URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: n.ddnsgratis.com.br
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-10-18 07:08:05 UTC
Total malware sites :65
Online malware sites :0 (0%)
Offline Malware sites :65 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:25:26 24.152.36.11324-152-36-113.masterdaweb.comNot listedAS270564 MASTER_DA_WEB_DATACENTER_LTDA- BRyes
2024-12-03 20:21:41 24.152.37.1924-152-37-19.masterdaweb.comNot listedAS270564 MASTER_DA_WEB_DATACENTER_LTDA- BRno
2024-11-03 20:30:37 89.213.142.8389-213-142-83.masterdaweb.comNot listedAS834 IPXO- GBno
2024-10-18 07:08:14 194.5.152.215vmi1871295.contaboserver.netNot listedAS51167 CONTABO- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-18 07:13:51http://n.ddnsgratis.com.br/sitef/teste6.exeOfflineopendir abus3reports
2024-10-18 07:13:50http://n.ddnsgratis.com.br/sitef/client19.exeOfflineopendir abus3reports
2024-10-18 07:13:50http://n.ddnsgratis.com.br/sitef/client11.exeOfflineopendir abus3reports
2024-10-18 07:13:49http://n.ddnsgratis.com.br/sitef/client20.exeOfflineopendir abus3reports
2024-10-18 07:13:49http://n.ddnsgratis.com.br/sitef/sitef64/client...Offlineopendir abus3reports
2024-10-18 07:13:48http://n.ddnsgratis.com.br/sitef/client10.exeOfflineopendir abus3reports
2024-10-18 07:13:48http://n.ddnsgratis.com.br/sitef/xworm/svchost.exeOfflineAsyncRAT ext opendir abus3reports
2024-10-18 07:13:45http://n.ddnsgratis.com.br/sitef/client14.exeOfflineopendir abus3reports
2024-10-18 07:13:44http://n.ddnsgratis.com.br/sitef/sitef64/client...Offlineopendir abus3reports
2024-10-18 07:13:43http://n.ddnsgratis.com.br/sitef/service/XClien...OfflineAsyncRAT ext opendir abus3reports
2024-10-18 07:13:42http://n.ddnsgratis.com.br/sitef/meta/MSecurity...Offlineopendir abus3reports
2024-10-18 07:13:38http://n.ddnsgratis.com.br/sitef/btc/svchost.exeOfflineopendir abus3reports
2024-10-18 07:13:36http://n.ddnsgratis.com.br/sitef/client9.exeOfflineopendir abus3reports
2024-10-18 07:13:36http://n.ddnsgratis.com.br/sitef/security/svcho...Offlineopendir abus3reports
2024-10-18 07:13:33http://n.ddnsgratis.com.br/sitef/hotel_eng.pdfOfflineopendir abus3reports
2024-10-18 07:13:31http://n.ddnsgratis.com.br/sitef/elopar/elopar.jpgOfflineopendir abus3reports
2024-10-18 07:13:31http://n.ddnsgratis.com.br/sitef/Clipper_HxD_Cr...Offlineopendir abus3reports
2024-10-18 07:13:31http://n.ddnsgratis.com.br/sitef/Documentos/testeOfflineopendir abus3reports
2024-10-18 07:13:30http://n.ddnsgratis.com.br/sitef/security/insta...Offlineopendir abus3reports
2024-10-18 07:13:30http://n.ddnsgratis.com.br/sitef/client17.exeOfflineopendir abus3reports
2024-10-18 07:13:30http://n.ddnsgratis.com.br/sitef/client12.exeOfflineopendir abus3reports
2024-10-18 07:13:30http://n.ddnsgratis.com.br/sitef/elopar/putty.7zOfflineMetasploit opendir abus3reports
2024-10-18 07:13:29http://n.ddnsgratis.com.br/sitef/instalador/Ins...Offlineopendir abus3reports
2024-10-18 07:13:29http://n.ddnsgratis.com.br/sitef/sitef64/sitef_...Offlineopendir abus3reports
2024-10-18 07:13:29http://n.ddnsgratis.com.br/sitef/elopar/AdHoc.BATOfflineopendir abus3reports
2024-10-18 07:13:28http://n.ddnsgratis.com.br/sitef/hotel.pdfOfflineopendir abus3reports
2024-10-18 07:13:28http://n.ddnsgratis.com.br/sitef/sitef64/sitef_...Offlineopendir abus3reports
2024-10-18 07:13:26http://n.ddnsgratis.com.br/sitef/btc/Americas%2...Offlineopendir abus3reports
2024-10-18 07:13:26http://n.ddnsgratis.com.br/sitef/Documentos/btc...Offlineopendir abus3reports
2024-10-18 07:13:25http://n.ddnsgratis.com.br/sitef/btc/Console_te...Offlineopendir abus3reports
2024-10-18 07:13:24http://n.ddnsgratis.com.br/sitef/sitef64/Micros...Offlineopendir abus3reports
2024-10-18 07:13:22http://n.ddnsgratis.com.br/sitef/putty.exeOfflineopendir abus3reports
2024-10-18 07:13:19http://n.ddnsgratis.com.br/sitef/sitef32/sitef3...Offlineopendir abus3reports
2024-10-18 07:13:18http://n.ddnsgratis.com.br/sitef/meta/MSecurity...Offlineopendir sality abus3reports
2024-10-18 07:13:17http://n.ddnsgratis.com.br/sitef/sitef32/CRYPTE...Offlineopendir abus3reports
2024-10-18 07:13:16http://n.ddnsgratis.com.br/sitef/OneDriveUpdate...Offlineopendir abus3reports
2024-10-18 07:13:14http://n.ddnsgratis.com.br/sitef/Documentos/One...Offlineopendir abus3reports
2024-10-18 07:13:14http://n.ddnsgratis.com.br/sitef/elopar/putty.exeOfflineMetasploit opendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/sitef32/Micros...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/btc_eng.htaOfflineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/neutrino/prote...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/sitef64/sitef6...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/sitef32/CRYPTE...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/Documentos/btc...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/elopar/msf.exe...OfflineMetasploit opendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/neutrino/prote...Offlineopendir sality abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/sitef32/sitef_...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/sitef32/CRYPTE...Offlineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/elopar/msf.7zOfflineopendir abus3reports
2024-10-18 07:13:13http://n.ddnsgratis.com.br/sitef/btc/granada.htaOfflineopendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/elopar/msf.exeOfflineMetasploit opendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/neutrino/paylo...OfflineNeutrino ext opendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/elopar/adhoc2.batOfflineopendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/btc/ConsoleApp...Offlineopendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/instalador/ins...Offlineopendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/instalador/ins...Offlineopendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/svchost.exeOfflineAsyncRAT ext opendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/neutrino/paylo...OfflineNeutrino ext opendir abus3reports
2024-10-18 07:13:12http://n.ddnsgratis.com.br/sitef/btc_pt.htaOfflineopendir abus3reports
2024-10-18 07:13:11http://n.ddnsgratis.com.br/sitef/xworm/Xconect.vbsOfflineopendir abus3reports
2024-10-18 07:13:05http://n.ddnsgratis.com.br/sitef/NET_Framework_...Offlineopendir abus3reports
2024-10-18 07:13:05http://n.ddnsgratis.com.br/sitef/elopar/conecta...Offlineopendir abus3reports
2024-10-18 07:13:05http://n.ddnsgratis.com.br/sitef/elopar/sytemin...Offlineopendir abus3reports
2024-10-18 07:13:04http://n.ddnsgratis.com.br/sitef/emails_extraid...Offlineopendir abus3reports
2024-10-18 07:08:14http://n.ddnsgratis.com.br/sitef/xworm/XClient.exeOfflineAsyncRAT ext xworm abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-18 07:13:5125561278e4dc6a19e0a48659df90ea5cd3ccd0816b28b38e31101b70ccb0c539exe 
2024-10-18 07:13:50d4d6c9314c57b237a97a84d0fe5101963de8984f3075433ff2dcfd308083115fexe 
2024-10-18 07:13:50887bb1904ec85803e0f36de870ecc9d9979d586e94f42c562a407e734d5bcd1aexe 
2024-10-18 07:13:49f7a7e1b1e58c4b6c7a706dc28651d30f1ba0daf2b08b1ea2be04f52b14358dd3exe 
2024-10-18 07:13:497e3c29f65636212adf864d41327d17ca89ac0f0ef1ad6135ab32ca8dfea8609aexe 
2024-10-18 07:13:4807b702e023cc57f4cf63f292fb58bfcbf03952036c968d3f8ce4ef11b0aa1e8bexe 
2024-10-18 07:13:48309afb31fe576087d2c7a1b92749ea7b2680278ff700248e0a45904fe32e8115exe AsyncRAT
2024-10-18 07:13:444a651d186ad2770c369110111564d629e5a0dcc9500cc447b4aa16add1b38ef8exe 
2024-10-18 07:13:44da7963b64ae505d8114ab23fa00ef1f59acd36d1bacb85b824e2a58ab35967d5exe 
2024-10-18 07:13:40dacf9d108e0dcafa8a9e1050d1ce3eccc77eeee7fd1639eeaa63ab65b1afc84eexeAsyncRAT
2024-10-18 07:13:406ddd6e9f5ff9a2497353318eb8474ab50fb6677bdc113f67362c50d71707b2b5exe  
2024-10-18 07:13:38add2ade24a91060f68861cf95604a7e1910849b67b255e5caec98e57919b1b2cexe 
2024-10-18 07:13:3616554b2b3cf14bededafbe8569eb493a3b3a9e84dfc455b84e09c25661f04957exe 
2024-10-18 07:13:36deb073e0199c835d2fa53d56efd3ad4a035f89f2bd3a7778831d9b50895ff24fexe 
2024-10-18 07:13:32644b54819d2847169bf9df54a0197fe496118d6f4aac27ca76be4f00ff0b905epdf  
2024-10-18 07:13:312eb2e70b013a1cf44eb95fb0354f8d77bd29a0f1b260c246a1816b509bb827b2exe 
2024-10-18 07:13:300924ee53769bb0eac88ee3d717bd314eda2f2294b2ac2954cbbd3c1d3833cfbeunknown  
2024-10-18 07:13:30fa1e8689d7fce224598d10328ffb02447d5cde2b532befcb807401a3229da04aexe 
2024-10-18 07:13:3014d88e9d6d2eb27041fdb110eeedad179310ff11a9247b3c5b1cf64dc82cfd7aunknown  
2024-10-18 07:13:29da7963b64ae505d8114ab23fa00ef1f59acd36d1bacb85b824e2a58ab35967d5exe 
2024-10-18 07:13:29c7cde264e530da1964483407504f1c1974360eb8b8d702d06f4e5c1634f4b94bexe 
2024-10-18 07:13:2901cf0a47ab01d55fdea021a5119ee23d600ed9a75ca4a820a9529e8aed5956b97zMetasploit
2024-10-18 07:13:28ef8ea2bc19497ad147de99fec001d93c46c66d3324fe0ef7ff1ca75d67a534b4txt  
2024-10-18 07:13:28edffdd5faf9d6ae195eb023f315b435189de84b4992ace6abc2ca40cee6ca186exe HydraPOS
2024-10-18 07:13:2813f4456ba9e3d5fc4cff89a15d1b42520dd56baf5f544cdcf4a025506935cbc1bat  
2024-10-18 07:13:267b057b04e33cebe6819aadb346c88fc4fea81f2fc626ebe186effe8cbfa5e802exe 
2024-10-18 07:13:256aa3b4267fd2fa98956b75ad7fcaf6ca125d527049ca165d06a11d660f08afa4exe 
2024-10-18 07:13:25644b54819d2847169bf9df54a0197fe496118d6f4aac27ca76be4f00ff0b905epdf  
2024-10-18 07:13:2590aa4a5ff029e9f4bda8c116da17fe738409667f55aec3c7342332a400fae87bpdf  
2024-10-18 07:13:2535bb995f4bb723b97b9035c5eaa8b4c61adc3ad30efc26b0e2cc31a38da5e2afunknown  
2024-10-18 07:13:24be243e00c46c38bb37e2e8c542f9724d4c0b9889f97240e028d780119aef28b5dll  
2024-10-18 07:13:21eb1b278b91a8f183f9749948abd9556ec21b03ca852c53e423d824d5d7cc3de4exe  
2024-10-18 07:13:176b6f1c31472028614451faab285caf52cce401b3a4d5bd3a915fe29d28a7c8467z 
2024-10-18 07:13:161a089c8808acf7d3a83c0524e07bd0bb888ab3c987d109bae0613e456c08f32fexeSality
2024-10-18 07:13:15cb13291ca5e4f62fdf23dd28c95b33478957a9c98ac42b77e6fa6329aa5efe92exe 
2024-10-18 07:13:14cb13291ca5e4f62fdf23dd28c95b33478957a9c98ac42b77e6fa6329aa5efe92exe 
2024-10-18 07:13:14faf6a88f7009bcb34f39ca11e7b1968b9666ee10609ad49ba8cf32e36c2ad397exeMetasploit
2024-10-18 07:13:13c2552478edb777fe3cc097965e162fb7945cb6d5e4ce0fa3b66c3e7f0d444df8unknown  
2024-10-18 07:13:13e77d8b0d6bbdbd1e14ad10db5c26afb9306da503332de76dd19fb39a0ccd8ccb7z 
2024-10-18 07:13:134682d947baec2eb49612a326b1f8f50c5206ce030eee41eb9406a2972a3aba537z  
2024-10-18 07:13:138c412f0e45ae2531e572075680337abb0c2e7e6e0be14f1cbc0a01102796bf7e7z 
2024-10-18 07:13:132667bd73aefa67164710fc0f579163817c2cd2787b1e497fee01f9a80734030dunknown  
2024-10-18 07:13:1320d84dd8c73993a1012d7a9d9b837aa118182cb16daf4169a266c0b48a708af7exeSality
2024-10-18 07:13:13235bbd09d818592d1d2dd6e3490a0b1dd60cc7fe6e81a526e8474af81543331eexeHydraPOS
2024-10-18 07:13:13ea1e8e23388526c72b7d6025013761f99862574851114e228a7cd2edb31ae1d6exe  
2024-10-18 07:13:136827886cdd38a7dbf661eff5fd58368669c9d6436e58d4ec0670291aa1624d297z  
2024-10-18 07:13:13211a80290b8a30468ddc3c3ba16260b570cd8ffcc8878e1aae18aaffffe1ae9aexeMetasploit
2024-10-18 07:13:122afa3d1c04f45b9aa6f821f50c95bf53aafd049a31e46e7da2317d6a198e2163unknown  
2024-10-18 07:13:124faa782927a093e33caecbf3e4cb6e6bd4fc8f5473e1aa79d64c8cdf1561b257bat  
2024-10-18 07:13:12dc73ee15e99fc99126c7c891cb75c3c46b49e89d265163ea2405dc16a2a285d2exe 
2024-10-18 07:13:1298eec5cb93d46595d012630c4399714ae85abb5917a9f64a7eeb835a0ef2d5b3txt  
2024-10-18 07:13:121ed28d37afecf372c1afd43e169c6844fb43ca35d18eebf99659fe056efb8794txt  
2024-10-18 07:13:122965834ef9a49d06f3dee7657e642fee88fd24a9aae7c612087aa851b5a3949cexeMetasploit
2024-10-18 07:13:1272e80f29189f332c8fcb9c88a24e62b28a35bb4ce8e63a2f19c6ac3618f79d58exeAsyncRAT
2024-10-18 07:13:128eb4be83007b9c2e35646b26337e2837dbf4ae6db32440e8413f8467b6a88febexe Neutrino
2024-10-18 07:13:12bfe8e4ffc72751970749d53be4d3c7bda9dfe3a815be119640bc0f1a063943b2unknown  
2024-10-18 07:13:12be243e00c46c38bb37e2e8c542f9724d4c0b9889f97240e028d780119aef28b5dll  
2024-10-18 07:13:118c12ced660f04bc318a5eaed1f429dfd0f3e981b17a400d03e605bc44bc25ace7zNeutrino
2024-10-18 07:08:07dc6f6cfe00f36f062e9c239ce735ce74adac8a99924855d9be14122ab950f624exeAsyncRAT