hm.baidu.com - URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned hm.baidu.com and returned a unknown verdict (score -12). The page resolved to 14.215.183.79 on CHINANET Guangdong province network in CN. 1 domain and 1 IP were contacted. 40 malware samples communicate with this URL. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -12) · Confidence 15%
- Scanned URL:
https://hm.baidu.com/hm.js?8262dd1954dfed1f10e1ee9442dbb108 - Domain: hm.baidu.com · IP: 14.215.183.79 · AS4134 · CN
- Server: apache
- HTTP status: 200 · text/plain; charset=utf-8
- TLS issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign RSA OV SSL CA 2018 · valid to Jan 24 02: · subject C=CN, ST=Beijing, L=Beijing, O=Beijing Baidu Netcom Science Technology Co., Ltd., CN=baidu.com
- Evidenced operator: Beijing Baidu Netcom Science Technology Co., Ltd.
- Scan tier: fast · observed 2026-08-22 16:52:55 UTC
Malware communicating with this URL (40)
These samples were observed contacting or being served from hm.baidu.com. Each links to its full analysis.
- virussign.com_ae31c130276029edd86b96116df3c740.vir - referenced ·
f4c64e19fc617a89c26e9553dfbff118· first seen 2026-08-22 - 2ebf0dbdf84fe07db08daed5adb0ec57dac61b59ea1254028c1dc5ee6ad744ce - referenced ·
2ebf0dbdf84fe07db08daed5adb0ec57· first seen 2026-08-22 - a8014f423457233312fb2ad71266eba9a727909a859916859353eafe8c12a9d2 - referenced ·
a8014f423457233312fb2ad71266eba9· first seen 2026-08-22 - 9ee8a200a5626e37c1914939cd0e1b95e46156b6ae3e86a2af706e73a9312ff6 - referenced ·
9ee8a200a5626e37c1914939cd0e1b95· first seen 2026-08-22 - 9cce41dc501192631caf8b66cea14b3e3876f292ad9d94a2db64022f766d0919 - referenced ·
9cce41dc501192631caf8b66cea14b3e· first seen 2026-08-22 - 0bc60853b3d8f11d4b45ab77b9264655f665ff4bf1e033850701253e4c2149e0 - referenced ·
0bc60853b3d8f11d4b45ab77b9264655· first seen 2026-08-22 - 1887d81364a608663d411e3f827abf816614f63b3560bfb44fdae853a54e4c50 - referenced ·
1887d81364a608663d411e3f827abf81· first seen 2026-08-22 - 96dd7f3e654efc7d7fb637b83198f7a8483c0663883c6051f6c056a1ab02b2c9 - referenced ·
96dd7f3e654efc7d7fb637b83198f7a8· first seen 2026-08-22 - 4282ab33caae3e8ec751fb078cc245e4eb6bd1cfa73b8f52169a83d25a65d6df - referenced ·
4282ab33caae3e8ec751fb078cc245e4· first seen 2026-08-21 - f83ada020399dddcfc3f0716b83c3397f03c8836b6cddf631b03f6e69988968b - referenced ·
f83ada020399dddcfc3f0716b83c3397· first seen 2026-08-21 - 45dd7edf04577179e87f47377b659cc405d6880c126ee772a110dc97249daa42 - referenced ·
45dd7edf04577179e87f47377b659cc4· first seen 2026-08-21 - af308ff0e19f7abf4e36bb50b87c7b52af5662012b673e706a05ae2803b9fe7f - referenced ·
af308ff0e19f7abf4e36bb50b87c7b52· first seen 2026-08-21 - 5b78f336dbfaa1209930870c28f1dea54cab8bb184c7fa6cf2d25d4019d32574 - referenced ·
5b78f336dbfaa1209930870c28f1dea5· first seen 2026-08-21 - f6e57148739ef2abece2a8f1af6b494a92d69fa4091aeea9c1b965c2accfed73 - referenced ·
f6e57148739ef2abece2a8f1af6b494a· first seen 2026-08-21 - 15ea3e15f10facea0c990d2fafff6c4f2a191060e80572d236f4eb95a0918c40 - referenced ·
15ea3e15f10facea0c990d2fafff6c4f· first seen 2026-08-21
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
Detected technologies
- Apache
Contacted infrastructure
- 14.215.183.79 - AS4134 CHINANET Guangdong province network (China)
Observed indicators
- hm.baidu.com
- 14.215.183.79
- https://hm.baidu.com/hm.js?8262dd1954dfed1f10e1ee9442dbb108
Other scans of hm.baidu.com (10)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
http://nenayu.com/filespath/files/20210912030234.pdf - 23 Aug 2026 - unknown ·
https://googledrive.gustavodrivefilme.workers.dev/0:/ - 23 Aug 2026 - unknown ·
https://cloverapple.51aiops.com/ - 23 Aug 2026 - unknown ·
https://poppyapple.towardsmart.com/ - 23 Aug 2026 - unknown ·
https://hm.baidu.com/ - 23 Aug 2026 - unknown ·
https://www.d.cn/ - 23 Aug 2026 - suspicious ·
http://www.vvchem.com/buy/ - 23 Aug 2026 - unknown ·
http://www.vvchem.com/sell/ - 23 Aug 2026 - unknown ·
http://www.vvchem.com/products/ - 23 Aug 2026 - unknown ·
http://doingthing.com/downloads/blog/geust/files/fuxusuji.pdf
Questions about hm.baidu.com
- Is hm.baidu.com safe?
- The scan of hm.baidu.com on 22 Aug 2026 reached no verdict either way (score -12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with hm.baidu.com?
- 40 analysed samples communicate with this URL.
- How was hm.baidu.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of hm.baidu.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan