URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: opesjk.ug
Abuse complaint sent?: Yes (2022-12-02 01:10:02 UTC to cmusisi{at}uol[dot]co[dot]ug,ksemat{at}eahd[dot]or[dot]ug)
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-08-23 05:58:05 UTC
Total malware sites :18
Online malware sites :0 (0%)
Offline Malware sites :18 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-10 23:31:36 91.215.85.223SBL615768AS200593 PROSPERO-AS- RUno
2023-05-27 14:08:38 94.142.138.213SBL655622AS211522 HYPERCORELTD- FIno
2023-05-03 15:03:43 91.215.85.135SBL615768AS200593 PROSPERO-AS- RUno
2023-04-15 00:35:33 94.142.138.104SBL655622AS211522 HYPERCORELTD- FIno
2023-03-16 16:20:44 91.215.85.173SBL615768AS200593 PROSPERO-AS- RUno
2022-12-18 13:01:05 91.215.85.158SBL615768AS200593 PROSPERO-AS- RUno
2019-08-25 13:36:09 47.254.173.118Not listedAS45102 ALIBABA-CN-NET- DEno
2019-08-23 05:58:08 5.53.124.65Not listedAS49505 SELECTEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-07-06 05:40:17http://opesjk.ug/qwerty.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:39:06http://opesjk.ug/qwertyj1.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:34:26http://opesjk.ug/ppx.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:32:36http://opesjk.ug/payload.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:21:36http://opesjk.ug/ali.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:19:54http://opesjk.ug/zxcvb.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:19:31http://opesjk.ug/ghjkl.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:17:02http://opesjk.ug/zxcv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:14:52http://opesjk.ug/telly.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:14:27http://opesjk.ug/mkv.ps1Offlineopendir ps1 NDA0E
2024-07-06 05:12:02http://opesjk.ug/zxcvb.exeOfflineexe opendir Rhadamanthys NDA0E
2024-07-06 05:11:21http://opesjk.ug/pps.ps1Offlineopendir ps1 NDA0E
2024-02-08 08:58:08http://opesjk.ug/ghjk.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 08:58:08http://opesjk.ug/net.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 08:58:06http://opesjk.ug/native.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2023-01-13 16:52:09http://opesjk.ug/asdf.ps1Offlineps1 abuse_ch
2022-12-02 01:09:10http://opesjk.ug/asdfg.exeOffline32 AZORult ext CoinMiner exe RecordBreaker ext Rhadamanthys Vidar ext zgRAT zbetcheckin
2019-08-23 05:58:08http://opesjk.ug/asdf.EXEOfflineexe NetWire ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-07-08 11:19:1733682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 11:11:5533682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:19:0233682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 10:03:4633682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:38:4933682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-08 09:34:5233682e861b76b0ae22b7361f5b59bb7e69b95e69480156714f01e7044408b546exeRhadamanthys
2024-07-06 05:19:277ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-07-06 05:12:027ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-29 10:48:444a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-29 09:01:28c26e3ccf3c23e0b0691a4f0679251611455a9058466a96f203fac4504b4a12faexe  
2024-06-27 14:43:594a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-27 14:08:44c26e3ccf3c23e0b0691a4f0679251611455a9058466a96f203fac4504b4a12faexe  
2024-06-27 12:41:554a69a64d652063b65cfe7f7ad5e54491b06547c783d74147c79cb9145536cf26exe 
2024-06-27 10:27:06a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-27 07:38:32893d772df3fa2baa5977dfce6f27f1df6d9ddb925ff8aad75cb8693556ceb563exe  
2024-06-27 05:07:21f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-27 04:12:578491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 16:20:5347a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 15:19:47f1a3575752ad9f9ed80f361cda52efb5b46a8cc15a23b2c047d1f146008128feexe  
2024-06-26 14:19:4624f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 14:03:09f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 13:53:3024f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 13:47:528c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 13:39:238491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 12:35:41a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 11:50:558f0bfdbbec0bd2d3fbd46d0ad3c6fbfd54b2baa678b698cb7e4f76fd1ce631b7exe  
2024-06-26 11:10:45c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 09:56:57c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 09:07:2607445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 08:37:3447a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 08:02:06f1a3575752ad9f9ed80f361cda52efb5b46a8cc15a23b2c047d1f146008128feexe  
2024-06-26 07:39:5147a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 07:25:5507445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 06:17:02c04200d5cf07683046a213f28b227e5333d32de291dd448c4cb9bea5bafc76b8exe  
2024-06-26 06:10:258491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-26 06:08:0947a817f85453e16e52d201810fd5a719a1fcb01c49dfd350a2fc36fef42ac442exe 
2024-06-26 04:52:1707445b196288e616e539c775b87265d10341c0c644558ba94a8525a70536e871exe  
2024-06-26 04:44:16a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 03:34:308c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 02:52:118c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 02:40:4724f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 01:52:35f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 01:49:31a2e4f1eead7d430cf08d33e04c48adb2af23b71ec4c633bc6b88d870c1d61a56exe  
2024-06-26 01:21:14f567eb23dd95fe66f925bce074253f46263b0916de62d8850dd8c3ac35efc72eexe  
2024-06-26 01:20:54a31d2bd866d61f88043596ef2723271f53f79d8f584c3fd1cae625d23772d256exe  
2024-06-26 01:08:5524f6c1b06912c2d8d46c6ac10737fd8efaaf7d18b227279f9dae584a5625c0c6exe  
2024-06-26 00:53:598c13fdcfeb87abd390f487e9d51d7edcdd6073951a5f96e5c0b1f7d899874932exe 
2024-06-26 00:49:118491781afed15ad4fa80b176c3516cd3b44e7880a559ab22899b216be74cec48exe  
2024-06-23 06:14:427ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:09:467ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:07:227ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-06-23 06:06:037ccfae8644c3bc7439b88f2dc0de06bb5082de09b0bf5e143de17487ff252224exe Rhadamanthys
2024-04-18 03:09:1198aeda39318ee2c5f23d2b0005fffd8b9f920bb2429460ca2238505440d83f1cexe  
2024-04-18 00:15:5800a7789c10f95dbf6d02d992d2b0f70a51662d3ff317f963afd29aa0e150b3ebexe  
2024-04-10 06:03:29902690e37fc4e690b2edbdfedadb17e6398721e76e7d484baf128da30cf48f95exe  
2024-03-27 14:25:59432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:22:11432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:15:15432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 13:58:41432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-20 03:52:196cc42be0409b9da3ef3e67bf3041e7eb4b94fcc19b7f87feb64674dbf4b2b231exe  
2024-03-20 03:45:22c426ff4195643247f5a60c1297114917ac586ba4cc2c9c868ab8cfd074f7b048exe  
2024-03-20 00:56:44f0bdf65427e473f65448a3476d51d4657c2b312a082eae4acff884b56668456eexe  
2024-03-18 19:36:0533182115e8ccf4b279e32846761b90f05efaae00549c7f46cb3ce65702c9b6e1exe  
2024-03-18 16:20:114dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-18 00:15:29be73738191878fdc49c8994b60069df39e835b6bae6a4a8ded041c87b8514e1dexe  
2024-03-17 22:52:10123ec03936aa47978c6a6381d74c0a6eb4678b6d9713762f5f4ff8d6cf222938exe  
2024-03-17 18:44:19b457ad1cf4b7ce7836f255961195d29b4e83c52713d9eb346a95b9a273db16e3exe  
2024-03-17 16:20:544dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-17 16:20:20e0c0c5e351f4111d56f841ab747a7f95f48fa600659438003aa2d44e090d0776exe  
2024-03-17 11:29:1866a256432e44f1e022fd20a8db8e942c727d0e7d3f2b6ae6664c87c8b245f147exe  
2024-03-17 10:27:11be73738191878fdc49c8994b60069df39e835b6bae6a4a8ded041c87b8514e1dexe  
2024-03-17 09:46:4693ea9819778c0d531e5be7e240ce910f6fea3ae41632106455e574cfa3826abbexe  
2024-03-17 07:26:502ef206ec877430137cf9fe7eb6ee0b4118cd551168e4cb583cbf06e54aeb6a16exe  
2024-03-16 17:19:485d51c99bb1718c66c6a53c9880621c3668a3d0813ce03779081c8de294589f06exe  
2024-03-16 10:18:52b11617e96e0975b7bb179d4bca263daebccd3c7f71bbbb49619541dc0343cc07exe  
2024-03-16 06:28:2616b1d4e70823ec06c26d524edcc4f4b7793ec85a728579af214338727177b943exe  
2024-03-16 02:17:26ed6019e8183a17ffbd5aac89643b9f2b4121e80b23059413c0ece36d8ce3df10exe  
2024-03-16 02:05:324208991b3611e813feef094d1d61c9d17997a444c0baa970f5fcb018aedcc1c3exe  
2024-03-15 22:15:538447db2d1a475dcc3d589c52fa8c6d57d74338dbe078f6e550cd78c89775a067exe  
2024-03-15 21:09:012587e16bad0cf242c00ba7b7756711c6d25ea8b038f22939f6a960da4a2bef93exe  
2024-03-15 16:11:47e440f0939e03ba55a870421c49894d089e73ad1c8a8701549830fb71393e8a74exe  
2024-03-15 14:15:08ad5189bd65b59bc55dc2a616e6610593c0649eeb9bd79747832282634fe6b568exe  
2024-03-15 03:08:462639d965fca58172ca33858988ae9ea155730cd0a85c1149e8a644c8bcfcd53bexe  
2024-03-15 01:16:59b434965f76be6501e38b620165ba9e81bed77de87d54f1aceaa8a4a7cc8098f9exe  
2024-03-15 00:24:577359c782e82923b71de457a2fd13cdb62fcfc51475bb61427baf637c4a46c133exe  
2024-03-14 23:00:246d032b473f17a2efac78f94bff013876bc1553752b60b1dc49511648308b1e8dexe  
2024-03-14 16:04:076da776f0d2ab1cf4953d244f9bb476f0895add793bacec7bdf73cc4506ed5371exe  
2024-03-14 13:31:579b0c759f8a1248fb2d50b17455b60b9721cbd40e772cea67f25d8a7d5001eb53exe  
2024-03-14 13:16:148cf16acb6e83f2af88ee6ef7ce245153f0b35ae52a30632ebf73e89db4593c3eexe  
2024-02-08 08:58:08217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 08:58:08217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 08:58:06217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-01-30 13:26:34217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2023-12-04 06:19:47189051c29319fac6a96fefc8158f9d27d61a55b668f3c8e3610a48617649518fexezgRAT
2023-11-12 14:13:18ad7af6aca0ba3d2fe9adb3f391800420800c0f6aa00db064fc1292232a6d881eexezgRAT
2023-10-26 12:35:598868ea6af3214fc758c93c1cb909231a76e22e718a4917aae5f2a60cf12af094exeAZORult
2023-10-15 14:13:2622224f65c07515b2f61e29f7f1a14005d0de54378aa925d9e017bb2ac26b5395exezgRAT
2023-10-12 16:58:46d0f6d764a2b11cd0df9128c4b72abb2220733691af6e1ec3ea635282e36838e8exe  
2023-10-08 17:30:28007775f6d3214258f013f175f2d291520d647e6439e6d9ee240e02a182f4d60cexe  
2023-10-05 10:25:5377bfa9410910904d05a73ad3d6c28c1aa02b9d2ec82419f73600615b8b27f9a2exe Rhadamanthys