############################################################################## # URLhaus ASN CSV Feed # # Generated on 2025-11-20 07:53:16 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS138995 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2025-10-29 21:17:15","http://154.198.49.6/02.08.2022.exe","online","malware_download","censys|CobaltStrike","154.198.49.6","154.198.49.6","138995","HK" "2025-10-18 15:51:10","http://192.229.116.99:8888/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","192.229.116.99","192.229.116.99","138995","HK" "2025-07-22 17:33:12","http://154.198.49.48:8888/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","154.198.49.48","154.198.49.48","138995","HK" "2025-07-11 06:16:35","http://103.214.70.214:8080/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","103.214.70.214","103.214.70.214","138995","US" "2025-07-02 15:25:15","http://154.198.50.24/SB360.exe","offline","malware_download","Expiro|ua-wget","154.198.50.24","154.198.50.24","138995","HK" "2025-05-23 05:27:08","http://154.198.50.83:4444/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","154.198.50.83","154.198.50.83","138995","HK" "2025-05-15 06:07:33","http://192.238.128.191:8444/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","192.238.128.191","192.238.128.191","138995","HK" "2025-05-07 05:42:06","http://103.194.107.19/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","103.194.107.19","103.194.107.19","138995","HK" "2025-05-01 07:44:06","http://45.192.216.81/lmInput_service.exe","offline","malware_download","","45.192.216.81","45.192.216.81","138995","MU" "2025-05-01 07:44:04","http://45.192.216.81/01/login.bin","offline","malware_download","","45.192.216.81","45.192.216.81","138995","MU" "2025-05-01 07:44:04","http://45.192.216.81/dll/ssasr.dll","offline","malware_download","","45.192.216.81","45.192.216.81","138995","MU" "2025-05-01 07:44:04","http://45.192.216.81/Te.exe","offline","malware_download","","45.192.216.81","45.192.216.81","138995","MU" "2025-05-01 07:44:04","http://45.192.216.81/witheFile.exe","offline","malware_download","","45.192.216.81","45.192.216.81","138995","MU" "2025-04-02 07:18:33","http://103.194.104.197/encrypted_update.bin","offline","malware_download","","103.194.104.197","103.194.104.197","138995","HK" "2025-04-02 07:18:33","http://103.194.104.197/qbclient.exe","offline","malware_download","","103.194.104.197","103.194.104.197","138995","HK" "2025-04-02 07:18:33","http://103.194.104.197/qbcore.dll","offline","malware_download","ValleyRAT","103.194.104.197","103.194.104.197","138995","HK" "2025-02-26 07:21:09","http://154.198.49.151/3.bin","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2025-02-26 07:21:08","http://154.198.49.151/2.bin","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2025-02-26 07:21:05","http://154.198.49.151/run.bin","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2025-02-26 07:21:04","http://154.198.49.151/Dll2.dll","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2025-02-26 07:21:03","http://154.198.49.151/n3.bin","offline","malware_download","shellcode","154.198.49.151","154.198.49.151","138995","HK" "2025-01-12 12:16:40","http://45.194.35.180:180/AppServ180.zip","offline","malware_download","","45.194.35.180","45.194.35.180","138995","MU" "2024-12-29 08:11:11","http://154.198.49.151/33.exe","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2024-12-29 08:11:06","http://154.198.49.151/1.bin","offline","malware_download","","154.198.49.151","154.198.49.151","138995","HK" "2024-12-25 12:07:08","http://154.198.49.151/22.exe","offline","malware_download","exe|malware|trojan|ValleyRAT","154.198.49.151","154.198.49.151","138995","HK" "2024-11-11 10:12:13","http://154.198.53.137:280/Test.txt","offline","malware_download","jerryRAT|payload.bin|test.txt","154.198.53.137","154.198.53.137","138995","HK" "2024-11-11 10:12:13","http://45.194.37.7:280/Test.txt","offline","malware_download","jerryRAT|payload.bin|test.txt","45.194.37.7","45.194.37.7","138995","MU" "2024-10-18 21:15:15","http://103.194.105.84/%E4%BC%98%E9%85%B728.apk","offline","malware_download","apk|SpyNote","103.194.105.84","103.194.105.84","138995","HK" "2024-10-18 21:15:15","https://103.194.105.98/%E4%BC%98%E9%85%B728.apk","offline","malware_download","apk|SpyNote","103.194.105.98","103.194.105.98","138995","HK" "2024-10-18 21:15:14","https://103.194.105.84/%E4%BC%98%E9%85%B728.apk","offline","malware_download","apk|SpyNote","103.194.105.84","103.194.105.84","138995","HK" "2024-10-03 10:38:05","http://45.194.32.210/02.08.2022.exe","offline","malware_download","CobaltStrike|shellcode","45.194.32.210","45.194.32.210","138995","MU" "2024-09-28 18:54:18","http://103.194.105.84/ready.apk","offline","malware_download","Slowest_Chinese_server_in_the_world|spynote","103.194.105.84","103.194.105.84","138995","HK" "2024-07-20 14:40:09","http://45.194.32.159/Distribute/.4","offline","malware_download","64|exe","45.194.32.159","45.194.32.159","138995","MU" "2024-07-10 13:42:34","http://45.194.32.159/Distribute/.2","offline","malware_download","64|exe","45.194.32.159","45.194.32.159","138995","MU" "2024-06-30 12:08:16","http://45.194.32.159/Distribute/.1","offline","malware_download","64|exe","45.194.32.159","45.194.32.159","138995","MU" "2024-06-05 19:06:35","http://103.142.244.19/ready1.apk","offline","malware_download","apk|spynote|spyware","103.142.244.19","103.142.244.19","138995","HK" "2024-06-05 19:04:16","http://103.142.244.32/ready.apk","offline","malware_download","apk|spynote|spyware","103.142.244.32","103.142.244.32","138995","HK" "2024-05-02 10:48:17","http://103.142.244.19/ready.apk","offline","malware_download","apk|ready.apk|spynote","103.142.244.19","103.142.244.19","138995","HK" "2024-05-02 10:48:16","https://103.142.244.19/ready.apk","offline","malware_download","apk|ready.apk|spynote","103.142.244.19","103.142.244.19","138995","HK" "2021-12-21 10:42:15","http://45.125.218.242/yangcong.exe","offline","malware_download","32|exe|YoungLotus","45.125.218.242","45.125.218.242","138995","MY" "2021-12-21 10:42:11","http://45.125.218.242/daishoufuapi.exe","offline","malware_download","32|exe|YoungLotus","45.125.218.242","45.125.218.242","138995","MY" "2021-11-07 08:53:11","http://45.125.217.235/%E5%B8%90%E5%8D%95%E8%BD%BD%E5%B1%8F2021101531215,%D1%80ng.exe","offline","malware_download","32|exe|YoungLotus","45.125.217.235","45.125.217.235","138995","MY" # of entries: 42