URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: remzclot.ga
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-04 07:32:05 UTC
Total malware sites :1
A record(s) observed :36

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-10 02:12:31 161.117.224.167Not listedAS45102 ALIBABA-CN-NET- SGno
2020-10-08 11:09:43 119.28.232.76Not listedAS132203 TENCENT-NET-AP-CN- KRno
2020-10-07 10:48:12 119.28.154.24Not listedAS132203 TENCENT-NET-AP-CN- KRno
2020-10-06 10:58:39 150.109.244.206Not listedAS132203 TENCENT-NET-AP-CN- KRno
2020-09-28 20:17:30 18.221.107.58ec2-18-221-107-58.us-east-2.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2020-09-24 23:36:01 176.118.165.206Not listedAS43830 DIGITALENERGY-AS- RUno
2020-09-16 09:37:42 85.143.172.11085-143-172-110.simplecloud.ruNot listedAS201848 TRADERSOFT- RUno
2020-09-15 09:29:39 176.118.165.145Not listedAS43830 DIGITALENERGY-AS- RUno
2020-09-14 11:08:21 176.118.165.208Not listedAS43830 DIGITALENERGY-AS- RUno
2020-09-14 08:11:13 176.118.165.162Not listedAS43830 DIGITALENERGY-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-04 07:32:07http://remzclot.ga/~zadmin/temp/0ap.exeOfflineexe Formbook ext Loki ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-08 22:47:32cafbf0ca3d9697de117f1f5f4bbaa1a2717fc7b8485a492b9eac2def9632f52cexeLoki
2020-10-07 20:58:39ebd88634ecfbdc7e88bca32a0b22fa35e24c9feb309799128f3d12d2cceac224exeFormbook
2020-10-06 21:26:170aa79342c00ecadc1a8771b574911abbc7bd89d833598ea1bf9ad7ffa63c2ee9exeLoki
2020-10-05 20:37:24df8b425e4f5ce5faef299b2f83aabdc9a1d9f2d28be9aaf4e41215488820c0d9exeLoki
2020-10-04 20:16:521c44b1e0a3f3186e814a13d4cd895bb1de20cbb343f6ec3b56908868998791f6exeLoki
2020-10-02 02:25:0637b3fa9a0fad103ba7311948f3eff98779253409556488638ffe057e435d812dexeLoki
2020-10-01 00:30:38b1a522cf1688c79e5148c41caa7ebf9c71f9cb0a87e3d2c3acd4a0e5f9c22705exeLoki
2020-09-30 01:42:472652463d20fd9db97f8149be519413cae87b846986d1eb4784fd886af8b9f977exe Loki
2020-09-29 03:42:287b59aa7d23a9ea86c5a12bad49cc727909ff58a2d3e8d2bc242ca3eb1b9350ebexe Loki
2020-09-24 22:18:544eb8bed8591422f6065c3198d6c3464b14e438f6566003997d98b81d776f02b9exeLoki
2020-09-23 22:47:06103b80a529ef18579c7078a3889d0d8262848d29cf7ddcf16faf83ec350f7c63exe Loki
2020-09-22 21:49:241d70d8d0e34fb9df8625c040957a124f0fec9cc14902824293b8a64ebf23911bexe Loki
2020-09-22 02:03:076012333b74487f614be5cf6b2af70106279461283fc9c3232bd7d5a5bb8e87dfexe Loki
2020-09-22 00:55:50ae08212f92cff9784dcf5aa675e51122bf9a0542be9bda43d731d64b032a2b37exe Adware.Generic
2020-09-21 02:55:25c62416f0cd57c70638383e4a97bb2aab0e457209e8b782978bc6eb110b7a92c7exe Loki
2020-09-20 22:48:5018d42895a0a37161199e0f3da093cb3057f71a608866a3d3284c83a7b90dbf81exeFormBook
2020-09-20 22:04:0581de431987304676134138705fc1c21188ad7f27edf6b77a6551aa693194485eexe  
2020-09-19 11:29:1559b609191ee59b6309342019b3da4f45bf75b9eb2aaf26f6643fb82eb3bb0fdaexe 
2020-09-18 00:22:34fca32cf0c62210488d4c092cb9e44b7089b661f7419f3c8a56c4f21a02991b4eexeLoki
2020-09-16 23:27:2114b23833a0069ece9c114d554b406c7f1da45fdcd910ecee37fbf0136aa09af2exeLoki
2020-09-15 22:47:58ce25afb958b5ae70651c279cc541d045d0531b1a3eb97ba7bf0a065e40828082exe Loki
2020-09-15 00:18:58ec445f889b5b9541628dfd3c7492ac329c978c7b7088fdeb81002646afabd64dexe FormBook
2020-09-13 23:06:02414578aa9e1ab74c43ae636f64758a5a2dd59ab81619aa054de1fb6c9140f2e6exeFormBook
2020-09-10 23:43:0601da092bc20b08ea1bea6de68bc460606e7c34254de25501d0c4f385eb02e6bbexeLoki
2020-09-09 21:37:067c18464e0b9693a7f701815d1a767074fe452a84eb0636bcbcf7f374fe08847cexeLoki
2020-09-09 21:18:307230c49ff261a185296df556b033d08fbbf824f6e1338dec74384d6129fe2118exeLoki
2020-09-07 19:55:2172ec3dcd3d7a197c45c66605330968f86044d6a2ec37bf843e33b7f4668781f9exeAdware.Generic
2020-09-06 19:45:0731f552d7091e6ce63f42a9d467014e660e79ed98b6838fbb5b35edccd24c2782exe Adware.Generic
2020-09-04 07:32:0646c00c94bffc91316d10ed011e9d8168bc4e9c4416387427367005cd632452feexeLoki