URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: yxvpn.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-23 17:59:11 UTC
Total malware sites :1
A record(s) observed :14

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-16 22:58:43 125.80.251.126Not listedAS4134 CHINANET-BACKBONE- CNyes
2025-11-01 15:35:38 125.80.153.155Not listedAS4134 CHINANET-BACKBONE- CNno
2025-08-30 19:49:44 113.251.224.123Not listedAS141739 CT-CHONGQING-MAN2-AP- CNno
2025-10-02 12:35:50 125.80.154.209Not listedAS4134 CHINANET-BACKBONE- CNno
2025-09-18 22:24:34 125.80.159.99Not listedAS4134 CHINANET-BACKBONE- CNno
2025-09-12 23:37:36 125.80.159.110Not listedAS4134 CHINANET-BACKBONE- CNno
2025-07-27 12:40:22 125.86.1.10Not listedAS4134 CHINANET-BACKBONE- CNno
2025-07-12 04:25:33 113.251.224.121Not listedAS141739 CT-CHONGQING-MAN2-AP- CNno
2025-07-05 10:57:48 125.80.157.9Not listedAS4134 CHINANET-BACKBONE- CNno
2025-04-27 08:19:36 113.251.224.115Not listedAS141739 CT-CHONGQING-MAN2-AP- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-23 17:59:13http://yxvpn.net/wp-includes/dff2t0t-je2-73/Offlinedoc emotet ext epoch3 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-01-25 05:54:01983ddd1518361a6f16f1b4f4980f9f8e195ab46794ddb14935f83c5a93781f17docHeodo
2020-01-24 19:37:27e44017a7deba31d2c40a8bd2519c68d30883e3590a03407929281ebd1a2d9390doc Heodo
2020-01-24 18:06:27c5ff285a941ab8a9177014c4da25f781d545ce5465186d5a1a674e3ee4032476doc Heodo
2020-01-24 16:57:57abbfd0b5d7417b224f96c7ed693c2f4cf8549db85c79eeb4fd9f03994ff3eae7doc Heodo
2020-01-24 15:37:0158f4a9350c2c4d061072015bf56382f773719d9d78ad3bba260cece6dce54e54doc Heodo
2020-01-24 15:21:10e4db7e7349f371a879dc50766f710ecbe9764269b1cf58ad3e03468a7a5051dcdoc Heodo
2020-01-24 14:06:35c482640e741603ad0f30884fdadd2e747985fbf957756e3ceedda5066125d914doc  
2020-01-24 12:40:449e7cdaa56cdc7f791acec407618bda0eed9992a0adfe090208b17f472aed4119doc Heodo
2020-01-24 11:08:408b2e4b7244319f99c6c6813e954f42c6f9580320d266b016e4752e25c56f812fdoc Heodo
2020-01-24 09:37:4321ed646e9c73d65b5355a50adb7b3a7b2f6d76b45d4248e2ad2480fd784ee8b5doc Heodo
2020-01-24 09:18:19ec33bf8f58aa91fab9e04fe9b8ff924c656ddb9921691b11dbf291dfb37afcd9doc Heodo
2020-01-24 08:06:453ecdbac3227634bd1ee44b83883b12e407a99882afc9d11ee4a751d73b4954dddoc  
2020-01-24 06:35:257c181b5800d9b531de9f431cbd6947e93f55ac0e5f6fcad200acf2466f411a8cdoc Heodo
2020-01-24 04:13:074be1884210b27c4d55b524c41d8c65ccbbf4c086d2915007150cb0a4c8795386doc Heodo
2020-01-24 02:50:22925fd77e54e7f3919be7b33bad1a622b8b9ddce4492dad8e0afbb11f9084797ddoc Heodo
2020-01-24 02:42:128e96c8617604fd15ab39a4e48e257ad769bfc12440f857da0cb0b21ddcaa86dddoc Heodo
2020-01-24 01:10:5179bfe21092e5b5147666511c2d7755c35fd7698f9210bcdf49a44e5c9677534fdoc Heodo
2020-01-23 23:07:440402aa54d44ab4f5c1efbc9434eaf662f5806d349349ce4dbd935c110cef8293doc  
2020-01-23 21:00:5322646615c81cd95618060f1f31470c1769bc5d93dd7c7d38afca0b8cb96ff03fdoc Heodo
2020-01-23 20:45:1876f2ab5b7640f30ff423838998fc1337e13e6ad4d420753f7becf1e06c29768ddoc Heodo
2020-01-23 19:27:11f1d7ec05895eaeda241064ec4901d67a5372659817cab6154477a414177feca1doc  
2020-01-23 18:20:0868e17ea7659b443ae8e50bee4d874db5b873b772ffa3eeb61b5324f2b4c637cfdoc Heodo
2020-01-23 17:59:12d28e99ebcd1a5f41bad24c6d8dac1b6e6103cededfbb13b6c3063a4c7d468716doc Heodo