URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host derwagiete.com.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-10-18 14:39:01

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-01-23 12:23:18107.155.35.24Not listedAS21859 ZNET - Zenlayer Inc- USno
2018-12-23 04:35:03150.109.119.80Not listedAS132203 TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue- SGno
2018-12-22 16:31:5245.249.245.83Not listedAS59077 UCLOUD-NET Shanghai UCloud Information Technology Company Limited- HKno
2018-12-22 07:31:19103.210.22.96Not listedAS135377 UHGL-AS-AP UCloud (HK) Holdings Group Limited- CNno
2018-10-18 14:39:0554.39.81.127ip127.ip-54-39-81.netNot listedAS16276 OVH- CAno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-10-18 16:51:06http://derwagiete.com/RUI/levond.php?l=goks6.xapOfflineexe Gozi ursnif Clean@unixronin
2018-10-18 16:51:06http://derwagiete.com/RUI/levond.php?l=goks8.xapOfflineexe ursnif Clean@unixronin
2018-10-18 16:51:06http://derwagiete.com/RUI/levond.php?l=goks9.xapOfflineexe ursnif Clean@unixronin
2018-10-18 16:51:03http://derwagiete.com/RUI/levond.php?l=goks5.xapOfflineexe Gozi ursnif Clean@unixronin
2018-10-18 16:50:10http://derwagiete.com/RUI/levond.php?l=goks3.xapOfflineexe Gozi ursnif Clean@unixronin
2018-10-18 16:50:07http://derwagiete.com/RUI/levond.php?l=goks2.xapOfflineexe Gozi ursnif Clean@unixronin
2018-10-18 16:50:05http://derwagiete.com/RUI/levond.php?l=goks1.xapOfflineexe Gozi ursnif Clean@unixronin
2018-10-18 14:39:08http://derwagiete.com/RUI/levond.php?l=goks7.xapOfflineexe Gozi Clean@oppimaniac
2018-10-18 14:39:05http://derwagiete.com/RUI/levond.php?l=goks4.xapOfflineexe Gozi Clean@oppimaniac