URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: redsaludchanchamayo.com.pe
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-11-23 13:34:09 UTC
Total malware sites :28
Online malware sites :0 (0%)
Offline Malware sites :28 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-03 14:55:33 50.31.177.133bh8702.banahosting.comNot listedAS23352 SERVERCENTRAL- USyes
2022-11-23 13:34:15 50.31.188.73hd-4910.banahosting.comNot listedAS23352 SERVERCENTRAL- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-25 06:58:09http://redsaludchanchamayo.com.pe/1/data64_4.exeOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/1/data64_6.exeOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/webArg1.txtOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/1/data64_1.exeOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/1/data64_dll.dllOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/1/data64_3.exeOffline abuse_ch
2022-11-25 06:58:08http://redsaludchanchamayo.com.pe/1/data64_5.exeOffline abuse_ch
2022-11-24 04:24:05http://redsaludchanchamayo.com.pe/1/data64_2.exeOffline32 exe RedLineStealer ext zbetcheckin
2022-11-23 13:34:18http://redsaludchanchamayo.com.pe/16/data64_dll...OfflineCryptOne abuse_ch
2022-11-23 13:34:18http://redsaludchanchamayo.com.pe/2/data64_1.exeOfflineArkeiStealer ext RedLineStealer ext abuse_ch
2022-11-23 13:34:18http://redsaludchanchamayo.com.pe/webArg2.txtOffline abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/16/data64_1.exeOfflineArkeiStealer ext RedLineStealer ext abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/17/data64_dll...OfflineCryptOne abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/2/data64_dll.dllOfflineCryptOne abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/17/data64_3.exeOffline abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/16/data64_3.exeOffline abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/2/data64_2.exeOfflineRedLineStealer ext abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/16/data64_2.exeOfflineRedLineStealer ext abuse_ch
2022-11-23 13:34:17http://redsaludchanchamayo.com.pe/16/data64_5.exeOffline abuse_ch
2022-11-23 13:34:16http://redsaludchanchamayo.com.pe/2/data64_3.exeOffline abuse_ch
2022-11-23 13:34:16http://redsaludchanchamayo.com.pe/17/data64_1.exeOfflineArkeiStealer ext RedLineStealer ext abuse_ch
2022-11-23 13:34:16http://redsaludchanchamayo.com.pe/webArg16.txtOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/2/data64_5.exeOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/2/data64_4.exeOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/17/data64_2.exeOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/16/data64_6.exeOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/16/data64_4.exeOffline abuse_ch
2022-11-23 13:34:15http://redsaludchanchamayo.com.pe/2/data64_6.exeOffline abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-11-24 08:40:193b1eac6edce17b9c76f22939bb99c4254d45c33d188c92b833cdfb7f005b02faexe RedLineStealer
2022-11-24 08:22:34fd1a09c372f39636d4d547a96121d7da03bea79dabb95717a8636b0d7aed8194exeArkeiStealer
2022-11-24 08:11:021099a19d47e999dce7ba3327b6915836ea1d3a96cfbe49662652b95d4acde45fexe RedLineStealer
2022-11-24 08:05:59fd1a09c372f39636d4d547a96121d7da03bea79dabb95717a8636b0d7aed8194exeArkeiStealer
2022-11-24 07:58:29dc73c1e9809a7a24d125ed5dc9a3944feee65d21b789f9b6374a2b5135f01809exe 
2022-11-24 07:58:11dc73c1e9809a7a24d125ed5dc9a3944feee65d21b789f9b6374a2b5135f01809exe 
2022-11-24 07:49:4540c03dbb680742a48c181cb4a5f48ddad532deee22803916eab87fd3c86f252aexe RedLineStealer
2022-11-24 07:47:36dc73c1e9809a7a24d125ed5dc9a3944feee65d21b789f9b6374a2b5135f01809exe 
2022-11-24 07:43:24fd1a09c372f39636d4d547a96121d7da03bea79dabb95717a8636b0d7aed8194exeArkeiStealer
2022-11-24 04:24:04c67b7b5aea6cc07e24c1a0fee9ede4c909533cdedca2c41e787e18bbedc155a2exeRedLineStealer
2022-11-23 17:22:308fd3f5051481a5fdd39bc3546a6aafc6b36f2ee8a4d29eb85d8a42f196bcd2dddllCryptOne
2022-11-23 17:22:258fd3f5051481a5fdd39bc3546a6aafc6b36f2ee8a4d29eb85d8a42f196bcd2dddllCryptOne
2022-11-23 17:09:238fd3f5051481a5fdd39bc3546a6aafc6b36f2ee8a4d29eb85d8a42f196bcd2dddllCryptOne
2022-11-23 13:34:13dd158cfbdcd34d40c35e6e0c2aaccdff0049114e9e196cf4d582a8101e79f4badllCryptOne
2022-11-23 13:34:12dd158cfbdcd34d40c35e6e0c2aaccdff0049114e9e196cf4d582a8101e79f4badllCryptOne
2022-11-23 13:34:1205aed5bb6d590c1b0781804889957f73a85aa49c248f0e1c453ffc2777f4d5fbexeRedLineStealer
2022-11-23 13:34:12dd158cfbdcd34d40c35e6e0c2aaccdff0049114e9e196cf4d582a8101e79f4badllCryptOne
2022-11-23 13:34:1205aed5bb6d590c1b0781804889957f73a85aa49c248f0e1c453ffc2777f4d5fbexeRedLineStealer
2022-11-23 13:34:1290ca60dc8424411c71eecfcddfdb40e1fadc48e4ed287a282309b24f0cb2c5a2exe 
2022-11-23 13:34:1290ca60dc8424411c71eecfcddfdb40e1fadc48e4ed287a282309b24f0cb2c5a2exe 
2022-11-23 13:34:11a62a32aaa084cf58502545836b26e682051f67065a17a3b0bc595223e4263d4fexeRedLineStealer
2022-11-23 13:34:1190ca60dc8424411c71eecfcddfdb40e1fadc48e4ed287a282309b24f0cb2c5a2exe 
2022-11-23 13:34:11f3f7fa2e6ad4bfa9c3ab22fbe8056d8d1d9cb8a2c0221dd094892027ce1fed4eexeRedLineStealer
2022-11-23 13:34:1005aed5bb6d590c1b0781804889957f73a85aa49c248f0e1c453ffc2777f4d5fbexeRedLineStealer