilder
2022-01-20 16:34:044b90a0d2855800baf3485d8e0c38ec0e5aea83050ceeb38061af07eca0d16febxlsHeodo
2022-01-20 16:10:28f8df5c1460204b9a00c575ec537837a007f7e09f3c16b2525e119476eb8f9316xls Heodo
2022-01-20 15:49:50d0e970149a72b878303b425cbeb058aac6d74f1b94b2c3e150e40ea7da2e9072xls Heodo
2022-01-20 15:42:18167d9ba9d50caf33f2e4e83958b809b81e5a3f9bd5e259d2e233ab5c299afecfxls Heodo
2022-01-20 15:19:4834315a97decc512b1ee8e3f26e5f2ff6ea20bf03d6e8524b970df14e18ecfcb7xlsHeodo
2022-01-20 15:06:426b65f37d876f38bcc12bc144f25a9674a7461b5500953b5ff8bf02186d82b3b8xlsHeodo
2022-01-20 14:51:1109d0e2e73043af5d8440004b22dd992e54a39da3e5e92481ffe6f333a755685ahtml  
2022-01-20 14:51:08eb2f4d9d99c1276b3b2687814ceb4805aa527e17b41fd2b7099d8ac693c2f6b8xlsHeodo