URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: doggyrar.mooo.com
Domain registrar:Domain.com -
Domain registration date:2000-03-24 06:27:37 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-08-18 15:08:03 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-08-18 15:08:06 192.3.110.170192-3-110-170-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-09-02 01:11:05http://doggyrar.mooo.com/win32/CHARLSE.exeOffline32 AgentTesla ext exe zbetcheckin
2021-09-02 01:11:04http://doggyrar.mooo.com/win32/CHUCK.exeOffline32 exe RemcosRAT ext zbetcheckin
2021-09-02 01:11:04http://doggyrar.mooo.com/win32/MAMA.exeOffline32 exe RemcosRAT ext zbetcheckin
2021-09-02 01:07:08http://doggyrar.mooo.com/win32/TOBI.exeOffline32 AveMariaRAT ext exe zbetcheckin
2021-09-02 01:07:05http://doggyrar.mooo.com/win32/CHUCKS.exeOffline32 exe RemcosRAT ext zbetcheckin
2021-09-02 01:07:05http://doggyrar.mooo.com/win32/WIN32.exeOffline32 AveMariaRAT ext exe Matiex zbetcheckin
2021-09-02 00:50:08http://doggyrar.mooo.com/win32/doggy.exeOffline32 AgentTesla ext exe zbetcheckin
2021-08-27 10:37:07http://doggyrar.mooo.com/win32/dog.exeOffline32 AgentTesla ext exe zbetcheckin
2021-08-27 10:29:05http://doggyrar.mooo.com/win32/win32u.exeOffline32 AgentTesla ext exe RemcosRAT ext zbetcheckin
2021-08-18 15:26:05http://doggyrar.mooo.com/WIN32/ECHEZONA.exeOffline32 exe RemcosRAT ext zbetcheckin
2021-08-18 15:26:05http://doggyrar.mooo.com/WIN32/DOC.exeOffline32 AgentTesla ext AveMariaRAT ext exe zbetcheckin
2021-08-18 15:26:04http://doggyrar.mooo.com/WIN32/CHARLES.exeOffline32 exe RemcosRAT ext zbetcheckin
2021-08-18 15:22:07http://doggyrar.mooo.com/WIN32/WARZONE.exeOffline32 AgentTesla ext exe zbetcheckin
2021-08-18 15:08:06http://doggyrar.mooo.com/WIN32/RAR.EXEOffline32 AgentTesla ext AveMariaRAT ext exe RemcosRAT ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-09-16 10:16:100581160998be30f79bd9a0925a01b0ebc4cb94265dfa7f8da1e2839bf0f1e426exe  
2021-09-10 08:14:19d19dc1aef457a11c415d41b9bec1f6e7679b20aacc6771f789c66701be2d9a10exeMatiex
2021-09-10 00:25:245cfa1fed22afea4f588fb39b07e79162e0609d4fb373938c389838cb7d4c8e53exeMatiex
2021-09-05 20:49:117afb56dd48565c3c9804f683c80ef47e5333f847f2d3211ec11ed13ad36061e1exe  
2021-09-05 20:45:037afb56dd48565c3c9804f683c80ef47e5333f847f2d3211ec11ed13ad36061e1exe  
2021-09-02 01:11:0437382d4bbcc6bdb3d44b942ad597344b3dc8f15252ac5ccd5e22033f53ae9f64exeAgentTesla
2021-09-02 01:11:0446add58bc9326fa9becd1c7766ad6eef4abee494de997f4df08ca35c193a2147exeRemcosRAT
2021-09-02 01:11:0485445f0a808b4d25cc291adc7bf2782bcce76a011b7dbe1393426294343dd953exeRemcosRAT
2021-09-02 01:07:08038468b4bce04705f5f08025f029ca8f327540d31f8f373892248b42750f5a00exeAveMariaRAT
2021-09-02 01:07:059afde20b8b5405b0326cda263fc40b620730eef2076f51aaf959b2157f5f94e8exeAveMariaRAT
2021-09-02 01:07:0531825b4e2cb4053a257359fa54e809be5a3d6b991ab3f4eddb0daf87def9f7ebexeRemcosRAT
2021-09-02 00:50:08c3e8a96f0cce0e05c66bb162f2cb23d12817e959b2ffc0d1e6c605538cad0856exeAgentTesla
2021-08-30 08:10:115d1af9d6d105cd2f0abccbbdda1e355e19b4e06faa82622660892f2a0b34556cexeAgentTesla
2021-08-27 10:37:070f242e89dd3f1685ace979a248300f7f414932b8a2a75af88585c427f2758c10exeAgentTesla
2021-08-27 10:29:05d2890c754ab95d16d9d1d93f680a850db565a61c68bbaf0337696bfbb485e8faexeRemcosRAT
2021-08-19 22:30:11b66ed68c82ece47a67b72c1bf125a4f80a96c63692e392e0ee4a0fc05101de79exeAgentTesla
2021-08-19 22:19:26b66ed68c82ece47a67b72c1bf125a4f80a96c63692e392e0ee4a0fc05101de79exeAgentTesla
2021-08-19 05:48:0336cab5247296638ca5b35c4fcf864a06452718f5bf8b72fa41a620a06d9d67f1exeAgentTesla
2021-08-19 05:48:03f30fe9ab5effac2b48718faa2429bad33a2024b68cd30ead407bdff50eb89f8bexeAveMariaRAT
2021-08-19 05:43:35f30fe9ab5effac2b48718faa2429bad33a2024b68cd30ead407bdff50eb89f8bexeAveMariaRAT
2021-08-19 05:08:157afb56dd48565c3c9804f683c80ef47e5333f847f2d3211ec11ed13ad36061e1exe  
2021-08-19 05:07:437afb56dd48565c3c9804f683c80ef47e5333f847f2d3211ec11ed13ad36061e1exe  
2021-08-18 15:26:05f4d3d1d7abd51b08b3bad84d718cb3beaf9d0513422ce276ea2cc2617c3cf889exeAveMariaRAT
2021-08-18 15:26:05aeca027731726d15576b3d43b36b2624d5120694a28ee8d9704df4127a1e6a23exeRemcosRAT
2021-08-18 15:26:045f2e93f3e9d00c5ddfccca8a646d2ca7e55789ddb0bb4a61be63db3a82fd623dexeRemcosRAT
2021-08-18 15:22:072247beed02b63fa71ad203041bc7a189ae0523030fac7baef8d90207ecf1333fexeAgentTesla
2021-08-18 15:08:05d37c9cd4c34022b4147131342718ffdc98136591ed1c2903a9fac85834f31869exeRemcosRAT