URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ztbrw.cn
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-27 06:20:07 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-12 02:22:48 47.76.127.217Not listedAS45102 ALIBABA-CN-NET- HKno
2025-05-12 02:22:48 47.91.170.222Not listedAS45102 ALIBABA-CN-NET- HKno
2025-05-12 02:22:48 8.218.208.240Not listedAS45102 ALIBABA-CN-NET- HKno
2025-04-27 11:30:46 38.11.200.210Not listedAS54600 PEG-SV- USno
2021-02-19 13:08:26 45.140.90.50Not listedAS932 XNNET- KRno
2021-02-20 12:49:10 45.145.124.162Not listedAS16347 INHERENT- FRno
2020-10-23 07:38:46 156.253.15.66Not listedAS132813 AISI-AS-AP- HKno
2020-08-27 06:20:12 154.48.246.82Not listedAS174 COGENT-174- USno
2021-03-16 09:34:31 176.113.70.26176.113.70.26.static.xtom.comNot listedAS6134 XNNET- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-22 21:16:17http://ztbrw.cn/staticm/LLC/zbu4i4634573593200t...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-09-04 11:13:34http://ztbrw.cn/wp-includes/Documentation/r8b8m...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-27 06:20:12http://ztbrw.cn/wp-includes/paclm/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-24 21:12:01b638a54fb8b1ae9d64723adeea13dfada5ef1ad4d4c606ed9a34370f4d216d09docHeodo
2020-09-24 20:39:20a72430246d4ff63a287ccdb3d3eb1eea24af39ec67b6452658454f115f5a146cdocHeodo
2020-09-24 20:26:447ef0c540f3c535a1789981bcbe5e3dd3ba3809e8d6ef1a9745f00ccd018db031docHeodo
2020-09-24 20:01:20e065d7a8263671a9d5afd66e671dd1d8cb12ccadcde39686f63b37c411d977dddocHeodo
2020-09-24 19:51:02520c035bd0bd60fac0008ee46cd8e3eab4dbdc31d8270d9559efb1e7b5016c7cdocHeodo
2020-09-24 19:33:3100fbe37855be5d55bc265f0e5e3f284ede6342549349e4b33cf2511347b3fc13docHeodo
2020-09-24 19:09:018ffd33471d8e180b9ff498aaa84ef11bf50e846252c62e42e416fe68c1698d06docHeodo
2020-09-24 18:51:442a383eeb24d148e1343c8ac61522fdc8b79c8fe8c0f5f1079009ca43cfed93bfdocHeodo
2020-09-24 18:42:3029f8908fad78f532f3e53d23cd10d6289376b52c559e2398ab3a2ceb671ba1cbdocHeodo
2020-09-24 18:22:00fe9b0b3adac87d1fe5b13863ff7ab54660757a7bc0b4996cfe241ff357c57b3ddocHeodo
2020-09-24 17:54:078845dd7a737d5dc44971ca503bd120028edc33db789f8155a39c0651c11caf72docHeodo
2020-09-24 14:16:57460d4f1fa3c90d50ae0a56c6c4c26bfcd3d3d22829baef98b7ea3e9b451974fedocHeodo
2020-09-24 12:52:552e3f0cba76c76de6beb1d7782576c1913d7a5ec9e471a36bac04827d26b0185ddocHeodo
2020-09-24 08:24:257ff2463a4724eb9175138fd7ab47c19aa6fdfb7b5ccf1038ecf9a238be0683f0docHeodo
2020-09-24 07:54:596e5bcd9db826f2b855f63e8a591e02ebb0bbd141387d2922e3e251fc8ddbcbb8docHeodo
2020-09-24 07:26:55994c514f41d20931aa98bc87ccd2de05af9f8245435c55b0f29f7d2062c9b5f5docHeodo
2020-09-24 06:39:42eb7751cd57d85eef7c674547d3a40c0eb9758d9b893fca13e639ac5fbf0fd39fdocHeodo
2020-09-24 06:19:49bc8c5bed53bd39445e8df6c75cbd7aefc5aeb6fc2e735692ff898d28c43e61d1docHeodo
2020-09-24 05:54:51d522d2f16aa3e16dc127e4340ff8bfd23ab4de894995c8dbb75b31bd4b4d73cbdocHeodo
2020-09-24 05:25:49d0ef85eed2f1afb6cfdbb09ccad7eb677bb731e080ebd4975734a2e996f08581docHeodo
2020-09-24 05:02:4619cb69cbc19879e5cae4e56b1d702cfcd04c72ebf8a9c795592d509a91e5a2eadocHeodo
2020-09-24 04:44:00b86aa2863a808be4474b2ee7285bb8642b67c9706f68b81925ae69c824defd8edocHeodo
2020-09-24 04:21:59c157afe5eb9208b3fe20c864292c3f7a3c1eb02486f1a6b31fd8ef0349a9f3fadocHeodo
2020-09-24 03:39:439d3a4dbf3d2bb53bc85aa8598f2eb220e74dd85928693e3fd6bca9c88e0571c2docHeodo
2020-09-24 03:33:01505eba500eb177462772c3c20029c6a8da6ebae013e23593e8647b31eca13deddocHeodo
2020-09-24 03:00:4979a7d433152a96d54a0687fd65dae6aab97a6af26dd206692bf88636977729a1docHeodo
2020-09-24 02:37:00fba080b64f42891f1ddec30a5a83c9881e8b8dc2e577226eb1575654caddc56fdocHeodo
2020-09-24 02:22:24a5be49695d9d336e787b37a7a4955307a263c426f7cae3cecdd69d2bfe026585docHeodo
2020-09-24 02:08:31eb45dca6aca88223d8145576132a86f7f21770508a20b6335021ea03cc040d8cdocHeodo
2020-09-24 01:35:57098e0c52d47feef3ad6ad20535919541c76799f4bddd67233049509a0ae8656ddocHeodo
2020-09-24 01:24:336e7ae3df631cfa3174a4e9e061f71a3453806fe930adca05896343d9e6f07ea4docHeodo
2020-09-24 00:44:49a6bdea3758ccb519e3736628a467290a74b47562f8a489e89346642276c9f177docHeodo
2020-09-24 00:33:583caf40ca5ad83988dcc46183de98c772464dd0447db89cb8ad5cbae02587039fdocHeodo
2020-09-24 00:16:30b1bc22abca15845684f53bec0ca8fe04943d104d77b2028d65bd63855077731bdocHeodo
2020-09-23 23:48:3216d16ae909ca22dc9c0dbac471cd299964065913894d10f00e91a967f2eac359docHeodo
2020-09-23 23:16:467340c303b5ff42ef74e8996ab95aa2b6b742e4efcc852b96349ea6085e592f37docHeodo
2020-09-23 23:02:23928e299ed0670b544432d1c87854ef00421ee91e55581b623158ef13adabf501docHeodo
2020-09-23 22:23:5976435bca763f869f80daabd795435e20bd52e2cff25a5594ccc20c8be946a2e8docHeodo
2020-09-23 21:58:49f62ef7f415a25bbe326cecb39a15134327c963de9253795427a71974f8845b6fdocHeodo
2020-09-23 21:50:44fca5ada50488546f6264160c97160e6050ad9a03349fbe82a687f31a1757dc43docHeodo
2020-09-23 21:22:521564b58731e911bff6e6da3fd6f973730406a155c372f7da226cf5c2e53f295bdocHeodo
2020-09-23 20:46:378baf1240f6b87a1faeefc1474c846750b7bcf2feb0aaeeef6ccc53420596b41edocHeodo
2020-09-23 20:35:04887fa6a834121789518a2119d59559b212de2d235e454fd67d1e000e8ee7df1ddocHeodo
2020-09-23 20:20:00290acb8283dcc203c5d57c8e536774a4abe065f3492eeae71724059fe17f789edocHeodo
2020-09-23 20:04:313d0062b20db4e52a4f9612964699a06f8920aa931e2126424d8190273b7eb948docHeodo
2020-09-23 19:39:10b9b92fd2db926541ffe87cdb4d652394ddd2b33559d51db96c862ffe2e6c2e1ddocHeodo
2020-09-23 19:10:046bb96965fcd7c4acb3b22a1c3f1459a042c13a92860c474997aadfb217a905bcdocHeodo
2020-09-23 18:51:0026614fe04700998a42fbb7c3d84cbce63bd4a32aa9de3efe130ee1366827c094docHeodo
2020-09-23 18:36:21a567b1f7ae24385824ce63be1fc4d94384b27306bca69e3dbc4755527550fcb1docHeodo
2020-09-23 18:09:4987147834cbde11b3f37c516844cf8d9ba78e603010280ee9eef5e29c92b10425docHeodo
2020-09-23 17:38:52e59549b96cdcadc16e777d0a62eb4b96353dd65ff6714e68f61e75ce526e7178docHeodo
2020-09-23 17:08:51f97b08dd6d80bfd7e29abef0823103070c8629716d0497a6a20fc77398e115eadocHeodo
2020-09-23 16:43:28a115966eb8c424bdd009722a91a269d04b1f2f646c0f048ee8d08a2d1e3746a7docHeodo
2020-09-23 15:57:1133624b9d31b189eda28dd4ac76bea17844e79f229e8aff90f0a7f0e56ef90860docHeodo
2020-09-23 15:47:314b3610dcd68cafba15d271e09c1199364c572ed710c35e9593da52cfef460b51docHeodo
2020-09-23 15:13:128f58229ee88c03984d543e38f3a6c941ade770afd39c50199efb29993357db30docHeodo
2020-09-23 14:46:29f670b15373579f87448e50df923861b91cc62422a7616168d42348cb2665d396docHeodo
2020-09-23 14:29:3769007e954807d4f901eea9a2bca96a833d6c05deb30aa76ee89c52c5bf011d45docHeodo
2020-09-23 14:09:292f7b7100e114e06774042f43b0c2b7d76944b5bcdc0fd25a51f8f6d181077ff7docHeodo
2020-09-23 13:41:36f652b7523c7ad02479f3dddd2dc9ba0382cc5c9c228ef8d2be73fb97e8a2c23bdocHeodo
2020-09-23 13:18:330d15d81842c24d36b2e24fc1f2d8eeca0cb46f6afaa26190d26a0fce7480a855docHeodo
2020-09-23 08:10:54a877dd61b25805e938555868388a8543768fb01e9c45ae6072c261f61264d466docHeodo
2020-09-23 07:52:4021c40bfbb721e32e33612b797ea16cf7927dd9df4d355a8ad1509ef924b30428docHeodo
2020-09-23 07:20:0350c9d530111fe31904255db5abdbabd939542a19af71c656dcdfd44c9fe2b4b0docHeodo
2020-09-23 07:00:4080345dcdae23c5209ca98dc5266bfd4e989d51223a302e41c5193bde6c6544f9docHeodo
2020-09-23 06:35:48f5b67fe09ab73847439a9717d70cce333257546046c604d4d3299ff681fa34d6docHeodo
2020-09-23 06:19:5990bb75f0c88bcf2a5196f73f5bfa35fe230b05ebd75d6b6f61a1440c763aebb7docHeodo
2020-09-23 05:52:00f732dff0368dd8ff983021f4786d2c04ecb2f9196327138f25d6ca5272c9b556docHeodo
2020-09-23 05:40:211ce7da03432f012ef79797a1eebcc19389de8f1ad5f493fe02e71ac4d324464ddocHeodo
2020-09-23 05:22:49c118e4b8dce9cf6e593a4ce06e9352d91200eefd7d939af1e1fb8891671620fcdocHeodo
2020-09-23 05:17:16e701a67030bc767a30c999f4bc07249218be0f846de4294b4ca96b3a64ea169ddocHeodo
2020-09-23 04:45:116d73594fd12ced84821a81b0917e31c3e1f2881c0cb5168fbab81aab82e12eebdocHeodo
2020-09-23 04:21:06f06641ee9e6b743cb2edbd1898982be6d7ea50c042b93330a7bb869df86fb945docHeodo
2020-09-23 03:52:54b3a84427b070daa7ceb7b51063673a3718f2ef81766fd7523b494f4a29052ab6docHeodo
2020-09-23 03:30:48c4ed4d279282ab289d7a00ba9d05f1f31af4a3dafbe02ae91aba6585d55506cedocHeodo
2020-09-23 03:12:367fc71d784c714360d684b4c25382fe807f04a3cbd861352f3c19fa0fd789e59ddocHeodo
2020-09-23 02:59:14e757a53e573f1584dd56ed851acc303473be8922e8f879bd1dd8f9b8dbec4eaddocHeodo
2020-09-23 02:35:11f81dc1dd571c29424756de4b14efa593fdea619f32694846535c4820c9acf375docHeodo
2020-09-23 02:07:2310fe3df8f6540696c8eaf649bc752e30d5533b0203869ec0839cf045227620badocHeodo
2020-09-23 01:21:488545f8aee7ed198b20effca9952996d49c5b91811a6dc47bdda10aa92e633938docHeodo
2020-09-23 01:09:14b9230204a6b5bb648c78437d34a9350a40aa179243813ecef19402cd1f319b96docHeodo
2020-09-23 00:26:55a306f78cac809e60ccf84e607470e4c43f0de4efe4dcd2f0e470786a5f672a35docHeodo
2020-09-23 00:10:45f94576c2ff082f8f5ac03f20eeb1be3c83b209f14f3c70834719faa2398405cadocHeodo
2020-09-22 23:59:49526a3a875236eb66c2fa9894594c30025d794c8ecbe0dde1fd873dedfab79497docHeodo
2020-09-22 23:29:568b086b781acec12715982f30c39eb5d20950325e39a5d84b33a6df96d9edcf8cdocHeodo
2020-09-22 23:09:41cc43bfd0ea39a3afc6283e4734d480bf62fbbb227016a5cb42d288a8f5f3c956docHeodo
2020-09-22 22:44:4493fb00cace65d90b02ab79f949887b3eaa5b0a0bca1e4a9d7c20576f8ad18deedocHeodo
2020-09-22 22:14:5329b732cb0e36fa5a789f66f7d4cb5ff8905ce6ac1b8e18e29d056b439e177cc3docHeodo
2020-09-22 22:06:14096e7d0d8016a7efe13a6bcfe45e2b78d115eb681a6f855b639a9ca3c8db22c4docHeodo
2020-09-22 21:46:5453dde3ba3a9c47b693f01a8904d5d1c223cb25c08f0488ff97b08e05dbbc7be6docHeodo
2020-09-22 21:16:17814f137cae855a704657faabeeebe984d9e9677440e260fdba8d193f3f24005bdocHeodo
2020-09-05 08:41:528b23e164f16ba0caed21611db9782895ac3a6a1f5b30a16e7cff6a2f8e3c3008docHeodo
2020-09-05 08:19:173c64a79cdd49b1710bd9042cb9988c215e0050e9ef57e604f4679c45abcafd73docHeodo
2020-09-05 07:50:2152646e971288c190bffe00616c46fdb3741f1be6a5f0fe2235ca71c24435bf65docHeodo
2020-09-05 07:39:157c88f52c679aeb917f52a42b5424f5aeb90901cd44d00fe9aa0608e4f2940cb4docHeodo
2020-09-05 07:24:37b47773387ceae19a77df17722ac76711cd26f753da32fb7f1a43302d5523bf59docHeodo
2020-09-05 07:10:17bb9c837b1bd4fe34cf3377a063261449907bae9ffec1af75dcfbe5fd01ec9a7fdocHeodo
2020-09-05 06:56:182b7b0ff44457a586cf0ca88f5b8f4bee199a18d6c52e494b2ecbbe083c3baf5fdocHeodo
2020-09-05 06:20:24e58920e12dd5ce571200cf0e7449728756bbb8a0b43d301ea7a625b5d7755c1edocHeodo
2020-09-05 06:08:515391bbb94eaab89d4864ca7408da299a029611928be8cb4e99c97eabc0b46e4cdocHeodo