URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 62.204.41.69
Firstseen:2022-03-25 12:39:03 UTC
Total malware sites :11
Online malware sites :0 (0%)
Offline Malware sites :11 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-04-07 15:30:08http://62.204.41.69/AVA/libs/eve/ax.pngOffline abuse_ch
2023-04-07 15:30:08http://62.204.41.69/AVA/libs/eve/x.pngOfflineModernLoader abuse_ch
2022-04-12 12:47:05http://62.204.41.69/04122022/pm_Dxjlqugu.bmpOfflineencrypted abuse_ch
2022-04-12 12:39:04http://62.204.41.69/04122022/azne_Jzoappuq.bmpOfflineencrypted abuse_ch
2022-04-07 10:12:05http://62.204.41.69/040722/Wvckvml_Nhkchgiw.bmpOfflineexe vxvault
2022-04-07 10:12:05http://62.204.41.69/040722/azne_Bvaquebo.bmpOfflineexe vxvault
2022-04-07 10:11:04http://62.204.41.69/040722/net_Frmzgqtd.jpgOfflineexe vxvault
2022-03-25 12:39:05http://62.204.41.69/rc.exeOfflineModiLoader ext RemcosRAT ext Cryptolaemus1
2022-03-25 12:39:04http://62.204.41.69/pm.exeOffline Cryptolaemus1
2022-03-25 12:39:03http://62.204.41.69/azne.exeOfflineAZORult ext Cryptolaemus1
2022-03-25 12:39:03http://62.204.41.69/cc.exeOfflineDBatLoader ext ModiLoader ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-04-07 15:30:087f4f2ba2347cd4e83db8bfcd3c57849011ce6508b2f10cb367caff3d0626fba7txtModernLoader
2023-04-07 15:30:088d758e075926e1e009666200329eb7689da5b140cdc213e76835963eaa7cff2ftxt 
2022-04-12 12:47:050aa25ea72016f13212096115b18070f0e490678fe9463b18aa56f05626f9f3c9unknown  
2022-04-12 12:39:047d1a213040544207207f4506cee8bcea381cb8b327a5e28f92e7f0420c250b39unknown  
2022-04-12 06:57:35fb1585455a00f739a0417c47ac5b948fe9df597f8fed63ed3584931031bdfcd2exeDBatLoader
2022-04-12 06:55:5440e3f0d6fc66f3881a716191aa965e1b4bceceb357d98f63254e4cb6db00c7c5exe 
2022-04-12 06:55:4908c0273e2bd04a047d150303d4cd05076c2d2877afa82543ce43fc8296d86a7cexeRemcosRAT
2022-04-12 06:51:20479a6f9b920dc41930fbfb0dbe7bc6fb34724da607bbbe8775b7be7e3897c688exeAZORult
2022-04-07 10:12:05c36b0681d41f73f9992a7fb668ff3ffc3377f655fdc6dc1ff13e26c73f735056unknown  
2022-04-07 10:12:0533c0234cb0eb92fae585a9175334ef9570a661458d16b6fceb76962c796a864dunknown  
2022-04-07 10:11:049b9ef7e3a7c15e2923263119c92ceaeaf7f7da4073d9b762ca1d9176fbaf4410unknown  
2022-04-07 08:57:1582fc93baeea70f5e1c60ea976212b5cd2a33402ede66cd0efb059eaa5fae8150exeModiLoader
2022-04-07 08:51:434ee1175ae15c302111cf8ca771869d3a1ad5f5f927f0b0b83aa797dd6fbe5a85exeAZORult
2022-04-07 08:32:547cb6095dfefda254e0f96c3613cddcbcff7ce50b57a78e7f369d846d222eef49exeModiLoader
2022-04-07 08:29:34f9f9434c40ad3d897983909630ce5de0b094c27b527b9ab34dd76e5b23fe6623exe  
2022-03-25 12:39:058dfee94c273148e304ce65b2174c1bcf211e31b9fb7074bb03069c831a4b119aexeRemcosRAT
2022-03-25 12:39:04805aad97c81dea343c603fa472f65b9061c97731e3870bf5de9d8427e604e001exe 
2022-03-25 12:39:0394e022cc268feee9f2a1a08260ecbb9767bfc0383ccabfb12330c30b5edf4933exe 
2022-03-25 12:39:03f3de094d3b47ff5064f8163c62df41b615e851a49d1dfbd4904dc188d5234611exeAZORult