URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 101.35.56.7
Firstseen:2025-11-06 08:18:04 UTC
Total malware sites :11
Online malware sites :6 (55%)
Offline Malware sites :5 (45%)
Newest active malware site :2025-11-06 08:18:54 UTC
Oldest active malware site :2025-11-06 08:18:09 UTC (Age: 6 months, 22 days, 15 hours, 17 minutes)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-06 08:18:05 101.35.56.7Not listedAS45090 TENCENT-NET-AP- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-11-06 08:18:54http://101.35.56.7/zddtxxyxb.zipOnlineopendir Riordz
2025-11-06 08:18:49http://101.35.56.7/i24.binOnlineopendir Riordz
2025-11-06 08:18:43http://101.35.56.7/husk.zipOnlineopendir Riordz
2025-11-06 08:18:35http://101.35.56.7/eznoted2b1405e.zipOnlineopendir Riordz
2025-11-06 08:18:23http://101.35.56.7/without_hook.zipOnlineopendir Riordz
2025-11-06 08:18:13http://101.35.56.7/without_hook.pyOfflineopendir Riordz
2025-11-06 08:18:10http://101.35.56.7/vip.pyOfflineopendir Riordz
2025-11-06 08:18:10http://101.35.56.7/zddtxxyxb.pyOfflineopendir Riordz
2025-11-06 08:18:09http://101.35.56.7/husk.pyOnlineopendir Riordz
2025-11-06 08:18:06http://101.35.56.7/eznote.pyOfflineopendir Riordz
2025-11-06 08:18:06http://101.35.56.7/putong.pyOfflineopendir Riordz

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-06 08:18:5416a68e07bfa685d6a1f6d97a844fe6a096e6cd5b8971fc5e9dbce97cf2942461zip  
2025-11-06 08:18:499b2e57e2441a6ab31eeef0dafe3c05b972b3d80363a37cf36b22c4f8563634cfunknown  
2025-11-06 08:18:4389320a8cd8e7c306f599c4c5873187634276ddf65f285c71fd1896ea3964385azip  
2025-11-06 08:18:34fb9df40e9e32f7cc9ff5715969af5533507d2fdc6784923281b86d246f7a0b51zip  
2025-11-06 08:18:23720a52d8adfdd153ae7b84021f5e978d226c67fc01047855ffab5deeaa57ae6azip  
2025-11-06 08:18:0942781bedd84797c10bee4945eb97a6a71d72f892e0cba8403f8de5812031a14dtxt