URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: scientific.pk
Abuse complaint sent?: Yes (2022-08-10 09:40:02 UTC to staff{at}pknic[dot]net[dot]pk)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-08-10 09:37:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-11-11 02:30:10 91.215.85.223SBL615768AS200593 PROSPERO-AS- RUno
2023-05-27 15:55:48 94.142.138.213SBL655622AS211522 HYPERCORELTD- FIno
2023-05-03 16:17:44 91.215.85.135SBL615768AS200593 PROSPERO-AS- RUno
2023-04-14 17:07:42 94.142.138.104SBL655622AS211522 HYPERCORELTD- FIno
2023-03-16 16:45:08 91.215.85.173SBL615768AS200593 PROSPERO-AS- RUno
2022-12-19 15:45:48 91.215.85.158SBL615768AS200593 PROSPERO-AS- RUno
2022-08-10 09:37:05 45.143.201.4free.ntup.netSBL625748AS200195 VERASEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-02-08 05:02:06http://scientific.pk/asdfg.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 05:01:11http://scientific.pk/asdf.EXEOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2024-02-08 05:01:10http://scientific.pk/ghjk.exeOffline32 CoinMiner exe Rhadamanthys zbetcheckin
2022-08-10 09:37:05http://scientific.pk/ghjkl.exeOfflineAZORult ext CoinMiner RecordBreaker ext Rhadamanthys Vidar ext zgRAT JAMESWT_MHT

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-04-02 07:30:020d4f65c9ce5b89b4285f30eaca0ded9ef7827c463835b2060d1df805cdd76379exe  
2024-03-27 14:08:37432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:07:48432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 14:06:14432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-27 13:58:46432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67exeCoinMiner
2024-03-20 05:31:50816689bad7004d0d4d631bc9b3961d23bdd22bada81e50a1c0a48e014fff6631exe  
2024-03-20 04:33:0895cebaeaefaf1e9bc682b529e294bc169edced79c24184fa5b3750d5086876a5exe  
2024-03-20 04:08:57396b8c58033dc8132e75759b1a06b9a9e6cfa4dfe7272fefc37571f4201a295fexe  
2024-03-20 02:20:39650f0248f6b9b3287e7bca580b50e435652ce809a59cd889596188e31711cbdeexe  
2024-03-20 00:17:3403aa9adee36ad0060839656a80974183c46aa577959f73df4ddc8f294f0b8392exe  
2024-03-18 12:31:23c7e3cb1d73f47d4215aea380df6a24021acd421915bcdbaebde8f15b7e381477exe  
2024-03-18 10:32:49e98551d84f6a4f849b93654026b4c1a69778ded802897d36e345faefe4d3b4a1exe  
2024-03-18 09:12:59be73738191878fdc49c8994b60069df39e835b6bae6a4a8ded041c87b8514e1dexe  
2024-03-18 06:54:564dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-18 04:35:52b453521f6646b621bf11c56988ef9b5f1a787333b05beb8aa3a330c2a8dec603exe  
2024-03-17 19:00:165505c17ff73816c3a8f2b1ee0efeaebabf956437331ea2a712a337568cc86380exe  
2024-03-17 16:57:5576a6503bd4470b2b9a95c541e4d00a15771707ef22588e2951f3eb976b09c0f0exe  
2024-03-17 16:28:324dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-17 16:13:394dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eexe  
2024-03-17 03:10:221c5bd100c616bdfab0ea48062e61f746f601d1ef33af1c57cb0b8dc13dff04b6exe  
2024-03-16 17:30:5170da33cd33f48aef4865aa3a7ce92d404472cd22496e5e93d54c069c4f4ec151exe  
2024-03-16 11:05:3203cc378fe9ae65ce1ee9b945bae86400b0256a103dda5b6c95ee0225d872b9c4exe  
2024-03-16 09:29:098587652f2a0d6a44e53274c77a29d142ac09776b3af0ee6bbd6a8a5e313710d6exe  
2024-03-16 05:18:54f18f769bd80e07bdb2be5873d78e8e57e264cf65315ddc635facd6d4ded3338cexe  
2024-03-16 02:26:46929216a1fb9248b5d815b400d55def58a052ff973ae83b83b7f620988d06e34fexe  
2024-03-16 01:13:337c8138bd9978693a188728ffd82b18b302558aafe5f552c39f53f4e823655c35exe  
2024-03-15 23:00:128426ad2613d26f22468a879c6cbaf9071c219d140cf9635e3e05b47a11be5b59exe  
2024-03-15 21:08:362cbe06071cf2729e96459843c7b3a6e270cf4507bec604f0201483dd096a2e96exe  
2024-03-15 11:12:190ae0b8db66f15e68a555c7bae3bdc792b5e26b1559b4b94481a12ccfad2e5eb2exe  
2024-03-15 07:07:48e6d98cb77906d6d5d2e07ab46c3cfc87883288293b76dc83b50e55222fa29d42exe  
2024-03-15 06:27:47585cfb6939c0f8e2660ddddf077a79b7afee52b5d97fa85c6e3727b039876ce3exe  
2024-03-14 23:19:18777bee706ccc30eeb99dd16391d0beec5bc4c4745d5233e5e35a928e2a6483e6exe  
2024-03-14 22:13:335f12138480e43df342e3660513b8b77d31ae61916d29b71a94030ad624108b7cexe  
2024-03-14 20:08:37dd2cca34f39e122f1c5ba5f8f935d3c58a66d9feac86181b614657c963a1f76fexe  
2024-02-08 05:02:06217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 05:01:10217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-02-08 05:01:10217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2024-01-30 13:08:43217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eexe Rhadamanthys
2023-12-04 05:56:21189051c29319fac6a96fefc8158f9d27d61a55b668f3c8e3610a48617649518fexezgRAT
2023-11-12 14:33:30ad7af6aca0ba3d2fe9adb3f391800420800c0f6aa00db064fc1292232a6d881eexezgRAT
2023-10-26 12:57:268868ea6af3214fc758c93c1cb909231a76e22e718a4917aae5f2a60cf12af094exeAZORult
2023-10-15 14:07:3522224f65c07515b2f61e29f7f1a14005d0de54378aa925d9e017bb2ac26b5395exezgRAT
2023-10-04 10:29:5877bfa9410910904d05a73ad3d6c28c1aa02b9d2ec82419f73600615b8b27f9a2exe Rhadamanthys
2023-08-16 13:59:404908195a2939cdd5b343f921824eb92757f1588f0b18610e10667e70d0892b90exe 
2023-08-07 14:26:5129f5a8629986da0b4a353e5423fb39c505cba7c06e7aa4b5a4029c5a1669ae95exeRhadamanthys
2023-07-19 13:11:10bcf3266e8996bcdb7acb686034f264b07c228ce37f1212b663b636cc0317ee1aexe AZORult
2023-07-14 11:02:4583dfe9633679f8230ec3c00602388ce0c097ea9341263672da3decc0f782bb6eexe 
2023-06-25 03:44:31fc6ddb1f7644597b84d14e3efa4cd1a1d1ad0083141b3fa2a613cd3c092f6505exeRhadamanthys
2023-06-20 17:03:44680fefdbe11a969bd5c2189ec8fbdd7e60713592af516557bc5e62585766cdc7exe  
2023-06-17 06:43:032781134dad8985c1a667f0a9662439d0d8827098cb78623227d855efd4e9486fexe  
2023-06-10 22:42:19a030e37e4e9b939c3d65e459bb97f7f52c6917b3bf78a5b868e99fa8c98c2bcfexe  
2023-06-04 05:28:41fa01583a93b5affe2a576bcb547efa342bacaff6a79738ce1e35409569136ae6exe  
2023-05-28 11:30:405d2e841645576d0eefcc6bcc6c0d480c0c6874f05a56e92441319a5c41b38979exe AZORult
2023-05-12 06:27:00bf1d731a91e424fd67778f176ac652fa5ca39f2ab188ef740184e4b2808c7b3cexeAZORult
2023-05-11 12:54:2979a7c9d15971c14d78baccbf211b3ca1e9adcb0befc6d3d1c5d92902d70678e2exeAZORult
2023-05-08 14:36:4584c18f78f11b9bc3fd3e96925d2a7b76ab5ecfb927c377ad27456e191815b24aexeCoinMiner
2023-05-03 12:04:2183263fa7b8c560ae026a24d6ea9e6eafb16aa207cc5557c65c7f71f703f3a593exe  
2023-05-01 16:25:21e99f79618b991de5d1052096950590a4fe833b885871a96bb1202e3d6dd876a0exe  
2023-04-30 11:52:30ff277e11345c79a60de0ba45011460629487e82e8b0b58a8ddfdfeca2d7623f5exe  
2023-04-22 13:23:200127ebf8628f963a453520b0149fc11fc5d0a56536ce2a41c9dfdd3c597a0746exe zgRAT
2023-04-18 10:45:32d9b498faf01b9eb598761915a6fc2fb4f1ab2317d354348baca6794730fd15d3exeVidar
2023-04-14 17:07:420cff8404e73906f3a4932e145bf57fae7a0e66a7d7952416161a5d9bb9752fd8exe Vidar
2023-04-07 16:17:454130ce135fbfab00618f261a0397e88479d2f61e1ed0d09ebcde525439774f3eexe AZORult
2023-03-31 01:42:37d9a2ded488ead1b53affcaa74dcf04b3b9385811eddfab2e68f545e305b63687exe  
2023-03-23 11:15:5260289bfd6a3a67726074cccced70f113419fea3b76c00855fb7dc5fa332d3f7aexeRhadamanthys
2023-03-16 18:57:01a54493e71a7f28fe61e607ba4c089ada71e13ff9e1df6cef5619a4163e2b0a1fexeAZORult
2023-02-05 09:16:494908e51e65bf67fdc3a559be7c47c3df1354a4a864b931cb176d282048f8d9c2exeAZORult
2023-01-13 05:29:438c5df030de0c79f2155a60e0d5f41889ec8d07d441279d406996dca4639f8539exeRecordBreaker
2022-12-19 15:45:48746669c6be1807fdafbc7ee3f1e958e1b584fa31688742bcc044d269af94b0d8exeRecordBreaker
2022-11-26 16:35:569063dd7d69236cca3007587ccc04334b4289ec456f6983673f3d9f749092a29cexeRecordBreaker
2022-10-06 00:31:34d4227ec9dd2159223342099e0ed7d55c0691fe677ab2fc513c149a137e50ced8exeAZORult
2022-10-01 16:36:239a81a9c84d36a49be8286458ce7c919538647711b28fedae9b5521762ff76030exe  
2022-09-16 10:02:19e553b05dd2afafadb6ad38d3463056e50cfa31ba3ac5489a7a114ec35ef10194exeRecordBreaker
2022-08-18 15:12:2565020d58d04109f2e8f46d12e43aeee9e98ec182db4bd4a2b2c336978e696c06exeAZORult
2022-08-14 05:19:48ea34b776b896df9512f0aab37e3b0d56ff012a0906910a957db335f9e7dcf2d4exe RecordBreaker
2022-08-10 09:37:05d75d7b0534ff648f16f5751be79a2c23158b6412a780180aec78c77c7e95071dexeAZORult