URLhaus Database

You are currently viewing the URLhaus database entry for http://58.216.207.82/.index/scan.tar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2790578
URL: http://58.216.207.82/.index/scan.tar
URL Status:flame Online (spreading malware for 2 years, 2 months, 15 days, 13 hours, 35 minutes)
Host: 58.216.207.82
Date added:2024-03-23 09:00:25 UTC
Threat:Malware download Malware download
Reporter: misa11n
Abuse complaint sent (?): Yes (2024-12-20 07:41:05 UTC to jsipmanager{at}163[dot]com)

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-09scan.tarunknown db42ccb2acc1751ac73e604d2ac745c7121b41c7cfb4fcc90150f4b4e75a39can/a 
2025-05-09scan.tarunknown 35a2ae5e43a13fe9bb5c172f7993514fb3c5435191a4fd5da976a49883addafbn/a 
2025-04-19scan.tarunknown 294b32a40223f248d431241e3b944876ba3f73f632d27b7a8e0c2a3a445ec7c2n/a 
2025-03-14n/aunknown a7c49ee9d4c26ee9b555912b3c6c766c15a0bdcebbed7fa1c660bd25fdfd5037n/a 
2025-01-25n/aunknown 92d61ca05c283be642ef531e0a0e37e03646bf71351899bcc0d13a0800140359n/a 
2025-01-25n/aunknown ed52a9d99a2143937401fe940b63b195ecc0c4bb790baa37da854d822a9868e8n/a 
2025-01-05n/aunknown 30286058f260af8be57ddc0edfa55713c8586b9586dfec7a27715b760fd2178en/a 
2024-10-06n/aunknown c8e5c236da5569a4588622fa80fa93e6a50057b499b7b6e996a74dfd1354a224n/a 
2024-08-21n/aunknown e3cec8ec2f2e91e59085e2c16abdb2ba3134b1e59d949f8f56ae92cb4cf33284n/a 
2024-08-07n/aunknown 6e7354e602fc24dd609d06081fdb484cde0e5e222ee79f7f79d32e5355473073n/a 
2024-07-29n/aunknown b71521aaa7922d1f6026806b102c1daa669b73c7f39d9003287de6561c133308n/a 
2024-03-23n/aunknown 183a7ceffb4b85260a77e2377d5aa9e0202c9b7dcac9e822c90a18cdaa1566e7Virustotal results 69.35%