URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ns2.timecheck.ug
Abuse complaint sent?: Yes (2024-02-09 06:20:02 UTC to cmusisi{at}uol[dot]co[dot]ug,ksemat{at}eahd[dot]or[dot]ug)
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2024-02-09 06:17:05 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-02-09 06:17:07 91.215.85.223SBL615768AS200593 PROSPERO-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-06 05:43:25http://ns2.timecheck.ug/zxcvb.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:37:23http://ns2.timecheck.ug/qwertyj1.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:30:55http://ns2.timecheck.ug/qwerty.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:28:02http://ns2.timecheck.ug/telly.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:27:21http://ns2.timecheck.ug/ali.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:26:38http://ns2.timecheck.ug/pps.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:23:22http://ns2.timecheck.ug/payload.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:21:12http://ns2.timecheck.ug/zxcvb.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:18:14http://ns2.timecheck.ug/net.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:11:44http://ns2.timecheck.ug/asdf.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:08:51http://ns2.timecheck.ug/ppx.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:07:57http://ns2.timecheck.ug/mkv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:03:17http://ns2.timecheck.ug/zxcv.ps1Offlineopendir ps1 NDA0E
2024-02-09 07:09:08http://ns2.timecheck.ug/native.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-09 07:09:07http://ns2.timecheck.ug/ghjk.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-09 07:09:07http://ns2.timecheck.ug/asdfg.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-09 06:17:07http://ns2.timecheck.ug/ghjkl.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-08 17:48:3133682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 11:18:1633682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:38:2933682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:38:0833682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:57:4433682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:43:2033682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-06 08:11:067ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-06 05:18:137ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-27 22:06:084a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-27 03:10:56f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 22:27:018491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 21:23:298c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 20:18:208491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 17:13:17f1a3575752ad9f9ed80f361cda52efb5b46a8cc15a23b2c047d1f146008128feexe  
2024-06-26 16:27:2447a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 15:08:27f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 14:49:1524f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 13:48:33a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 13:12:5307445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 13:04:32a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 12:37:4907445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 11:44:21f1a3575752ad9f9ed80f361cda52efb5b46a8cc15a23b2c047d1f146008128feexe  
2024-06-26 10:21:12f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 10:03:568c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 09:19:1624f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 09:05:318491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 07:27:45a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 06:44:308491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 06:29:45a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 06:17:05a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 04:59:46c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 04:51:42a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 04:25:1947a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 04:05:51c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 03:11:2624f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 02:28:03a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 02:27:37a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 02:22:36f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 01:53:028c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 01:32:3447a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 01:13:4747a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 00:29:1424f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 00:27:318c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-23 06:19:437ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:00:237ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 05:58:517ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 05:53:477ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-03-27 14:23:44432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:17:01432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:08:41432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:03:16432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-16 23:18:5328593a916a7d6b954927ffb138b02af7cf06e0548d0e9ba639c0552b9564fc4fexe  
2024-03-16 21:10:18928a71ccbf6f56df13b4291aed3b77fb6d3b3c291f72b8c587fe668bedaec58eexe  
2024-03-16 19:25:453f74a994bcea816201b50ccb13b258475bb5b4dbac7660465bfef7f99fa137a1exe  
2024-03-16 18:52:16f18f769bd80e07bdb2be5873d78e8e57e264cf65315ddc635facd6d4ded3338cexe  
2024-03-16 06:29:57a850c2ffff9869cf1ff560527d368bb13467df1a8d504b24cad280fcc04a714eexe  
2024-03-16 05:31:15f377867d7567743433ac9ee298c8e72f90cdddeb2130f660cc03c29482dd1856exe  
2024-03-16 01:16:40cde7986705af5323be1ea74f74b8ed07d1cbbbc71d98a4d6def8866f9c9db0b0exe  
2024-03-15 22:24:077359c782e82923b71de457a2fd13cdb62fcfc51475bb61427baf637c4a46c133exe  
2024-03-15 19:11:062a6693949b6137f250df5ac59154f57d39ee15e696e4902a5c191ccaf92c3615exe  
2024-03-15 18:49:386df1a8959d362cbe8ea39289fbd21954efc7cf94309de3478779817ffd39ab9dexe  
2024-03-15 15:23:286d1e94644fb4fc55ed299724d72ae224406071415cfa02d74e800b80268f9d04exe  
2024-03-15 09:30:150f32136335daf6c9a6a6bdef54715ba06734c87a88e4eece1cfee6d300d814b3exe  
2024-03-15 09:11:26dd2cca34f39e122f1c5ba5f8f935d3c58a66d9feac86181b614657c963a1f76fexe  
2024-03-15 01:19:02af53ba0e9c77a16165dc1148bfe825d5328c6bfcd709bed6e1affb78f6d2e418exe  
2024-03-14 15:13:037b157588fc5459235fbfe27e882955ac8de613107750310a083341d9d591ce71exe  
2024-03-14 13:07:17ca8b49b01b92b5450a934b93a7a7e52170f7bab2e779856bae19d41f7fa56a66exe  
2024-02-09 07:09:08217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-09 07:09:07217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-09 07:09:07217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-09 06:17:07217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys