hm.baidu.com - URL scan, 23 Aug 2026
MalwareAnalyzer by Cyble scanned hm.baidu.com and returned a unknown verdict (score -12). The page resolved to 111.45.11.83 on China Mobile Communications Corporation in CN. 1 domain and 1 IP were contacted. 50 malware samples communicate with this URL. This is a point-in-time observation from 23 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -12) · Confidence 15%
- Scanned URL:
https://hm.baidu.com/ - Domain: hm.baidu.com · IP: 111.45.11.83 · AS9808 · CN
- Server: apache
- HTTP status: 200 · text/plain; charset=utf-8
- TLS issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign RSA OV SSL CA 2018 · valid to Jan 24 02: · subject C=CN, ST=Beijing, L=Beijing, O=Beijing Baidu Netcom Science Technology Co., Ltd., CN=baidu.com
- Evidenced operator: Beijing Baidu Netcom Science Technology Co., Ltd.
- Scan tier: fast · observed 2026-08-23 18:32:23 UTC
Malware communicating with this URL (50)
These samples were observed contacting or being served from hm.baidu.com. Each links to its full analysis.
- 3e940b6a9517f68141ae3944dd7c3f1cd1ba1e642730ec7f0ca6b0888a6ebffe - referenced ·
3e940b6a9517f68141ae3944dd7c3f1c· first seen 2026-08-23 - f3a05b3e6f07af7eeb7835c877cd2315dea9205fdd9557b894cef9c912af1bc3 - referenced ·
f3a05b3e6f07af7eeb7835c877cd2315· first seen 2026-08-23 - e7d2b28e5b5aef47c991faa579e0117981d49f8929007e084839c3d6c3b915b3 - referenced ·
e7d2b28e5b5aef47c991faa579e01179· first seen 2026-08-23 - 16f779bf0e84f83c74a64a366c4ba844ff0b2730893e0ad034b3af733cf85ac6 - referenced ·
16f779bf0e84f83c74a64a366c4ba844· first seen 2026-08-23 - d08316ef6ae8454766789e69fa46a7f6d8cfe569b554e4fbd6dee23340760fc3 - referenced ·
d08316ef6ae8454766789e69fa46a7f6· first seen 2026-08-23 - f82fa8bd6317da8564bd12824fd292c9b326e294689adc711381688c3ec6b644 - referenced ·
f82fa8bd6317da8564bd12824fd292c9· first seen 2026-08-23 - ac8e58dfc64af6dc26fcbb5550ce9dfc2d2bea55f4fc1fbb4d7cd5aa9c1bc75d - referenced ·
ac8e58dfc64af6dc26fcbb5550ce9dfc· first seen 2026-08-23 - 89b22bb924e76ee242fbf21dd1ae753b5fa96b0242362ca7804389f993874db8 - referenced ·
89b22bb924e76ee242fbf21dd1ae753b· first seen 2026-08-23 - 6346d3c6b38dcc3b9b33369031a61507490bdc95a469f352accabd09e39e56d2 - referenced ·
6346d3c6b38dcc3b9b33369031a61507· first seen 2026-08-22 - 75224e3f248dafeeadc291b294325a634e0982bad88f3b7f0a4af06ceba19c8c - referenced ·
75224e3f248dafeeadc291b294325a63· first seen 2026-08-22 - virussign.com_ae31c130276029edd86b96116df3c740.vir - referenced ·
f4c64e19fc617a89c26e9553dfbff118· first seen 2026-08-22 - 2ebf0dbdf84fe07db08daed5adb0ec57dac61b59ea1254028c1dc5ee6ad744ce - referenced ·
2ebf0dbdf84fe07db08daed5adb0ec57· first seen 2026-08-22 - a8014f423457233312fb2ad71266eba9a727909a859916859353eafe8c12a9d2 - referenced ·
a8014f423457233312fb2ad71266eba9· first seen 2026-08-22 - 9ee8a200a5626e37c1914939cd0e1b95e46156b6ae3e86a2af706e73a9312ff6 - referenced ·
9ee8a200a5626e37c1914939cd0e1b95· first seen 2026-08-22 - 9cce41dc501192631caf8b66cea14b3e3876f292ad9d94a2db64022f766d0919 - referenced ·
9cce41dc501192631caf8b66cea14b3e· first seen 2026-08-22
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
Detected technologies
- Apache
Contacted infrastructure
- 111.45.11.83 - AS9808 China Mobile Communications Corporation (China)
Observed indicators
- hm.baidu.com
- 111.45.11.83
- https://hm.baidu.com/
Other scans of hm.baidu.com (10)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
http://nenayu.com/filespath/files/20210912030234.pdf - 23 Aug 2026 - unknown ·
https://googledrive.gustavodrivefilme.workers.dev/0:/ - 23 Aug 2026 - unknown ·
https://cloverapple.51aiops.com/ - 23 Aug 2026 - unknown ·
https://poppyapple.towardsmart.com/ - 23 Aug 2026 - unknown ·
https://www.d.cn/ - 23 Aug 2026 - suspicious ·
http://www.vvchem.com/buy/ - 23 Aug 2026 - unknown ·
http://www.vvchem.com/sell/ - 23 Aug 2026 - unknown ·
http://www.vvchem.com/products/ - 23 Aug 2026 - unknown ·
http://doingthing.com/downloads/blog/geust/files/fuxusuji.pdf - 23 Aug 2026 - suspicious ·
http://bjhtdszdh.com/
Questions about hm.baidu.com
- Is hm.baidu.com safe?
- The scan of hm.baidu.com on 23 Aug 2026 reached no verdict either way (score -12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with hm.baidu.com?
- 50 analysed samples communicate with this URL.
- How was hm.baidu.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of hm.baidu.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan