URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ziba.club
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-17 11:55:10 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-26 12:42:17 82.98.132.55hl851.dinaserver.comNot listedAS42612 DINAHOSTING-AS- ESno
2020-09-17 11:55:10 54.36.145.173cluster028.hosting.ovh.netNot listedAS16276 OVH- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-06 04:46:04http://ziba.club/sgo0342z.txtOfflineDridex ext bigmacjpg
2020-09-17 11:55:10http://ziba.club/wp-content/LLC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-06 06:37:42adf6d91922505e07b840cdd9f74d33d6c7872bc6534a9be6b27b5d03470c835bdllDridex
2020-10-06 04:46:04a8b125a1162491b5a6d0a4372aea196007ba8f96ea4dfcda4c05ad5a65d03378dllDridex
2020-09-18 13:12:051e3201bbb2deffb9ba87ab7c3c4a40d86a2453bd105b0bede74c0ede7aada9b9docHeodo
2020-09-18 12:48:567236342a25d3c4a01142b4e442a06a79b04c20546e4694f7cec1b829c13fbd5fdocHeodo
2020-09-18 12:22:19917291b862e0556f8d98d9dcae320d8b6d9307ee1978e2c8ddf0608cfb87ad85docHeodo
2020-09-18 11:53:342121c5bc91b394da5845d8effc92948979f57c4bf252ffd09451fda76e1c273bdocHeodo
2020-09-18 11:13:49d2a69c58abe4e6aa189d2eb2df014d31d32208d552627e3802565ae231cbc587docHeodo
2020-09-18 07:33:0583676faad35894bb04262d898f1279995a52ca4f91f343223e0403b6c915311edoc Heodo
2020-09-18 07:04:00fe543bf25849e02f9c6cdbb37ffcf838eddcff1effb9dea466557fabb673bd20docHeodo
2020-09-18 06:42:047d6af6fb5524fab475918225161ccfa03fd6b0893b5d6aab343555908978e002docHeodo
2020-09-18 06:29:0881098064cd4ad8fdf1ccf43093703418fee8dffb9970aa44e9f9be469df9a310docHeodo
2020-09-18 05:55:09af0e40cc260afaf98685419c7a7e2a7bb5071876da22daeafb069c208b8a9ff1docHeodo
2020-09-18 05:38:218f5dd0f7d3c0f356a4a2cd39351f11b5be1e32ff16162229fff6548dc8ada245docHeodo
2020-09-18 05:04:568780a28bd25c92af4f9ad2f7a4b99acaa81ae7f410964f7155f9b69037cd2c15docHeodo
2020-09-18 04:41:334401b8e76e1cba8daffe10ee7151f70d1ccb78a6857c49598c33f9b8bade1541docHeodo
2020-09-18 04:20:327a20cfdc1bf8e38ae094a08d8c24b9fe9afc5019768f31ce2a89a17898420878docHeodo
2020-09-18 04:13:44e28bdcb88599994404e848c8dcbaeca4af4468e9e45941e1d16541054b9f0fe1docHeodo
2020-09-18 03:59:091121962d0a0d52780b13618c7cdcc2916ea8ffdcccb17ae0e54e0b9f8799c5eadocHeodo
2020-09-18 03:46:46db5b2b2884b15b7c147a886a252cc856516d36b4c8fb587dc9a46063f39153a1docHeodo
2020-09-18 03:14:577e96a13f66a51a3a39430169e9c21da4780b9630c7699ffab5ae9b137122dfcbdocHeodo
2020-09-18 03:08:4988ef0981b06e7ac4b9df459d7c10edc857fcf9c170057b9220ef9ddfd550f06ddocHeodo
2020-09-18 02:37:16bf8ba8f948673c3556726edb8ae210bb81ee962e4c6a15cfd27e3901396960a4docHeodo
2020-09-18 02:27:10971112bf91b341992aa8874b52425261e68b7cec89ea114487056783acc97e56docHeodo
2020-09-18 02:06:514b9a2688db3fd6465d84ee5baf9fbdf6c50772a16d3e7c265c758ae284e8a63ddocHeodo
2020-09-18 01:42:12ed98997bd450d0c8f1285f0677f4735e52e35f8504b6ab44ca0af91650f29ac4docHeodo
2020-09-18 01:29:566e221be1094865f6f92e91e222da06c0cfb67ce691d0bd25afb4b4324bb05714docHeodo
2020-09-18 01:22:11230fa7a324c31b742bc3e78cd724d571d7a462ba188b8e6dfc9f7060cb24fbc6docHeodo
2020-09-18 01:02:504a6e1fd8e8858273824ae02adbef685cf16079c6baa36e1ff244a6b93db151b8docHeodo
2020-09-18 00:41:43c68b2be94aaee607635cd2becf20f8fed9be32225970b5572ae7c83a643b7211docHeodo
2020-09-18 00:18:34043a2eea0e970c626f6ff1aa5ec43ffd5974bb5192e55c0595ca6b3ef0404fd7docHeodo
2020-09-17 23:56:5912412cd6a77f4f37c4af299317f54c6e10deb114a14d2ed1f0de95a3f8466b51docHeodo
2020-09-17 23:45:49074d30932dc73bf17312105a7a4a157bd6cd44f75ce2cd67026282c6bdb3b21bdocHeodo
2020-09-17 23:12:43b7ddf91ff9e8e25f296efc62a0d79d6077c5ab794410acec14f45d7e96a35d4bdocHeodo
2020-09-17 22:59:54fee4f66531abb15058e37ea550aab747c84213322ca2e601d25dd1de87c7c234docHeodo
2020-09-17 22:47:32ebce78b8c9a54b4d497ed1c424eb689cd0959596daf9f6748a46b65aa84b91dadocHeodo
2020-09-17 22:29:02009081468aa09b402378444010fd772036dbefb92c839179c69cdbcb23133a33docHeodo
2020-09-17 22:18:499c119c1d39a1e41201dfbb087466fa543558f959d147c3e8ef77650beaff2d9fdocHeodo
2020-09-17 16:18:00794d05a964943c6e59eef584b6bd5ee060dec7907a990ec1a0d71260e641c74ddocHeodo
2020-09-17 15:37:48eda948b222a92d6413713f55234470c04b2433e2382638dcd362382b73dfcc8ddocHeodo
2020-09-17 15:31:5846ed6bbe96a97f0da9479591c55394830ccd60524bcfa7b78b035514fb9a8ebadocHeodo
2020-09-17 15:23:1155f67049f14332814d65bbc5690f2538dd7fe24edb943627e039a7ff43ab1fb8docHeodo
2020-09-17 14:52:5403de8778d73e8753ae7006da7b533c87ac0ee1c1552d06188e045d5d578782a7docHeodo
2020-09-17 14:24:3155e876b6274746f9d8486bee3ae8b45b9fac29272c39e6d09ec38a93903d3decdocHeodo
2020-09-17 14:02:0514650f22ccd9ac8f4effcb6415afc3ee21a1a681e0d621888dd3e28a30e9e237docHeodo
2020-09-17 13:30:35ab673a4d98deaf332cd304d7285159dc8a473d8fb207d7746403ecf3e81371d7docHeodo
2020-09-17 13:17:2324c7551200e919fc0bdce151aef784c0c324c81a337a8bf70e67cfebf1abae0ddocHeodo
2020-09-17 12:59:00c6dcfa2a31a094225c25a0d53cccd915b76ab34be20b10fc775d740b3e6d9b21docHeodo
2020-09-17 12:29:3122823faf02dacc31bab524d0ff73e36775b3f629be5a241f9334b6f094220b0edocHeodo
2020-09-17 12:10:3658e9e29b2ad9adffb9050f55dc81946e45a9f4dfbf263e4b4a1af049f2897148docHeodo
2020-09-17 11:55:1048161edaf6dc6f677f000108096fb60a547709797ada71d0c7e48667f035851adocHeodo