URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: z5market.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-15 19:55:04 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-11-08 18:24:52 162.0.232.244premium144-5.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2021-01-31 23:51:20 162.0.232.240premium144-1.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2021-01-29 11:44:18 162.0.232.242premium144-3.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2020-11-18 22:28:35 162.0.232.243premium144-4.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2020-10-15 19:55:04 167.86.88.214ip-214-88-86-167.static.contabo.netNot listedAS51167 CONTABO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-15 19:55:04http://z5market.com/wp-admin/docs/afnkozh6h6v3/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-16 03:47:11220ac344a6cec573fee38bce085d019effbac440a1edc4f463c1f5b676b6d082docHeodo
2020-10-16 03:07:302955467d39aee8efaa08f284298b86e105ff6b8855c674bb41e38ca21d2c6bfedocHeodo
2020-10-16 01:57:472ea42eea9abe81ee4415154eabd2fc00bb951b3a234e1b3ef9e824d77ee97732docHeodo
2020-10-16 01:22:00a0af2c0d46bfa10fc4589560d7055a18babee6615726fb2893b817e111f9ecbfdocHeodo
2020-10-16 01:17:51677cb2fc5d7a4e66220d66445d3a7fa7129fefcfad236744a558140e65d7264cdocHeodo
2020-10-16 00:28:48d3c37e88878ac9801e592c464b9f3e15b30ef3096684d4efb9ca6cc6dd042734docHeodo
2020-10-16 00:10:39dc7ade8fcae56fa5c268c86c9602ade9af26324733a73c86e60274a9f5b8e864docHeodo
2020-10-15 23:38:10c092eeeaefd8e9d4c328cc78e77530cb40fc820d921ce06c271c47781aae2da4docHeodo
2020-10-15 23:17:22f3aecd021c57be4a051eb58488f96cd6183ea34153cf79876db7f699d5ce1032docHeodo
2020-10-15 23:02:53590e91cfd2bc7164b8528b3e845e9d45e8328e9148b90c0836936e9d870ca895docHeodo
2020-10-15 21:45:14598b4cf3fc5b97854ae8b54625407b4e6b7f05d8ad96b446baaf0855b754074cdocHeodo
2020-10-15 21:27:42766e921c13edd4367d95fd44b3070b9d4bbee1886ba2e298fc91f030e5e034acdocHeodo
2020-10-15 21:01:58c9570917c32ecb1c6b6e8ffa9a486d3aebc0d0dca67ae6021b1c5a39f22e69badocHeodo
2020-10-15 20:48:3729d8f14d9aad7f7303bfffcff57109e4a24983050638c356af826bf4febc04a2docHeodo
2020-10-15 20:38:072fc8f20d9cf100c7de1244d5ccb17f14230e534ff24921e0cb537ebce7668908docHeodo
2020-10-15 20:13:331d9754d306c2afe8fd501b6a7449ce2b31988935a52af20866fe321c5a5b0645docHeodo
2020-10-15 19:55:04200fd063fbce58987452058b68b6f0d32d9fd51afddd74f6ed466124627fc51bdocHeodo