URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: scan.fdstat.vip
Domain registrar:Gname -
Domain registration date:2025-04-27 14:40:33 UTC
Spamhaus DBL :Botnet C&C domain
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2025-08-07 13:42:05 UTC
Total malware sites :27
Online malware sites :0 (0%)
Offline Malware sites :27 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-07 13:42:08 213.209.150.159Not listedAS2856 BT-UK-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-08-07 13:58:21http://scan.fdstat.vip/gpon443Offlinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:18http://scan.fdstat.vip/yarnOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:17http://scan.fdstat.vip/realtekOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:15http://scan.fdstat.vip/76d32be0.shOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:15http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:58:15http://scan.fdstat.vip/jawsOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:14http://scan.fdstat.vip/zteOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:13http://scan.fdstat.vip/zyxelOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:12http://scan.fdstat.vip/huaweiOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:11http://scan.fdstat.vip/thinkphpOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:11http://scan.fdstat.vip/lgOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:11http://scan.fdstat.vip/pulseOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:07http://scan.fdstat.vip/awsOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:07http://scan.fdstat.vip/hnapOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:58:05http://scan.fdstat.vip/goaheadOfflinebotnetdomain geofenced mirai ext sh ua-wget USA BlinkzSec
2025-08-07 13:42:14http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:14http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:14http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:12http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:12http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:12http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:12http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:10http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:10http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:10http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:08http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec
2025-08-07 13:42:08http://scan.fdstat.vip/596a96cc7bf9108cd896f33c...Offlinebotnetdomain elf geofenced mirai ext ua-wget USA BlinkzSec

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-08-16 14:18:3500be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 16:53:2900be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 16:38:5500be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 16:36:2900be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 15:56:3300be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 12:52:4600be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-15 11:15:4600be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-14 15:43:4700be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-14 15:35:2700be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2025-08-07 23:14:0454de431d841f759305b668ec7ad323a2dc1fe50df9c8a3d91fe5ad45b2509507shMirai
2025-08-07 17:57:40cacc4898b1ecabb49f519262fccdccf4aea367207cf8480602e50d6124a00488shMirai
2025-08-07 17:50:04d31727dc523ec3271858980a56e84271885961d7d6d990f789200d779f62fd1cshMirai
2025-08-07 17:41:29d32ab9e6756ee5eb17accd106ccc544280784d1b4e0da4a6ae32889c478d3da2shMirai
2025-08-07 17:20:480ddd54d79bf29b096c5ae6f3ddc4de078d9777638c2086d9c7bf4cfd2454cf14shMirai
2025-08-07 13:58:18e9c8915333b6730c5715919f9029d6242c8cd218f51ca6f72110446b6b6d9fc0shMirai
2025-08-07 13:58:17b79997c8b30ad6b00e3e2afae0895f391b2756beb0ca8b966fa0f29acd6d1e82shMirai
2025-08-07 13:58:15bcf486650257346530bca8f5ca65600f655c458517422fc7c70ccac0d4b78384shMirai
2025-08-07 13:58:15216450a83469206ca912439c82796ada195e6b7906a30487eb8c9263a632b179elfMirai
2025-08-07 13:58:15b068a1df0639980bf1ee189ab71838a9d78911b2517b3f5aa09ce426339ca521shMirai
2025-08-07 13:58:1343f4ca887f2ef1ae6c9a37e37ae93c0411d9748d90614d50cbee6f97e37c1647shMirai
2025-08-07 13:58:115514183fd45975a42e65a424d54769cc76146314ead8a3fba99bd03e592473f2shMirai
2025-08-07 13:58:11a9a38ff89db972acd2dc74d81174bed482da90f00a8fdecce23f198b4289d8ccshMirai
2025-08-07 13:58:11e9d23766f0d1736195850a320ae7751e85d2be0865ae832fcfb54ce328799592shMirai
2025-08-07 13:58:07f4ec9449fbbbb3e40916fe13c42fe45db171cbea253ee43dfe64e5994abdb89fshMirai
2025-08-07 13:58:070e99ae419742ddcef9864982c71aef58ce6afee04272b89692f83fb72d16f421shMirai
2025-08-07 13:44:5179d0e262e964f8b0c4224df7ba97867b941ccfcd78fcf7399f6951ae8413d738elfMirai
2025-08-07 13:44:35443cedab1c2ebc053acc7d919549c631d47c34c09d4abedc94c733bbfdf4fc35elfMirai
2025-08-07 13:44:235692fffbd96adfafd920c459c66e2345537e8a04d99f86cdfdeb9e02f5efd529elfMirai
2025-08-07 13:44:0123d78bb48510741dfabdbd21b88303775f65cd41e55d51d01df63555fca98abfelfMirai
2025-08-07 13:42:59f71414c9619a07aaf2c9ee84f4f62fd85f9b94f77989cb888896942ed19c2e64elfMirai
2025-08-07 13:42:14cdef5e824be6188d738deab6ad3c1a29956aa9ac0f9eec14c19208216bd04a61elfMirai
2025-08-07 13:42:141de365c3623466c838900c44894ac42bf83587e52b2f87c929cada1668245d3belfMirai
2025-08-07 13:42:13e58a9baa7acf331672e2d4c5843362b5091750426acb79109ce41bba42cfd4fbelfMirai
2025-08-07 13:42:120119db2e5eee374e1686529582584eb4942a3d46b2b07040b11120eb30d67bd0elfMirai
2025-08-07 13:42:1298d5dba70f80a68ee60dd912175b98b5e9f24223dca50c12997dc691300afed4elfMirai
2025-08-07 13:42:12c7979feb5afeecb1843b8f77d80e7d73c2d284aea30aa8627e19575f21bec97delfMirai
2025-08-07 13:42:121c348e6bb0cd3183a84bbd00cb0d0b231dd40e60218cde61b5618c92f63c0e4celfMirai