URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: karimgouss.ug
Abuse complaint sent?: Yes (2023-03-20 00:25:02 UTC to cmusisi{at}uol[dot]co[dot]ug,ksemat{at}eahd[dot]or[dot]ug)
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-03-20 00:20:06 UTC
Total malware sites :19
Online malware sites :0 (0%)
Offline Malware sites :19 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-10 23:32:05 91.215.85.223SBL615768AS200593 PROSPERO-AS- RUno
2023-05-27 11:53:57 94.142.138.213SBL655622AS211522 HYPERCORELTD- FIno
2023-05-03 13:33:04 91.215.85.135SBL615768AS200593 PROSPERO-AS- RUno
2023-04-14 14:53:40 94.142.138.104SBL655622AS211522 HYPERCORELTD- FIno
2023-03-20 00:20:09 91.215.85.173SBL615768AS200593 PROSPERO-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-06 05:39:58http://karimgouss.ug/ppx.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:38:05http://karimgouss.ug/pps.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:31:53http://karimgouss.ug/mkv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:30:29http://karimgouss.ug/zxcvb.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:29:15http://karimgouss.ug/zxcv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:18:27http://karimgouss.ug/qwerty.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:17:05http://karimgouss.ug/qwertyj1.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:12:05http://karimgouss.ug/ali.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:10:51http://karimgouss.ug/asdf.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:08:40http://karimgouss.ug/payload.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:05:59http://karimgouss.ug/ghjkl.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:04:42http://karimgouss.ug/telly.ps1Offlineopendir ps1 NDA0E
2024-06-27 06:21:07http://karimgouss.ug/ghjk.exeOffline32 exe Rhadamanthys zbetcheckin
2024-06-27 06:21:07http://karimgouss.ug/native.exeOffline32 exe Rhadamanthys zbetcheckin
2024-06-27 06:20:10http://karimgouss.ug/asdfg.exeOffline32 exe Rhadamanthys zbetcheckin
2024-06-27 06:20:09http://karimgouss.ug/asdf.EXEOffline32 exe Rhadamanthys zbetcheckin
2024-06-27 06:20:09http://karimgouss.ug/net.exeOffline32 exe Rhadamanthys zbetcheckin
2023-03-20 02:09:11http://karimgouss.ug/zxcvb.exeOffline32 AZORult ext CoinMiner exe Rhadamanthys Vidar ext zgRAT zbetcheckin
2023-03-20 00:20:09http://karimgouss.ug/zxcv.EXEOffline32 AZORult ext CoinMiner exe ModiLoader ext Rhadamanthys zgRAT zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-08 12:24:1833682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 11:58:4233682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:33:4933682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:31:2233682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:07:5133682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:29:2233682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-06 05:05:587ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-04 17:08:397ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-04 16:54:127ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-04 16:44:317ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-04 15:49:507ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-04 15:48:107ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-30 00:27:381be72df03d119533254240c7553b6fc6af0b28c58182ac937684ea0fe8a41b4eexe  
2024-06-29 10:22:274a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-29 00:04:11893d772df3fa2baa5977dfce6f27f1df6d9ddb925ff8aad75cb8693556ceb563exe  
2024-06-28 21:43:33f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-28 12:57:404a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-28 00:48:27a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 22:15:168491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 19:34:128491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 19:13:34f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 18:29:498491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 18:25:4224f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-27 15:17:0324f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-27 13:12:09a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 12:12:1424f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-27 12:11:46a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 11:04:548c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-27 10:42:3424f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-27 09:57:06a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 09:44:26a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 09:05:24f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 08:42:2647a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-27 08:29:578491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 08:29:148491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 08:12:5447a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-27 08:01:005890ee6f9f66d62cee74bd17515cc60610f23c7f0c644efba049fb8d56d6c794exe  
2024-06-27 07:49:5547a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-27 07:42:57f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 07:33:4947a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-27 07:21:54f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 06:47:3147a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-27 06:21:0724f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-27 06:21:078c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-27 06:20:098c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-27 06:20:098c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-27 06:20:098c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2023-11-12 20:04:41ad7af6aca0ba3d2fe9adb3f391800420800c0f6aa00db064fc1292232a6d881eexezgRAT
2023-11-12 13:20:51ad7af6aca0ba3d2fe9adb3f391800420800c0f6aa00db064fc1292232a6d881eexezgRAT
2023-10-26 12:45:198868ea6af3214fc758c93c1cb909231a76e22e718a4917aae5f2a60cf12af094exeAZORult
2023-10-26 12:45:058868ea6af3214fc758c93c1cb909231a76e22e718a4917aae5f2a60cf12af094exeAZORult
2023-10-15 14:14:5222224f65c07515b2f61e29f7f1a14005d0de54378aa925d9e017bb2ac26b5395exezgRAT
2023-10-15 14:00:4522224f65c07515b2f61e29f7f1a14005d0de54378aa925d9e017bb2ac26b5395exezgRAT
2023-10-04 10:36:0277bfa9410910904d05a73ad3d6c28c1aa02b9d2ec82419f73600615b8b27f9a2exe Rhadamanthys
2023-10-04 10:18:1077bfa9410910904d05a73ad3d6c28c1aa02b9d2ec82419f73600615b8b27f9a2exe Rhadamanthys
2023-09-16 10:48:15cba6d759d06ca62870a8b62e2aa720be826369fbc8a6f8ba5e2404d8181896acexe  
2023-08-07 15:14:2229f5a8629986da0b4a353e5423fb39c505cba7c06e7aa4b5a4029c5a1669ae95exeRhadamanthys
2023-08-07 15:09:0529f5a8629986da0b4a353e5423fb39c505cba7c06e7aa4b5a4029c5a1669ae95exeRhadamanthys
2023-07-27 22:02:4333999930570e34ec77b4873a8cffa5466bbfbf5ad83f949d10d95eb40151bbe5exe 
2023-07-19 12:46:10bcf3266e8996bcdb7acb686034f264b07c228ce37f1212b663b636cc0317ee1aexe AZORult
2023-07-19 12:27:17bcf3266e8996bcdb7acb686034f264b07c228ce37f1212b663b636cc0317ee1aexe AZORult
2023-06-25 03:28:12fc6ddb1f7644597b84d14e3efa4cd1a1d1ad0083141b3fa2a613cd3c092f6505exeRhadamanthys
2023-06-25 03:23:10fc6ddb1f7644597b84d14e3efa4cd1a1d1ad0083141b3fa2a613cd3c092f6505exeRhadamanthys
2023-06-17 12:15:071bcc8e21c914035b2d4234ead47071bc8ee9f6978b279fd3320cdd08b5804c85exe  
2023-06-16 05:54:04bf4e66ff9aeb1b06ec94758356e5142766824bcedbdd2a82b280c55e61e5d055exe  
2023-06-13 03:28:27394d1cc2c76e52f85a9bed1302431751701bdcf7083ef2065dbf7b6a36911c07exe  
2023-06-04 15:38:48ce07056901d2b5ef7465c6d32c94658aa4634fa0a022472708eb3f09341ba64cexe  
2023-06-03 07:03:20cbf13fe3478f2bb22bd307ecc6fbca61a2b825301c55c5ede3fbbf086ce28884exe  
2023-05-30 20:37:559e5ad8a352f0ae5fb03d2078e890f5d2d33c8f845c11853daf49043eab3f451eexe 
2023-05-28 12:23:155d2e841645576d0eefcc6bcc6c0d480c0c6874f05a56e92441319a5c41b38979exe AZORult
2023-05-28 12:22:385d2e841645576d0eefcc6bcc6c0d480c0c6874f05a56e92441319a5c41b38979exe AZORult
2023-05-26 13:30:355851b462ac0152c7689ec48ab65e8f2050f5c27ed30465f9b54cc27e15f1386aexe 
2023-05-12 09:14:40bf1d731a91e424fd67778f176ac652fa5ca39f2ab188ef740184e4b2808c7b3cexeAZORult
2023-05-12 05:11:03bf1d731a91e424fd67778f176ac652fa5ca39f2ab188ef740184e4b2808c7b3cexeAZORult
2023-05-11 13:39:2979a7c9d15971c14d78baccbf211b3ca1e9adcb0befc6d3d1c5d92902d70678e2exeAZORult
2023-05-11 13:00:4379a7c9d15971c14d78baccbf211b3ca1e9adcb0befc6d3d1c5d92902d70678e2exeAZORult
2023-05-08 16:10:5784c18f78f11b9bc3fd3e96925d2a7b76ab5ecfb927c377ad27456e191815b24aexeCoinMiner
2023-05-08 15:57:4384c18f78f11b9bc3fd3e96925d2a7b76ab5ecfb927c377ad27456e191815b24aexeCoinMiner
2023-05-03 11:16:4083263fa7b8c560ae026a24d6ea9e6eafb16aa207cc5557c65c7f71f703f3a593exe  
2023-05-03 11:04:4483263fa7b8c560ae026a24d6ea9e6eafb16aa207cc5557c65c7f71f703f3a593exe  
2023-05-01 15:47:37e99f79618b991de5d1052096950590a4fe833b885871a96bb1202e3d6dd876a0exe  
2023-05-01 15:22:04e99f79618b991de5d1052096950590a4fe833b885871a96bb1202e3d6dd876a0exe  
2023-04-30 14:59:31ff277e11345c79a60de0ba45011460629487e82e8b0b58a8ddfdfeca2d7623f5exe  
2023-04-30 13:46:23ff277e11345c79a60de0ba45011460629487e82e8b0b58a8ddfdfeca2d7623f5exe  
2023-04-23 12:22:296bb4fb7b7aa4a2cfe672f6c0c6872eb2bd5ec0580552d60d56f69dcd44272e75exe 
2023-04-22 13:50:320127ebf8628f963a453520b0149fc11fc5d0a56536ce2a41c9dfdd3c597a0746exe zgRAT
2023-04-22 13:47:140127ebf8628f963a453520b0149fc11fc5d0a56536ce2a41c9dfdd3c597a0746exe zgRAT
2023-04-18 10:25:33b415a5cc8d0c1c960e7bc16bcb9351943b2c998f9430b1a1425b715754cc1e11exe ModiLoader
2023-04-18 10:21:24d9b498faf01b9eb598761915a6fc2fb4f1ab2317d354348baca6794730fd15d3exeVidar
2023-04-14 16:06:48c90193af8ffe050ad79402dfceb9274be08b300bc02ecb1e6394917ee50934e4exe ModiLoader
2023-04-14 14:53:340cff8404e73906f3a4932e145bf57fae7a0e66a7d7952416161a5d9bb9752fd8exe Vidar
2023-04-08 21:23:59d95a66e4f08fb6adb5978cc1a2ac010149ee2dbe03f81d920c026fb90a6ab3c7exe 
2023-04-07 18:20:434130ce135fbfab00618f261a0397e88479d2f61e1ed0d09ebcde525439774f3eexe AZORult
2023-04-07 18:12:044130ce135fbfab00618f261a0397e88479d2f61e1ed0d09ebcde525439774f3eexe AZORult
2023-03-29 07:48:07aeadf9d986f0ab4d4e110fe13dce641bf95d24af293a23c1638da83883cc65b7exe 
2023-03-23 23:06:02328ac60e1df33c81596f0587a3cdad3827c4236b698860b1794e1725a16c0c45exe  
2023-03-23 11:24:226ad4c22533cf835aaafd24303e155aa431d3aa38c1746dc8fccf2924e0be4b63exe Rhadamanthys
2023-03-23 11:04:4460289bfd6a3a67726074cccced70f113419fea3b76c00855fb7dc5fa332d3f7aexeRhadamanthys
2023-03-22 01:37:451ff0fcdfbcb2a04aa6a1d76f399fb1f9b538424c3305862b09f130120026356eexe 
2023-03-20 22:28:36a2d2bc0e72c489f9c84bf5dbf11be1052c5c12e6c90ee5aab7856650b5b58339exe