URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 123.58.64.57
Firstseen:2026-02-08 17:41:04 UTC
Total malware sites :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-02-08 17:41:25 123.58.64.57Not listedAS17623 CNCGROUP-SZ- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2026-02-08 17:41:25https://123.58.64.57:34567/02.08.2022.exeOnlinecensys CobaltStrike ext shellcode NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-05-08 06:59:18671d7880293ddf107635ae4f208ea0ef639d9f8e5292e310f58aa377762eadcaunknown  
2026-04-24 11:21:2909acdb74790372d757e3ed998a50893d18641fd0b3fe9acacc33a4f2123bc7bdunknown  
2026-04-23 16:53:309823505882bf8f5b7c4fde5747bdc3e46651451da379f8091ec12e9ce22fa79dunknown  
2026-04-02 14:20:108c30221ee1b0f8c5d0d8d057b5bc8452519aefb814cb20281cfd609ef3416b81unknown  
2026-04-02 09:43:017c5edf78fa6e5c96284a6b166d52665041756521d199d9e3e98f3c76a5e02adfunknown  
2026-03-31 09:18:346ce8a757d8b2482d43e04702d544428af1426849c1735c5813f3c063574d3845unknown  
2026-02-08 17:41:134c04b5890f9c266559d0a9cfe38f7c5f7a7a04385d17bb476b76104ed2a6d3b2unknown