URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mail.fihsifuiiusuiuduf.com
Domain registrar:Webnic -
Domain registration date:2024-01-26 18:00:59 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-07-26 12:23:04 UTC
Total malware sites :36
Online malware sites :0 (0%)
Offline Malware sites :36 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-09-07 09:21:21 162.216.242.208parked.dynu.comNot listedAS398019 DYNU- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-26 12:30:13http://mail.fihsifuiiusuiuduf.com/ccOfflineencrypted NDA0E
2024-07-26 12:30:12http://mail.fihsifuiiusuiuduf.com/111Offlineencrypted NDA0E
2024-07-26 12:29:51http://mail.fihsifuiiusuiuduf.com/bbbOfflineencrypted NDA0E
2024-07-26 12:29:49http://mail.fihsifuiiusuiuduf.com/cOfflineencrypted NDA0E
2024-07-26 12:29:49http://mail.fihsifuiiusuiuduf.com/11Offlineencrypted NDA0E
2024-07-26 12:29:41http://mail.fihsifuiiusuiuduf.com/aaOfflineencrypted NDA0E
2024-07-26 12:29:24http://mail.fihsifuiiusuiuduf.com/bbOfflineencrypted NDA0E
2024-07-26 12:29:21http://mail.fihsifuiiusuiuduf.com/bOfflineencrypted NDA0E
2024-07-26 12:29:19http://mail.fihsifuiiusuiuduf.com/33Offlineencrypted NDA0E
2024-07-26 12:29:18http://mail.fihsifuiiusuiuduf.com/222Offlineencrypted NDA0E
2024-07-26 12:29:17http://mail.fihsifuiiusuiuduf.com/c6Offlineencrypted NDA0E
2024-07-26 12:29:10http://mail.fihsifuiiusuiuduf.com/cccOfflineencrypted NDA0E
2024-07-26 12:29:08http://mail.fihsifuiiusuiuduf.com/aOfflineencrypted NDA0E
2024-07-26 12:27:02http://mail.fihsifuiiusuiuduf.com/aaa.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:26:50http://mail.fihsifuiiusuiuduf.com/t1.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:26:44http://mail.fihsifuiiusuiuduf.com/m.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:26:27http://mail.fihsifuiiusuiuduf.com/1.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:26:22http://mail.fihsifuiiusuiuduf.com/asec.exeOfflineexe NDA0E
2024-07-26 12:26:17http://mail.fihsifuiiusuiuduf.com/t2.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:26:05http://mail.fihsifuiiusuiuduf.com/twztl.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:25:47http://mail.fihsifuiiusuiuduf.com/peinf.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:25:43http://mail.fihsifuiiusuiuduf.com/tt.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:25:24http://mail.fihsifuiiusuiuduf.com/nxmr.exeOfflineCoinMiner exe NDA0E
2024-07-26 12:25:17http://mail.fihsifuiiusuiuduf.com/s.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:25:11http://mail.fihsifuiiusuiuduf.com/a.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:59http://mail.fihsifuiiusuiuduf.com/pp.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:54http://mail.fihsifuiiusuiuduf.com/t.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:53http://mail.fihsifuiiusuiuduf.com/npp.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:45http://mail.fihsifuiiusuiuduf.com/pei.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:37http://mail.fihsifuiiusuiuduf.com/o.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:32http://mail.fihsifuiiusuiuduf.com/r.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:29http://mail.fihsifuiiusuiuduf.com/pi.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:27http://mail.fihsifuiiusuiuduf.com/tdrpload.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:24:17http://mail.fihsifuiiusuiuduf.com/tpeinf.exeOfflineCoinMiner exe NDA0E
2024-07-26 12:24:16http://mail.fihsifuiiusuiuduf.com/11.exeOfflineexe phorpiex ext NDA0E
2024-07-26 12:23:07http://mail.fihsifuiiusuiuduf.com/newtpp.exeOfflineexe phorpiex ext NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-09-01 05:47:41dc69f2b947673cdb4775a4ae081e009f6a713a35000e43e5fa86d5eabe99a7e4exe Phorpiex
2024-08-01 05:45:01d281e0a0f1e1073f2d290a7eb1f77bed4c210dbf83a0f4f4e22073f50faa843fexe Phorpiex
2024-07-31 04:55:494cb590dfafb7653379326e840d9b904a3cf05451999c4f9eb66c6e7116b68875exe Phorpiex
2024-07-27 20:04:30772ad3ca0bc4c88bd4042562e8fefb34fe52a1f709622d819f806770e582541bexePhorpiex
2024-07-26 12:30:133c692532b72c68c1cd92374fc28b54afd0b27db1eabd7785c6a0e5b1e92b59c9unknown  
2024-07-26 12:30:11985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7dunknown  
2024-07-26 12:29:502ebc4a92f4fdc27d4ab56e57058575a8b18adb076cbd30feea2ecdc8b7fcd41funknown  
2024-07-26 12:29:492ebc4a92f4fdc27d4ab56e57058575a8b18adb076cbd30feea2ecdc8b7fcd41funknown  
2024-07-26 12:29:49985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7dunknown  
2024-07-26 12:29:41985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7dunknown  
2024-07-26 12:29:242ebc4a92f4fdc27d4ab56e57058575a8b18adb076cbd30feea2ecdc8b7fcd41funknown  
2024-07-26 12:29:213c692532b72c68c1cd92374fc28b54afd0b27db1eabd7785c6a0e5b1e92b59c9unknown  
2024-07-26 12:29:182ebc4a92f4fdc27d4ab56e57058575a8b18adb076cbd30feea2ecdc8b7fcd41funknown  
2024-07-26 12:29:183c692532b72c68c1cd92374fc28b54afd0b27db1eabd7785c6a0e5b1e92b59c9unknown  
2024-07-26 12:29:17f8706ef31b6df9c8c0accc593a9c73521e6c66e95610f7f9032798637cb5695aunknown  
2024-07-26 12:29:103c692532b72c68c1cd92374fc28b54afd0b27db1eabd7785c6a0e5b1e92b59c9unknown  
2024-07-26 12:29:07985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7dunknown  
2024-07-26 12:27:01e972fb08a4dcde8d09372f78fe67ba283618288432cdb7d33015fc80613cb408exePhorpiex
2024-07-26 12:26:49a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:26:43a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:26:26d8b83f78ed905a7948e2e1e371f0f905bcaaabbb314c692fee408a454f8338a3exePhorpiex
2024-07-26 12:26:219a53a95b0c1288c8e723030c47029455cb2c15ab69732f2a9fc2aad6b418a200exe  
2024-07-26 12:26:16a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:26:04a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:25:476c19c61dd69a8628e38246fc2ce05cee66967eb36f49bde4797892f441b10cadexe Phorpiex
2024-07-26 12:25:43a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:25:22dd12cb27b3867341bf6ca48715756500d3ec56c19b21bb1c1290806aa74cb493exeCoinMiner
2024-07-26 12:25:16a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:25:09a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:24:59a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:24:53feb4c3ae4566f0acbb9e0f55417b61fefd89dc50a4e684df780813fb01d61278exe Phorpiex
2024-07-26 12:24:53d8b83f78ed905a7948e2e1e371f0f905bcaaabbb314c692fee408a454f8338a3exePhorpiex
2024-07-26 12:24:45feb4c3ae4566f0acbb9e0f55417b61fefd89dc50a4e684df780813fb01d61278exe Phorpiex
2024-07-26 12:24:36a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:24:31a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:24:293f16f4550826076b2c8cd7b392ee649aeb06740328658a2d30c3d2002c6b7879exe Phorpiex
2024-07-26 12:24:26a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5baexe Phorpiex
2024-07-26 12:24:17d93add71a451ec7c04c99185ae669e59fb866eb38f463e9425044981ed1bcae0exe CoinMiner
2024-07-26 12:24:16d8b83f78ed905a7948e2e1e371f0f905bcaaabbb314c692fee408a454f8338a3exePhorpiex
2024-07-26 12:23:06d8b83f78ed905a7948e2e1e371f0f905bcaaabbb314c692fee408a454f8338a3exePhorpiex