URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mistitis.ug
Abuse complaint sent?: Yes (2024-02-08 05:50:02 UTC to cmusisi{at}uol[dot]co[dot]ug,ksemat{at}eahd[dot]or[dot]ug)
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-07-05 13:44:03 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-11 00:04:03 91.215.85.223SBL615768AS200593 PROSPERO-AS- RUno
2023-05-27 12:34:50 94.142.138.213SBL655622AS211522 HYPERCORELTD- FIno
2023-05-03 15:17:36 91.215.85.135SBL615768AS200593 PROSPERO-AS- RUno
2023-04-14 15:16:36 94.142.138.104SBL655622AS211522 HYPERCORELTD- FIno
2023-03-16 16:45:03 91.215.85.173SBL615768AS200593 PROSPERO-AS- RUno
2022-12-18 13:55:05 91.215.85.158SBL615768AS200593 PROSPERO-AS- RUno
2022-07-05 13:44:04 45.143.201.4free.ntup.netSBL625748AS200195 VERASEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-06 05:41:24http://mistitis.ug/qwerty.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:37:25http://mistitis.ug/ali.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:33:37http://mistitis.ug/mkv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:32:03http://mistitis.ug/ppx.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:30:53http://mistitis.ug/asdf.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:29:35http://mistitis.ug/telly.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:14:11http://mistitis.ug/qwertyj1.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:13:43http://mistitis.ug/zxcvb.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:13:15http://mistitis.ug/ghjk.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:08:43http://mistitis.ug/net.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:08:36http://mistitis.ug/zxcv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:08:07http://mistitis.ug/pps.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:04:12http://mistitis.ug/payload.ps1Offlineopendir ps1 NDA0E
2024-03-29 04:48:08http://mistitis.ug/asdfg.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 05:52:07http://mistitis.ug/native.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 05:51:09http://mistitis.ug/asdf.EXEOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 05:47:07http://mistitis.ug/ghjkl.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2022-07-05 13:44:04http://mistitis.ug/zxcvb.exeOfflineAZORult ext CoinMiner exe RecordBreaker ext RemcosRAT ext Rhadamanthys Vidar ext zgRAT vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-08 11:19:5733682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:16:3733682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:04:2133682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:46:2833682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:37:0633682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:32:4133682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-06 05:13:147ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-06 05:08:427ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-29 22:03:074a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-27 09:06:56f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 08:44:018491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-27 07:50:044a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-26 20:41:09f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 16:49:088c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 14:10:58c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 14:09:5024f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 13:26:278c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 13:18:2424f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 12:23:52893d772df3fa2baa5977dfce6f27f1df6d9ddb925ff8aad75cb8693556ceb563exe  
2024-06-26 12:08:50a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 11:12:148491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 10:41:32a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 10:13:428491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 10:13:37c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 10:02:27a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 09:18:5007445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 07:37:348c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 07:30:58a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 07:21:098491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 06:41:15f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 06:40:37f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 06:37:5747a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 06:25:3347a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 06:12:568c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 04:27:50a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 02:50:0724f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 02:33:4147a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 02:33:30a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 02:25:43d71a727b15ed57aed5f099872b8b27b2d512a3ba7c075353dd02e3c6c560eba5exe  
2024-06-26 02:10:34a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 01:27:50c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 01:22:34c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 01:20:59f1a3575752ad9f9ed80f361cda52efb5b46a8cc15a23b2c047d1f146008128feexe  
2024-06-26 01:13:27a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 00:57:3347a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 00:31:1224f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-23 06:30:557ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:25:007ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:11:447ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 05:51:137ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-04-18 02:55:2798aeda39318ee2c5f23d2b0005fffd8b9f920bb2429460ca2238505440d83f1cexe  
2024-03-29 04:48:08432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:40:39432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:34:04432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:07:59432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-19 04:14:41c6c22bd674921b61870d04fd0440cb335ee00733836762a4bb1792df27b4f044exe  
2024-03-18 19:43:0381ff3355470634788c3941bd421e497e04646f837fa499c9570246b5a9fee028exe  
2024-03-18 09:28:584dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-18 02:14:15e5b13c97fceaef6b209a8dc3ea70af413f6773b119ddbd51a76f07035c82166aexe  
2024-03-17 10:20:474dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-16 04:25:044c1c4dc036e47323c9c9f46d22dfc63d7d2a769247f41ea5e1c79c1ccebd14a7exe  
2024-03-16 01:27:523f8ee070576f80e43dd2353fe82fbd5c10ed6848732bb0326c9b2e5b1d17f06fexe  
2024-03-15 01:30:467b157588fc5459235fbfe27e882955ac8de613107750310a083341d9d591ce71exe  
2024-03-14 23:23:31fa255333c71f5166207bd4368de2a1d8ed4a14b3d4ab240842c127c4c65b6312exe  
2024-02-08 05:52:07217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 05:51:09217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 05:47:07217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2023-11-12 16:07:26ad7af6aca0ba3d2fe9adb3f391800420800c0f6aa00db064fc1292232a6d881eexezgRAT
2023-10-26 17:23:52bd8dc93404d2549d18448b85a105d795f4fbe2ba160910e260cb6dd35c73f7e6exe  
2023-10-26 12:35:578868ea6af3214fc758c93c1cb909231a76e22e718a4917aae5f2a60cf12af094exeAZORult
2023-10-15 13:55:2922224f65c07515b2f61e29f7f1a14005d0de54378aa925d9e017bb2ac26b5395exezgRAT
2023-10-04 10:36:3277bfa9410910904d05a73ad3d6c28c1aa02b9d2ec82419f73600615b8b27f9a2exe Rhadamanthys
2023-08-30 10:17:54fa4674f783962f90ae5352387aa31f1c841a4a280197db427ce1ad5e7bdbf0e8exe 
2023-08-26 19:04:444d030ee3c9982e4a88e105dc0334022604defc69a55eec329089e8366d0c3b81exe  
2023-08-07 14:36:1529f5a8629986da0b4a353e5423fb39c505cba7c06e7aa4b5a4029c5a1669ae95exeRhadamanthys
2023-07-19 13:09:13bcf3266e8996bcdb7acb686034f264b07c228ce37f1212b663b636cc0317ee1aexe AZORult
2023-06-25 03:09:27fc6ddb1f7644597b84d14e3efa4cd1a1d1ad0083141b3fa2a613cd3c092f6505exeRhadamanthys
2023-06-21 21:23:00dfdc08b6daa2ba630dbe27a80c79fa4f9b36d193633b93274995d1c14e88012dexe 
2023-06-11 11:38:54c721953fa7017313eb8ee41d66071dfcce6127a9e578b01570ffb4509ab7f0e8exe  
2023-06-04 01:00:56ea6f9f647abeaf8eeddf59a547458471b9ecfa77f2cf6e7c53d0d178b7ec7559exe  
2023-05-31 01:31:376a25adcf3954a77554443e98d6ebd7429cedf3663e561212cc1a03763ca8fad5exe  
2023-05-28 12:06:215d2e841645576d0eefcc6bcc6c0d480c0c6874f05a56e92441319a5c41b38979exe AZORult
2023-05-25 07:08:36ed693d91bf15dd9a38ed00bcef4921247d994db66dbd9ca6635a3f031e127dffexe  
2023-05-12 06:28:22bf1d731a91e424fd67778f176ac652fa5ca39f2ab188ef740184e4b2808c7b3cexeAZORult
2023-05-11 14:13:3679a7c9d15971c14d78baccbf211b3ca1e9adcb0befc6d3d1c5d92902d70678e2exeAZORult
2023-05-08 15:30:1284c18f78f11b9bc3fd3e96925d2a7b76ab5ecfb927c377ad27456e191815b24aexeCoinMiner
2023-05-04 22:52:55840f99dae37626cfb9fd4390067ebdb1c0adcd24f95f505fd32117a170422ff1exe 
2023-05-03 11:49:1783263fa7b8c560ae026a24d6ea9e6eafb16aa207cc5557c65c7f71f703f3a593exe  
2023-05-01 14:59:45e99f79618b991de5d1052096950590a4fe833b885871a96bb1202e3d6dd876a0exe  
2023-04-30 14:08:55ff277e11345c79a60de0ba45011460629487e82e8b0b58a8ddfdfeca2d7623f5exe  
2023-04-22 13:25:500127ebf8628f963a453520b0149fc11fc5d0a56536ce2a41c9dfdd3c597a0746exe zgRAT
2023-04-18 10:12:00d9b498faf01b9eb598761915a6fc2fb4f1ab2317d354348baca6794730fd15d3exeVidar
2023-04-14 15:16:350cff8404e73906f3a4932e145bf57fae7a0e66a7d7952416161a5d9bb9752fd8exe Vidar
2023-04-07 18:19:194130ce135fbfab00618f261a0397e88479d2f61e1ed0d09ebcde525439774f3eexe AZORult
2023-03-24 08:36:09c3cba8fe3b0622f7f5bde6d67dfd02b454055c1e9fd4402197cf70e5002e9fdaexe  
2023-03-23 11:32:0360289bfd6a3a67726074cccced70f113419fea3b76c00855fb7dc5fa332d3f7aexeRhadamanthys
2023-03-16 16:45:03a54493e71a7f28fe61e607ba4c089ada71e13ff9e1df6cef5619a4163e2b0a1fexeAZORult
2023-02-05 09:51:204908e51e65bf67fdc3a559be7c47c3df1354a4a864b931cb176d282048f8d9c2exeAZORult
2023-01-13 05:11:498c5df030de0c79f2155a60e0d5f41889ec8d07d441279d406996dca4639f8539exeRecordBreaker
2022-12-18 14:16:36746669c6be1807fdafbc7ee3f1e958e1b584fa31688742bcc044d269af94b0d8exeRecordBreaker