URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 58.218.67.253
Firstseen:2021-02-22 06:48:06 UTC
Total malware sites :10
Online malware sites :0 (0%)
Offline Malware sites :10 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-22 06:48:15 58.218.67.253Not listedAS4134 CHINANET-BACKBONE- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-22 18:58:13http://58.218.67.253:281/4.exeOfflineexe hfs opendir younglotus abuse_ch
2021-02-22 18:58:12http://58.218.67.253:281/2228.exeOfflineCoinMiner exe hfs opendir abuse_ch
2021-02-22 18:58:12http://58.218.67.253:281/2.exeOfflineCoinMiner exe hfs opendir abuse_ch
2021-02-22 18:58:10http://58.218.67.253:281/1.exeOfflineCoinMiner exe hfs opendir abuse_ch
2021-02-22 18:58:09http://58.218.67.253:281/daji.exeOfflineexe hfs opendir abuse_ch
2021-02-22 18:58:07http://58.218.67.253:281/Server.exeOfflineexe hfs opendir abuse_ch
2021-02-22 18:58:07http://58.218.67.253:281/3.exeOfflineexe hfs opendir younglotus abuse_ch
2021-02-22 18:58:05http://58.218.67.253:281/xiaolang.exeOfflineexe hfs opendir Redosdru ext abuse_ch
2021-02-22 18:57:05http://58.218.67.253:281/xiaolang1.exeOfflineexe hfs opendir Redosdru ext abuse_ch
2021-02-22 06:48:15http://58.218.67.253:281/NetSyst96.dllOfflinedll Redosdru ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-24 08:03:1038f32d4407d8fd264c2f5585340fb472325e066d335bcb7de398c4e033c04c84exe 
2021-05-13 14:24:54a1506ac848fe419d4763876996c4b350f4a8ebe8827abdfa219ba22795825da8exe  
2021-04-10 08:32:31265e8f7541f77935e865658b03261652382ad07945258f9a8cd94887f9a1a8ddexe  
2021-03-18 05:42:07c4a9c0f2350db33cb5e758e17448870b3e00aa3dd1c27758a116264beee20236exe CoinMiner
2021-03-08 15:49:07a306388cc05d790f39fa6f9cfc688fa4b907038d82ea8086b6dda558a55f010aexe  
2021-03-07 13:51:158da01fa3b9b7504e932a29dd19676796c6cc7b114dd8b19f17aee49d6f7f1ea6exe  
2021-03-01 12:29:584288f372ac29a190f68919ad434f3bb2630ca2c7b242deb158652ea0b84e5936exe  
2021-02-28 11:55:26ff22dd3c465b32a0544880af75f507b2b36c8e7b3dce1e4745655d592dbdb6a5exe  
2021-02-27 18:25:00857369672b83a9ad4aedd0702f0fcc19df5bacf8f0b9fdd1662eb2ab59a9a05dexe 
2021-02-25 18:47:32ba90c42d452ef696824215f7a342c34c082b380dd22376de03a9e05a389d3414exe CoinMiner
2021-02-25 14:32:176fe31e8a8d86457ee7bdaccd10505c9647980a89bac9859fc4489e0450a102bcexe 
2021-02-25 11:11:55d5623debe936c1ba45cd8d832fc04f852dbdad11735be259560f13ed0027d705exe  
2021-02-25 05:48:36bbe8dc9bc5de26f31385b7b23c6f21a19a76686936e0afaeff9fd9690d71d3a0exe  
2021-02-24 15:18:36cd61ce526c3cf535c4cd3e5d82547b847850f6ad791f7a66d52abc72f0925f63exe 
2021-02-23 20:09:480c3fb40a83e388130a98360fd5cbbd3db28ff8a9c0d2e20164a4bfc5c9793984exe CoinMiner
2021-02-23 12:06:473bfe9df1536e6d40887590dc8727214960b4c0fb4c2155a21eebd64b3ed65e61exe  
2021-02-22 20:20:46d06f9a463e91488e637e3ad7bb231d2943b2c2b2f973800645e4d5e7043f7fe4exe  
2021-02-22 18:58:13613a7aa7078212d20dab6f9c0d0e1d89274f190ae992c151cd292af87d9d7443exe YoungLotus
2021-02-22 18:58:12389ddb82e254c476a6e3e2534182314d4702ce525371c2bcd5da6ef19d4851fbexeCoinMiner
2021-02-22 18:58:12ea45f9b3dd2e613bb9cb0659dcf6d66ca092738fc510e37226bb99542ad685c8exeCoinMiner
2021-02-22 18:58:09f2e9b563cfb903599a87072f6f36d77c02eb4a9c885e7c8da435f4f02801ad15exeCoinMiner
2021-02-22 18:58:099f905e04970d3c86d99ddb67052f2f948605a26891d085d1ab431a693260e155exe 
2021-02-22 18:58:07c3304ec52968793ae709cf7c7caad6acae0bded8088f06cefbee55bde0a9224fexeYoungLotus
2021-02-22 18:58:078eb11e49eff426eba9d7fa1172c03744a35eb18a806660ec3f1eb3b107a26905exe 
2021-02-22 18:58:05b19f2c2eec099ce6116313fff9348927a979584c82338f16c4f24231100dbd4bexeRedosdru
2021-02-22 18:57:0534678b770d14c0c083d66b148f5d368117d1008b9b756c3753cd9e3535acae1dexe Redosdru
2021-02-22 06:48:157baee22c9834bef64f0c1b7f5988d9717855942d87c82f019606d07589bc51a9unknown