URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | rogatech.cf |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Not blocked |
| DNS4EU : | Not blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2020-12-15 07:18:05 UTC |
| Total malware sites : | 9 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 9 (100%) |
| A record(s) observed : | 8 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2021-03-04 05:38:27 | 162.0.215.194 | server305-3.web-hosting.com | Not listed | AS22612 NAMECHEAP-NET | US | no |
| 2021-03-03 17:02:56 | 195.58.38.137 | Not listed | AS216127 AS-NUXTCLOUD | DE | no | |
| 2021-03-03 10:34:55 | 203.159.80.201 | 203-159-80-201.static.neep.com.br | Not listed | AS268624 Gamers_Club_Ltda | BR | no |
| 2021-02-26 00:39:32 | 194.87.42.11 | Not listed | AS44559 ITHOSTLINE | CZ | no | |
| 2021-02-01 17:08:35 | 185.244.218.183 | free.example.com | Not listed | AS211381 PODAON | NL | no |
| 2021-01-20 12:09:41 | 195.128.123.215 | SBL669466 | AS47196 Garant-Park-Internet | RU | no | |
| 2020-12-15 07:18:08 | 46.173.221.33 | dtl.web | SBL668586 | AS56364 GPI-AS | RU | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2021-02-26 06:36:06 | http://rogatech.cf/joex.exe | Offline | AgentTesla | |
| 2020-12-16 07:16:05 | http://rogatech.cf/chungx/chungx.scr | Offline | rat RemcosRAT | |
| 2020-12-16 07:15:10 | http://rogatech.cf/abdulx/abdulx.scr | Offline | AgentTesla | |
| 2020-12-16 07:15:08 | http://rogatech.cf/yarobelox/yarobelox.scr | Offline | AgentTesla | |
| 2020-12-15 16:54:10 | http://rogatech.cf/majicx/brownx.scr | Offline | AgentTesla | |
| 2020-12-15 16:54:03 | http://rogatech.cf/majicx/henryx.scr | Offline | AgentTesla | |
| 2020-12-15 16:52:05 | http://rogatech.cf/prosperx/prosperx.scr | Offline | rat RemcosRAT | |
| 2020-12-15 16:32:07 | http://rogatech.cf/damianox/damianox.scr | Offline | AgentTesla | |
| 2020-12-15 07:18:08 | http://rogatech.cf/endyx/endyx.scr | Offline | AZORult |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2021-02-26 06:36:06 | 17a68f9da8d4a8ad6bedb9e2245d88ec5d368ed97c4de660057a1b4ef17b848a | exe | AgentTesla | |
| 2020-12-16 07:16:05 | 6e64f1c66b67d4912394403d99b88da47f28f0a682e17c94af69b8f59221d6be | exe | RemcosRAT | |
| 2020-12-16 07:15:08 | 1438338262db388d53a3618eacfe7ace5f6c1884bd4465b3a1bf548c5cdb42e5 | exe | AgentTesla | |
| 2020-12-16 07:15:08 | 6df5a48329bec9ca6f6fbf4b5acc8b662d559c66e48304990756abc4fcbb505b | exe | AgentTesla | |
| 2020-12-15 17:21:27 | 2ea3a155da327f5344d3a94f3726b0f2bfc2e0f620a921cf0359fa3793e54bf3 | exe | AgentTesla | |
| 2020-12-15 16:54:10 | f04d5b287971f60d5f04b262f3714a790b7d7c9b591ab88faa1d1f5244792d09 | exe | AgentTesla | |
| 2020-12-15 16:52:05 | 533d0bf19bef5664943f8f32d7d42777e579e6ad1f008633aebf1f85b7434cf9 | exe | RemcosRAT | |
| 2020-12-15 16:32:07 | dd7f0e91b03b789878c81bc9677686df20e858989c69ee2002e90cc86e033c6b | exe | AgentTesla | |
| 2020-12-15 07:18:08 | 54fc260d5b0b1258f3b6fdd43f30e1976a763f45c7f6b3c62406a1355c101bbc | exe | AZORult |
US
DE
BR
CZ
NL
RU