URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zhongsijiacheng.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-20 16:00:07 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 04:12:38 49.235.237.104Not listedAS45090 TENCENT-NET-AP- CNyes
2021-03-15 05:03:14 124.70.102.101ecs-124-70-102-101.compute.hwclouds-dns.comNot listedAS55990 HWCSNET- CNno
2021-02-28 08:37:41 121.37.131.196ecs-121-37-131-196.compute.hwclouds-dns.comNot listedAS55990 HWCSNET- CNno
2021-01-20 16:00:55 39.99.222.29Not listedAS37963 ALIBABA-CN-NET- CNno
2021-03-14 14:27:10 114.116.246.123ecs-114-116-246-123.compute.hwclouds-dns.comNot listedAS55990 HWCSNET- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-20 16:00:55http://zhongsijiacheng.com/wp-content/jn5/Offlineemotet ext epoch1 exe heodo ext waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-28 13:55:44ac5e8a91d2cabfca7612611a099036c39370d7be1ae62a595507bdf2f09a2accdll  
2021-01-22 14:15:563a01dd054895600b372a2280280ca77131fd9037f17897cc8fd35f906979163adll Heodo
2021-01-22 14:04:463dc32b01c98965b3be1c044a55bad1a7668101042fa19497f3733d7790ba4c15dll Heodo
2021-01-22 13:55:564a09f1d7e17a776876531c181cd2378eee69dc4dbf396833d367f72a8e297cecdll Heodo
2021-01-22 10:54:07f5a2ec7716664ae860577125e6e304b393e655a69cdd48c93387c0ec08cc98d5dllHeodo
2021-01-22 09:24:234f0aebbe2bd0308a5f20f96491a8c87875b2373da050bb36f8b9fc3200dc8215dllHeodo
2021-01-20 21:41:3506040e1406a3b99da60e639edcf14ddb1f3c812993b408a8164285f2a580caafdllHeodo
2021-01-20 21:24:35ea2ca4c2cc5a2f9fbfb1d0635140ae9789af4e6fdd81c0475b73852b1e22bc88dll Heodo
2021-01-20 21:11:42cb50189893639b856fc2d88a10b7ea95c7e530c4841f4dcda37459adabcc1b86dll Heodo
2021-01-20 21:06:32b3312235dca4aec1ce6fed1098ca64b7994e8018e02e1b8cd43192e9d21a41d8dll Heodo
2021-01-20 20:53:35e3b13b2cfe284b449da75a906f89214c370f0c90a69b3c613bebce8e74c93238dll Heodo
2021-01-20 20:25:42d5fc27ff6d629f0ca93048ff418959c993a3cf3d947164087fcb5585424f73cfdll Heodo
2021-01-20 19:22:453cc58cd56443beb15d37aeb32f192d461e8acd7903ed27a23b09461f3130f510dll Heodo
2021-01-20 19:04:27063fb1f44ec310ef80221f4e85ed44f2ddc0c5f51ea072bdd5ec9614e19c23d0dll Heodo
2021-01-20 18:28:33d3b5ac4e10362364ff4a158c9e89020cd72ad8eb7aa65685ef94ae97e93a3d0bdll Heodo
2021-01-20 18:24:138331b4905dc32b27afcf448617eeaf4e4031977bfd32e45c8312e68fd4bec94ddll Heodo
2021-01-20 17:43:48f8b2a67dfc599fc482abbb2b3ff2712e07408bdc9d1e1ceab74a9549b8b517fddll Heodo
2021-01-20 17:32:17deaab0b2d11c38bb21df6e563533b55e975b4b31cca0a47ab3c56412a07eebfbdll Heodo
2021-01-20 17:20:27f6b85dbba37cf887f6f7b52d4ee0e510aec129ea5f7a150b9a4b136c74b9db90dll Heodo
2021-01-20 16:54:5706ac2fcc64d1a6f04b613948f9d647bf4046dea0903d02074be58b5646e61402dll Heodo
2021-01-20 16:19:32dc4ea913e26b2531c532d97191e325bb575f099fec2a14cd44a5b3f524c3f95edll Heodo