URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: brazilanimalshelp.com
Domain registrar:Webnic -
Domain registration date:2024-01-27 17:09:05 UTC
Abuse complaint sent to registrar: Yes (2024-02-04 11:51:01 UTC to compliance_abuse{at}webnic[dot]cc)
Domain registry:VeriSign Global Registry Services -
Abuse complaint sent to registry: Yes (2024-02-04 11:51:02 UTC to info{at}verisign-grs[dot]com)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-02-04 11:48:04 UTC
Total malware sites :1
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-02-04 11:48:25 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2024-02-04 11:48:25 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2024-02-05 12:48:06 188.114.96.9Not listedAS13335 CLOUDFLARENETn/ano
2024-02-05 12:48:06 188.114.97.9Not listedAS13335 CLOUDFLARENETn/ano
2024-02-06 17:22:50 188.114.96.0SBL686925AS13335 CLOUDFLARENETn/ano
2024-02-06 17:22:50 188.114.97.0Not listedAS13335 CLOUDFLARENETn/ano
2024-02-21 13:23:03 188.114.96.7Not listedAS13335 CLOUDFLARENETn/ano
2024-02-21 13:23:02 188.114.97.7Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-02-04 11:48:25https://brazilanimalshelp.com/updating/stale.exeOffline194-120-116-120 exe MarsStealer Rhadamanthys RiseProStealer Stealc Iamdeadlyz

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-04-13 19:18:1192fb8c15031aa4d0faf9fe65b3284f35a483d18c3351edd7502941e28f203ddeexe  
2024-03-04 14:05:11fe7fd464acedae3e97f87a66e9e198e57bd75ea0e0ba4cfda783b1dbf88e3464exe RiseProStealer
2024-03-03 13:08:513d23b0d70a9e85dbcc2853a36fadc3c6e6e03ad1f68bd86235b773f2722a7176exe RiseProStealer
2024-03-02 15:30:1960ab87933a10c072830fa7526c3fbb50392847224eee0e84c1fabae38f7552a4exe RiseProStealer
2024-03-01 16:03:440ad3f8de2f64ef431dfce713332c7e4d320cb55809e51bacd3d9266e4e4d6cc8exe RiseProStealer
2024-02-28 11:26:50e0ec461dbbb75f1841de5ef767df5d7ee5103255bf5d5e9b6ddf2719afc8ae36exe RiseProStealer
2024-02-27 10:06:0862d802755b1c177a81f98a9dba89bf3a81beeaa41cce3515f27a199f1d39138cexe RiseProStealer
2024-02-26 12:43:29e8d4b9a9f197929b99e26d219dfe7e03a7c8fd44693dc0a2e31fbefdd3a3e481exe RiseProStealer
2024-02-25 09:02:164a266858a8803b1602b7e94f8b045e0e5fade660ca9214992f0f8d293be62001exe RiseProStealer
2024-02-24 08:10:520d6d81561444761cef87e23cb11911ee0439abbf522d7b5bd8f2de64b1b141dcexe  
2024-02-23 11:59:01d8ed70edf4a8438af774636156aca52a8441ee1781711050a611b24ecb73d390exe RiseProStealer
2024-02-22 13:27:17217f5a64df89bf99cb06bba56afbc7868f672a7d972db7bf05bea942f48094c1exe RiseProStealer
2024-02-22 09:50:4823abb66b73aed3f5763453219a92b42d1d3149bc29a053131e74734105b51211exe  
2024-02-21 19:06:444dd2e2c02d3cda5e3b77c47562d373c1d80c93a1dc8b6d6ae70ca26ea79d4be8exe RiseProStealer
2024-02-20 08:13:07cc18afc7b47033ca92357bb70d1e664a38c7d16a9bdb315ca60496c6ab4ebea4exe  
2024-02-19 10:44:26fdb08c8911e4ab5eb5e72fd89c6c57189c0d0e93651afe663fb301de314e92ddexeRiseProStealer
2024-02-18 14:47:30a33f13b9105c77b6428d4ddf54b97e35c8191b3d6be05a53e1997f73ebbaad82exeRiseProStealer
2024-02-17 19:28:0806a000c6d80fd9b9b540be6fe297e83c750ef10beb6b296571609222ab05eec2exe  
2024-02-16 23:41:2764cae95b66554b42f73ea74c5f63e44bc4bb0878659e338c1f7e46d256c0e09dexe  
2024-02-16 18:23:36b704a232fa1edc1953211c20bc223d682f7514afcfa530f99013227e0f282bc9exe  
2024-02-16 13:22:03462fc6732c839773162c894054d94cfc64c6bf5ab0f14cd202d23fbea1c5d98bexe  
2024-02-15 12:45:5591d787414622a27c62b3d9c97eaaceaa0424c214b8ce9c89b9719b37952cdd07exe Stealc
2024-02-14 17:24:36d4a87ec952d824053de17a78831fa4da2582dce5db918b2ea3ffeaab4aa2af6eexe Stealc
2024-02-14 10:56:10a45e9fae49d4af114a252f3cd5b69f33cb5994915a75cb51983910c9f21d81e5exe Rhadamanthys
2024-02-13 17:07:0752477830c906e17238059d1337b95c0853467ae35bdc4bcffe9c968d80ee595fexeStealc
2024-02-13 05:22:160a00500f9a5aaed2386c39fa861da6e5e7f3e5a17b5f141cb448b1d179efb23fexeStealc
2024-02-11 15:48:22eb53292f85cfea39977766f88069062cacf9ca1c863b9e7efb4f2a69703de188exe  
2024-02-10 14:07:089bda9fde412d5d0e2000f2f2e68740a92321597d54a13ca872aa9d415de77f21exeStealc
2024-02-09 13:01:231aeb4e6da49a3c64982769757dd769cedccb7a12223be887b2ab6466667b2073exeStealc
2024-02-07 21:36:308b7ca8cba69e0289bf68078b579f95c6c2c1e7a5b5077f0c081b13ffbaf081a7exeStealc
2024-02-07 19:52:330b292f1c72b75f0ae89e37bf43b58b1eb1b3bc82eb47e1e1414761d33e374a03exe MarsStealer
2024-02-05 09:37:36bf505cd1f87bfabf442634652eb137fa68cea25200ff75dc3fb334394f479dc1exe Stealc
2024-02-04 15:38:4233dd95f35e5c6767f41610281d3018b623a9ac30e53055b06999347dd32ed0f4exe  
2024-02-04 11:48:25a9a4d321d6ccfe6ba9e0f870fb1bf590535c6e10a091805020930dce46e116b7exeStealc