URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: sim.viewdocsfile.xyz
Domain registrar:Tucows -
Domain registration date:2024-02-05 07:39:46 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-07-22 16:46:03 UTC
Total malware sites :29
Online malware sites :0 (0%)
Offline Malware sites :29 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-07-22 16:46:05 94.156.67.161Not listedAS215804 GRIDGR- GRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-22 16:49:10http://sim.viewdocsfile.xyz/bins/info.zipOffline94.156.67.161 botnetdomain CoinMiner opendir zip NDA0E
2024-07-22 16:47:36http://sim.viewdocsfile.xyz/bins/AV.scrOffline94.156.67.161 botnetdomain CoinMiner exe opendir scr NDA0E
2024-07-22 16:47:35http://sim.viewdocsfile.xyz/bins/Photo.scrOffline94.156.67.161 botnetdomain CoinMiner exe opendir scr NDA0E
2024-07-22 16:47:06http://sim.viewdocsfile.xyz/bins/Video.scrOffline94.156.67.161 botnetdomain CoinMiner exe opendir scr NDA0E
2024-07-22 16:47:05http://sim.viewdocsfile.xyz/bins/AV.lnkOffline94.156.67.161 botnetdomain CoinMiner lnk opendir NDA0E
2024-07-22 16:47:05http://sim.viewdocsfile.xyz/bins/Photo.lnkOffline94.156.67.161 botnetdomain CoinMiner lnk opendir NDA0E
2024-07-22 16:47:05http://sim.viewdocsfile.xyz/bins/Video.lnkOffline94.156.67.161 botnetdomain CoinMiner lnk opendir NDA0E
2024-07-22 16:46:09http://sim.viewdocsfile.xyz/bins/arm7Offline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:09http://sim.viewdocsfile.xyz/bins/x86_64Offline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:09http://sim.viewdocsfile.xyz/arm7Offline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:09http://sim.viewdocsfile.xyz/x86_64Offline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/arm5Offline94.156.67.161 botnetdomain elf mirai ext NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/arm6Offline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/bins/arm5Offline94.156.67.161 botnetdomain elf mirai ext opendir NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/bins/mpslOffline94.156.67.161 botnetdomain elf mirai ext opendir NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/bins/armOffline94.156.67.161 botnetdomain elf mirai ext opendir NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/bins/arm6Offline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:08http://sim.viewdocsfile.xyz/armOffline94.156.67.161 botnetdomain elf mirai ext NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/mipsOffline94.156.67.161 botnetdomain elf mirai ext NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/spcOffline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/bins/ppcOffline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/bins/sh4Offline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/sh4Offline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/ppcOffline94.156.67.161 botnetdomain elf NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/bins/mipsOffline94.156.67.161 botnetdomain elf mirai ext opendir NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/mpslOffline94.156.67.161 botnetdomain elf mirai ext NDA0E
2024-07-22 16:46:07http://sim.viewdocsfile.xyz/bins/spcOffline94.156.67.161 botnetdomain elf opendir NDA0E
2024-07-22 16:46:05http://sim.viewdocsfile.xyz/m68kOffline94.156.67.161 botnetdomain elf mirai ext NDA0E
2024-07-22 16:46:05http://sim.viewdocsfile.xyz/bins/m68kOffline94.156.67.161 botnetdomain elf mirai ext opendir NDA0E

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-22 16:49:10b914abc696286a639a847d2e3a4a36ff682f30a87b08c4ffc61f2e0cf5e7ec5fzip  
2024-07-22 16:47:35ebcdf536447cba219a13756c00c97b4ed5fea47f2cbf2283ea86e80216d3822eexe CoinMiner
2024-07-22 16:47:34ebcdf536447cba219a13756c00c97b4ed5fea47f2cbf2283ea86e80216d3822eexe CoinMiner
2024-07-22 16:47:06ebcdf536447cba219a13756c00c97b4ed5fea47f2cbf2283ea86e80216d3822eexe CoinMiner
2024-07-22 16:47:0500401651af3194ede5157004b6dbe1edf836a94ca182221f2c034201fe55e4dclnk  
2024-07-22 16:47:0500401651af3194ede5157004b6dbe1edf836a94ca182221f2c034201fe55e4dclnk  
2024-07-22 16:47:0400401651af3194ede5157004b6dbe1edf836a94ca182221f2c034201fe55e4dclnk  
2024-07-22 16:46:0927e19cdfa39506d4c1f0ede17492acdab43ffbaa1523831b933505674b19f999elf  
2024-07-22 16:46:0985418cb92e356fddb2439d1518680362e03342e401660a9c767c72b25ec0bcffelf  
2024-07-22 16:46:0927e19cdfa39506d4c1f0ede17492acdab43ffbaa1523831b933505674b19f999elf  
2024-07-22 16:46:0985418cb92e356fddb2439d1518680362e03342e401660a9c767c72b25ec0bcffelf  
2024-07-22 16:46:0860e8604fc7698a441f71aaa37bcb5d01b4f7164ca74f3287c48d54f8eb79ebe3elfMirai
2024-07-22 16:46:0843a139eff45eecd348966d027c8ca8d58cfddf3c4a65f0474b6083e7d3750527elf  
2024-07-22 16:46:0860e8604fc7698a441f71aaa37bcb5d01b4f7164ca74f3287c48d54f8eb79ebe3elfMirai
2024-07-22 16:46:08ae689bad6f4f441e442e4f53a7ec7997eaf1765990b13747c84bfe9c01f5cad1elfMirai
2024-07-22 16:46:08674f862095db3af22ef55c848b644a11c63baa01399d266606b3ef295bc4e2d3elfMirai
2024-07-22 16:46:0843a139eff45eecd348966d027c8ca8d58cfddf3c4a65f0474b6083e7d3750527elf  
2024-07-22 16:46:08674f862095db3af22ef55c848b644a11c63baa01399d266606b3ef295bc4e2d3elfMirai
2024-07-22 16:46:07712824c481c3cd733c85f0e2da653eaa098912abb7c2705835780f1492f51f33elfMirai
2024-07-22 16:46:076aa03eb18411f81c6779158dd65149f49dde91f71278eb1ba3da0f3734f8f0d7elf  
2024-07-22 16:46:071738b29878566e4c8ebf98f2d3c796468f320b52e7e83463af8e9f6246445022elf  
2024-07-22 16:46:07e554b9e31ae82107958bbad187ca5109d11a2bf748251e769f24d82e0ceaa289elf  
2024-07-22 16:46:07e554b9e31ae82107958bbad187ca5109d11a2bf748251e769f24d82e0ceaa289elf  
2024-07-22 16:46:071738b29878566e4c8ebf98f2d3c796468f320b52e7e83463af8e9f6246445022elf  
2024-07-22 16:46:07712824c481c3cd733c85f0e2da653eaa098912abb7c2705835780f1492f51f33elfMirai
2024-07-22 16:46:07ae689bad6f4f441e442e4f53a7ec7997eaf1765990b13747c84bfe9c01f5cad1elfMirai
2024-07-22 16:46:076aa03eb18411f81c6779158dd65149f49dde91f71278eb1ba3da0f3734f8f0d7elf  
2024-07-22 16:46:05a5aad8617bd6bdbda266d9a65e80c2a9792cb7f538856cbb90d3087167a96fefelfMirai
2024-07-22 16:46:05a5aad8617bd6bdbda266d9a65e80c2a9792cb7f538856cbb90d3087167a96fefelfMirai