URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zdaben.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-17 12:04:02 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :11

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-16 17:04:57 104.21.79.136Not listedAS13335 CLOUDFLARENETn/ayes
2025-07-16 17:04:56 172.67.145.191Not listedAS13335 CLOUDFLARENETn/ayes
2025-06-21 01:08:32 154.208.216.228Not listedAS134548 DXTL-HK- HKno
2025-04-27 12:02:07 47.76.127.217Not listedAS45102 ALIBABA-CN-NET- HKno
2025-04-27 12:02:07 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2025-04-27 12:02:07 8.218.208.240Not listedAS45102 ALIBABA-CN-NET- HKno
2021-01-13 02:23:18 104.21.3.11Not listedAS13335 CLOUDFLARENETn/ano
2020-09-23 03:46:55 172.67.130.2Not listedAS13335 CLOUDFLARENETn/ano
2020-09-23 03:46:55 104.28.24.32Not listedAS13335 CLOUDFLARENET- NOno
2020-09-23 03:46:56 104.28.25.32Not listedAS13335 CLOUDFLARENET- GBno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-20 01:20:14https://zdaben.com/wp-admin/lm/azkdao95vu/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-09-21 18:53:34https://zdaben.com/wp-admin/INC/CW1ng7WMEZixUZ/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1
2020-09-17 12:04:04https://zdaben.com/wp-admin/invoice/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-20 01:20:148337cfc31ce0d2a11afe2ee6a21927a95783115eb07c10ad21f4f015338fc7d5docHeodo
2020-09-22 12:04:2253ba841833e4a9acfb16fa855e6f616913dfd599db840ad5f7aba6635ebda0aedocHeodo
2020-09-22 11:19:0662a247c06790b9986416ffa1044dc5d8bff40b6b706081e25f4db985f613afc6docHeodo
2020-09-22 10:35:58ef28e3219caccf8576b7f4eb7146b9fc62fa24e5e962b80f11c01df5a146e758docHeodo
2020-09-22 10:16:13edb38f20a57df9726e7a8a2f78f122e7a968a390fa006a996d93e06a040df87bdocHeodo
2020-09-22 09:50:534f8e5670cb71d357da7b7eb48753d60aee76b24e8ad9bf8c7908c6410b488b64docHeodo
2020-09-22 09:43:2837c4ad414be30dc65ee64153c1bafdfc4c89085c285dee64d6516423f718960bdocHeodo
2020-09-22 09:16:0176c0630543f301f3fe63e8ca4ddef6171019fe2bc21d3c891bceb80774bb4cafdocHeodo
2020-09-22 08:41:524cfc968cd768f17951b0927ce37e5713686b0a8f2b112c3883ae23f8d190d781docHeodo
2020-09-22 08:34:407e348cbf0bb85b15e9f742193f2073ad5cd0cda176a4f0da91a947f9bcb54b6bdocHeodo
2020-09-22 07:53:22f482643e9c789b0358eca0cec6dd9523355bffb2da53b01de9027ace5430b3d0docHeodo
2020-09-22 07:45:37f0dbc484997e20fe5db380cddafa06e0d939fe71ce91d0fe4ed65ebabcd06b3adocHeodo
2020-09-22 07:19:10ec37b136624422e29c88210cbd3ef2b25ca9ec1099ed0db90314595f7421b388docHeodo
2020-09-22 06:52:48f46d933cc794ec8f95dd03ddc687ee164ba570053e0d0813e8d79c4d09ab368ddocHeodo
2020-09-22 06:31:493a55d135adcf77677eb1ba21e4b5425ff19a8198264e313df904dc6982bf1a80docHeodo
2020-09-22 05:59:275744548adb59f24037bb5500e559b80bc6917502f107b28a16b38ab4e6abfb71docHeodo
2020-09-22 05:43:318934785f5b6877f8dd468cbee3d8eb5b07b3ed41ccfbaa1fd2724287c6b58fc5docHeodo
2020-09-22 05:07:337d7c3ac7f91ddd427921fa257d0e556486d9819ee2e21115247c2b5d763007b4docHeodo
2020-09-22 04:42:35e5feef66c305d39b964ea0daecb60211c37c70d35ae53a638ac6a43c344abd4ddocHeodo
2020-09-22 04:29:26cf1ab745ab6a4dc857eb8232bcbcfe7675540dbc45e29114985c290ff415b8dedocHeodo
2020-09-22 04:05:39b3bc13c79571b2cf77ab2ad7a593e512bbaf1bf61f0ac3eacb10e78e840cb9fcdocHeodo
2020-09-22 03:41:15b3838280203a43fd02a295edbba1ec0ebe08ac22efe3e8e5baed626f3ebe698fdocHeodo
2020-09-22 03:32:06943f5e58cd9c9060ea37bd3ca7dba199921932c07110941346389657a4ef1a6bdocHeodo
2020-09-22 03:09:51d05527f19cbcca0953e287b0b76194570b3c3e64eaff273f6428446e1a4379dcdocHeodo
2020-09-22 02:51:3190f5fcbadecf831b2ea1ad31be2ad24a539c2886611a270e23975355d3ba2692docHeodo
2020-09-22 02:18:263cb78e2ab36c72f8292da6808ae005ee3aa17c694c35a65fea4a89d0f972d121docHeodo
2020-09-22 02:09:40ce99d6a97e21495a2133ae942cc02e674461cbcbd4065b65eabdb8bbcfa5743ddocHeodo
2020-09-22 01:36:23cbc24d09773cf56460c3a9cda7b497317ec61632c48aaf8615d94fe4a58ac642docHeodo
2020-09-22 01:25:47ddabac18016628a7b4e14df72caa0012c52af6a318df5c236615b4869b257546docHeodo
2020-09-22 00:50:30f9c1f50a35c2941949d6ee8e91935c1fcebd4b1f46849f8870ff3267bc5a88e6docHeodo
2020-09-22 00:34:04ceeeb96a381895e4e8e1b6d7a37870865d0d21d8202c86996ceea054fdc6ad4fdocHeodo
2020-09-22 00:13:487a69f4936890bbd4971317e9a2abf4042add105e51a3da5fe2be1251a9a68ae7docHeodo
2020-09-21 23:35:45e555220f1fea5978ed71dd48c9b80f989ba259d12fed9b96cb8692e21a706971doc Heodo
2020-09-21 23:09:12457b6a08f7e1b6cf8d09929198bf73710085c58f346b256d31d99645df480e67docHeodo
2020-09-21 22:49:59afeb53f8204c23e2ff8f5733e97220ecfb71466eb4f3f9ad1aef0807fd216973docHeodo
2020-09-21 22:41:23408b12e331000ac29de83635501b2c1ad800d8465e28a0a8054f10c4fdcb091cdocHeodo
2020-09-21 22:07:47a71eb1fecb04c956e351274028426fcbb1a65045ab70ec3f73350e15fa439bcadocHeodo
2020-09-21 21:53:42f0e77efe2ed5bb775bfcefae4448ed8dfc00f824d1e9a9b5f6ea63624ee6a360docHeodo
2020-09-21 21:43:49b6a912df69f9643eb650746c7b191bc2b44d760e2a51bfaf8eca19a74241e06cdocHeodo
2020-09-21 21:33:38c1fbade9d5f7c2b5705288400f77ce167e2f71ae4bda087c52e2983d2dffbdf2docHeodo
2020-09-21 21:16:18bf472ca39b5a4407fe40c2130b3bb1495772cfe47feb4c79046e811be37e8d95docHeodo
2020-09-21 20:46:57b2fdf39787d7404bc206d1a5ed3b41053eaa0c375641af699e74f70281097f29docHeodo
2020-09-21 20:27:53cc422106d6dd2c41a70e946a117c310587b1beb090c9366c0122801bdbf0ab0adocHeodo
2020-09-21 20:02:2749b275e5af380c6534fa127d28e602929157b7eb19352e9a03fefd4271f678eddoc Heodo
2020-09-21 19:44:5877c88c85cace420b9b8fe01b1306ee27674e3ec8a457d99302c980ef2e271a3ddocHeodo
2020-09-21 19:31:0235cde8868a2076e10e0dfddb3ec487a74ca52b6643cef4d514deb69d11e9edd5docHeodo
2020-09-21 19:12:45afd45922c3589ecc0dd6a70924ddb82a913798343dd9d425a83b655e94517da7docHeodo
2020-09-21 18:53:34f843c6d86e65d7abf6658590e9c681aa01ccbf1e9938afccbf4e911e98dec3acdoc Heodo
2020-09-19 12:15:06740cfb3d99d5e264b7c9197cd1650f590c6aa0c7e30fceeb226cf46af9aae744docHeodo
2020-09-19 11:47:29e94370a66b084c6e99c0a16d5b777ba5d77c0e9a63ff4c237635ea1b37281072docHeodo
2020-09-19 11:29:03e1e9afb5bbc575dbf36a065e3f986bdd46ddb7a3282b2d41a5fd8259520c1cfedocHeodo
2020-09-19 11:03:022bdb231a4e071c32f3734fa0ac5a13e5463ad6aea21e4a089fe1a1c69a56d372docHeodo
2020-09-19 10:49:08fbe339f0f024e007aa6965b220a545dcdbe63fc8c877adfa47c8ba137b8c94eedocHeodo
2020-09-19 10:23:215e26ff2da8ec2dc57e3ee7a4a6aec18f5d6c6102fd03e5e1ad8caeaa1c2943efdocHeodo
2020-09-19 10:10:1235b7b5b1fcf159556bb2f5363ef7d7ac72b3f4d1e9357d0e2a452b8c99bfd0e5docHeodo
2020-09-19 09:49:307a015b6833969e6837d78d58ac9b507cdf02d2272798f7cef35fdf534b58b52adocHeodo
2020-09-19 09:25:16baf14caee52ad8e738841f063d3461ab68c5e2b2144a1a8b38d7c7bc5dbd0bf6docHeodo
2020-09-19 09:11:50fffbe59f1dc6c2deda79ca2307558610f2c5abb3e030a07d7e0be1969e2fd45cdocHeodo
2020-09-19 08:56:25977202ad05f3dc22921ff8db4e7555d1ba9c34fea406b306febc83513fce069cdocHeodo
2020-09-19 08:35:5415533d02d9310a6707f2092410bb3deff89174f7bc64f893a98e946f2ae3ba3fdocHeodo
2020-09-19 08:22:414165b27e5b534a04d00fd600c969784706dcd31a10beaa3b585e754f973d89b6docHeodo
2020-09-19 07:44:4964e48a3ff70c94d505c873e8a67d31e9e482b8abca66fdae7b73d4f89b69c7c3docHeodo
2020-09-19 07:36:17918a64048af4a066fdd935050729fcc70f074457f2943f59469ee5f3bdb0a70ddocHeodo
2020-09-19 07:14:4953c798816c0299b0b57dfc31682d5bc2a73573f248e05ce8b5427b1b9d908150docHeodo
2020-09-19 06:45:421fdd870e2f8e533d5592145cd1fc37281bd190265fb33663d5f8b0bbab9e8e53docHeodo
2020-09-19 06:36:312f74b7cb39258bea3019a9fc83f6fdcd6ed4e675e175236ae83bf0ea02af0e0edocHeodo
2020-09-19 06:04:459836021a37477ee929f62edefd022550374c055f9629119c37decbccf76b0693docHeodo
2020-09-19 05:38:59665e6d41d9f3986a71b02da9888ec9a5eeb00da227377007e6f3df8c0a703466docHeodo
2020-09-19 05:30:07b1be0fa6951b0252445d71a28ba08ada17974551790e1c61194c013249c97425docHeodo
2020-09-19 05:02:517a41acc2bae61a34f8177e8d2cfa0b5f268c583906f678bd7331d9aca266f238docHeodo
2020-09-19 04:41:273d64095f4564ebc30eadbe6a61d8dd290bf34c82c7c49a9accc8179312fc53eddocHeodo
2020-09-19 04:22:52f29d80209cde1118a9399b3937016f28ff68863180d6f36ef6d55fd099de06c1docHeodo
2020-09-19 03:58:03fbe06b77331c2615ddb714d8e539f9f8eb7e35024aad5aad9af594b528f4450cdocHeodo
2020-09-19 03:45:32a750366c2526e29a08f729005ab062b1a98ae9774f4c3d0ff22d881c67405c41docHeodo
2020-09-19 03:36:369cd1ed00043bfb185a3b497fb855abad25261f016f8882ae085daa73ffb32deedocHeodo
2020-09-19 03:21:575f38c1fbef4f42be0184fb63effb0a6d953cbb55009cae9ade7e21c580ace133docHeodo
2020-09-19 02:58:29085e7e7f6527b89c4e08c3a4094c41e50f2f10bf83f6f38feeeb5291f9ae9491docHeodo
2020-09-19 02:23:57eda809ad0a26585bd981ed4836c84dd4c4844d775d5ee471d3c35e980e71cd10docHeodo
2020-09-19 02:08:5825f6bd48cd22ddd4c34475c97f148f31887d589bbbd02c7dd149be3d04958842docHeodo
2020-09-19 01:48:14cfa732f080d66f4255202de5836aedb5332dbe226ea5ff3e49c926ee56519cdddocHeodo
2020-09-19 01:39:270549a96b45be7693d38af5e4063355260635db3e33191b92e82e43c49eda7901docHeodo
2020-09-19 01:03:485326cd2da7c0509dc8be7c9c7eb457bb167e21c37854cac38b3ac508b5f007f5docHeodo
2020-09-19 00:26:3270b754fdafc77f0358317dcd23600e0d99a6252fe4a9dc823aa2cf15f2713451docHeodo
2020-09-19 00:08:07ec0a9a535ccb576248f4c7900428f2a898853aa83d6cdff165a23414125d8a68docHeodo
2020-09-18 23:49:443a245c3c3ba3257272ead17995d6b4913540dd24162a40430a05199d36f50768docHeodo
2020-09-18 23:27:33c536931bec7f39621f1f86cd9b7b49ba58e35ba7a7f6ce7b92724de491137e3ddocHeodo
2020-09-18 23:10:28af7a05d648d4175f924ff2431748c2bf40e15eeb256d2135bfeba80f4adbd149docHeodo
2020-09-18 23:01:14143d3dfeff768c6ff529e34fe2134d9fcd1e8adffa35118c52d37eefb124abeddocHeodo
2020-09-18 22:40:26e351cb48427d30ca802f3beabc78c164446cadd34d2f040fa46a3842299b2f82docHeodo
2020-09-18 22:14:31f517a93071e1c1603f17e27fcacb8895394f49626d63add12daa6f605b453ca3docHeodo
2020-09-18 21:42:26f5fb5d637a37ec6c6c5288f46bb6ad3cb9559037f8df024aba1f9bde1d477a4adocHeodo
2020-09-18 21:24:03c78cf5346497f3b9c5cb2f0734b631178c25eb818adf58b25aba4c7d6313f442docHeodo
2020-09-18 20:41:380aa73979be82abb7de5cea63d84c5beb0a336e1fe73884fd41fdc40272c1dfe0docHeodo
2020-09-18 20:34:59e3c7337d6899a5aa8ee475f563c6c84af325ac88c2a30a676f56d6182a75b59bdocHeodo
2020-09-18 20:07:254e500dc20300e081376f4f6951330ba0b37700ae0b23ac5662a2e96e2cd9a755docHeodo
2020-09-18 19:40:24f4df1dedf37fb1a9ad0516f16dda120c0985d796a40d02474b9ae4c613c402addocHeodo
2020-09-18 19:28:07fbb0768a54c96daabef7659e5ec321d26211a023027f8beb9b9b5bf49f36d583docHeodo
2020-09-18 19:15:28fe79ed4902c209d55bd37446fc8d4ce7b37f241e85e7d17264051a8cb300fa5edocHeodo
2020-09-18 18:57:32d23fa82b132d789d0acf534793a6437c0fbd0b86e7e85475b6856e558b964ca7docHeodo
2020-09-18 18:30:162be116761f944e13024bcdd5438723cefa835893e4fff5b6469836a25303c683docHeodo