URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host download.cardesales.com.

Database Entry


Host:download.cardesales.com
Spamhaus DBL:Abused domain (malware)
SURBL:Not listed
Firstseen:2018-12-17 11:36:11

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-12-17 11:36:17202.75.223.155SBL437226AS4134 CHINANET-BACKBONE No.31,Jin-rong Street- CNyes

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-18 00:49:06http://download.cardesales.com:82/LoginTools/LoginTools.exeOnlineAgentTesla andromeda emotet exe GandCrab heodo LimeRAT Ransomware.GandCrab Smoke Loader Clean@zbetcheckin
2018-12-18 00:36:21http://download.cardesales.com/update/2/www_xjkamun_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:36:13http://download.cardesales.com/update/6/www1_ok0452_cn.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:35:11http://download.cardesales.com/update/2/myjoypay_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:35:09http://download.cardesales.com/update/5/www_wanyouka_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:35:07http://download.cardesales.com/update/5/www_cswkm_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:35:03http://download.cardesales.com/update/4/www_my338_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:34:03http://download.cardesales.com/update/9/lqyw_586_la.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:33:05http://download.cardesales.com/update/2/www_wgt158_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:33:03http://download.cardesales.com/update/8/www_hanz168_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:32:06http://download.cardesales.com/update/0/tel_bojinkm_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:20:12http://download.cardesales.com/update/3/www_591qs_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:20:07http://download.cardesales.com/update/0/ka_kuyou99_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:19:14http://download.cardesales.com/update/7/www_1314yika_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:19:08http://download.cardesales.com/update/9/dx_gk365_net_cn.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:18:16http://download.cardesales.com/update/5/www_txjy8_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:18:12http://download.cardesales.com/update/8/www_200hui_com.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:18:07http://download.cardesales.com/update/0/www_weiweidka_com...Onlineexe Clean@zbetcheckin
2018-12-18 00:17:08http://download.cardesales.com/update/5/www_kaimensk_net.exeOnlineexe Clean@zbetcheckin
2018-12-18 00:17:06http://download.cardesales.com/update/4/www_wy55099_com.exeOnlineexe Clean@zbetcheckin
2018-12-17 11:36:17http://download.cardesales.com/update/5/zzwzzx_586_la.exeOnlineexe Clean@zbetcheckin