URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zenithcampus.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:33:30 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-14 08:07:05 216.150.1.1Not listedAS16509 AMAZON-02- USno
2021-03-23 23:23:38 151.106.99.46Not listedAS47583 AS-HOSTINGER- USno
2025-04-29 18:38:57 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2025-04-29 18:38:57 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2020-12-22 07:37:05 35.200.206.198198.206.200.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-22 07:37:05http://zenithcampus.com/l/yQ/Offlineemotet ext epoch1 exe heodo ext waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-22 14:27:23470a8a5c6b3327b1eff6a4d47556a8ec1c05c868b979a982872be8bf4279270fdllHeodo
2020-12-22 13:54:58624e98e953aa371cca55d10692e1c800904ed3f364c98900e0e9b96bbc2e3aa1dll Heodo
2020-12-22 13:30:4711ee0b0de0bedc1e7939286b7a57e80b3496b1880c9780188f4ab25b902e70a3dll Heodo
2020-12-22 13:16:4409f04287d408aacb330323d421006ca29108293ebd84bf1c39f6bfbe7453043adll Heodo
2020-12-22 13:06:47def01122e051b79de812c18d486b133e7a3821a8b300d2badc61b588d7b89607dll Heodo
2020-12-22 12:45:08645496bfaee93c18028224db1be7a13d7b6d6b2eb07a9fcc33ebaebd6afa1f04dll Heodo
2020-12-22 12:27:08205b8bf5627f0eedb77b1046d1bb65c0bb73b44fa1b4d5739a1148fdb94653d6dll Heodo
2020-12-22 12:21:21579c9e483c1f20964e47fc4ebd938b879320edf99a9ab9e70531a5531e467af2dll Heodo
2020-12-22 11:52:0167ddb6c43ef34eb80947337e8f1d908984cfccda867b8281d5108e1e2ed712e6dll Heodo
2020-12-22 11:36:267ae431a7af0152d4ddd11311b2ad60ba6ec1fb4429015c87c62cf3920e1617b4dll Heodo
2020-12-22 11:14:10abe84d12d77dec85b418b20ac0ea7cf3fe1f2c7a7dc5a90cb9f4202a10087b4cdll Heodo
2020-12-22 10:41:03d8a6f2e290476faeb91f9caa6759e6013ff1b5819022a49c20e99605afc309b4dll Heodo
2020-12-22 10:34:52646a9b7319beadd9fc6030ad4a211ca5d05a94d20b06a6a06005dbbe02c9c7ebdll Heodo
2020-12-22 10:11:26471407ddc0c1307c13f90b208c4d426806514508eb5baff8b75db0cba6d34434dll Heodo
2020-12-22 09:53:33da4ee949c8c46e0f6a6dd855af7f6208b568297fdc62fe76cdd3273c6ed50c82dll Heodo
2020-12-22 09:32:19f4fe5045f065663c40a8eb791609a3d770472bc57eaf779780f157f0e4a9e30cdll Heodo
2020-12-22 09:12:35de5cc3e32b1d749d4d025ddf3a3cbc7e9be4b18aee5cd3c6870c88f41ca35bfcdll Heodo
2020-12-22 09:01:1762b5badc64e2f7e152af49d559c2d12689cac075027b5182482a6906c4786b1cdll Heodo
2020-12-22 08:26:49fa1a734976f2606e2d0529e364b07360c6d15ce4bfb8cc38aa34cd242302d0a5dll Heodo
2020-12-22 08:10:20ea39bc7447d8a1b11a27787b363ed3f38a5ea8d78c1314fe044795f6399806a0dll Heodo
2020-12-22 07:37:05f836b530aa0aad30865fdbcebf050871ac1099d17719be35bfd8d163587c090adll Heodo