URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: uzoclouds.eu
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-03-09 08:14:03 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-03-09 08:14:06 104.237.252.50Not listedAS16628 DEDICATED-FIBER-COMMUNICATIONS- USno
2020-03-20 13:00:21 88.218.16.218Not listedAS213953 MizbanDadehPardis- IRno
2020-03-18 00:26:27 5.182.208.73hosted-by.spectraip.netNot listedAS62068 SpectraIP- NLno
2020-03-09 08:14:06 88.218.16.57Not listedAS213953 MizbanDadehPardis- IRno
2020-03-09 08:14:06 185.252.30.237Not listedAS201295 VOLCAN- IRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-03-19 16:17:35http://uzoclouds.eu/nwamaz/nwamaz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-19 16:12:34http://uzoclouds.eu/anyisouthz/anyisouthz.exeOfflineAZORult ext exe zbetcheckin
2020-03-19 13:38:39http://uzoclouds.eu/chung/chung.exeOfflineexe RemcosRAT ext zbetcheckin
2020-03-19 13:38:07http://uzoclouds.eu/larryz/larryz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-18 06:25:11http://uzoclouds.eu/sunshinez/sunshinez.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-18 06:19:27http://uzoclouds.eu/arinze/arinze.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-18 06:19:22http://uzoclouds.eu/jeffz/Crypted-BIG.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-18 06:19:15http://uzoclouds.eu/jeffz/jeffz.exeOfflineexe zbetcheckin
2020-03-18 06:19:10http://uzoclouds.eu/ahihi/ahihi.exeOfflineexe Loki ext zbetcheckin
2020-03-18 06:19:05http://uzoclouds.eu/xtradanz/xtradanz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-18 05:19:09http://uzoclouds.eu/userclientz/userclientz.exeOfflineexe zbetcheckin
2020-03-11 08:16:34http://uzoclouds.eu/billiz/billiz.exeOfflineLoki ext vxvault
2020-03-11 08:15:36http://uzoclouds.eu/cafilez/cafilez.exeOfflineAgentTesla ext vxvault
2020-03-11 00:03:06http://uzoclouds.eu/dialo/dialo.exeOfflineAgentTesla ext exe HawkEye ext zbetcheckin
2020-03-10 23:51:05http://uzoclouds.eu/princedanz/princedanz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 23:18:24http://uzoclouds.eu/tonez/tonez.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 21:00:45http://uzoclouds.eu/kelly/mez.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 20:54:22http://uzoclouds.eu/chizzy/chizzy.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 20:54:06http://uzoclouds.eu/kelly/mezz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 20:48:09http://uzoclouds.eu/dutchz/dutchz.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 20:43:07http://uzoclouds.eu/kelly/Kellly.exeOfflineAgentTesla ext exe zbetcheckin
2020-03-10 14:33:05http://uzoclouds.eu/bbb/bbb.exeOfflineLoki ext lokibot ext HeavyMetalAdmin
2020-03-09 08:14:06http://uzoclouds.eu/endyz/endyz.exeOfflineAZORult ext vxvault

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-03-23 11:24:00b0acab0b38a67a7841b6f2aa1e9c3c8a5d65dfb245faf3ce9f12bd57f146d29dexe AgentTesla
2020-03-23 10:18:3814856bcd5ab1043dcecc75d72ec3423a316775cd0d25b96ad4861d620bba958dexe AgentTesla
2020-03-20 11:42:59230f6fdc192980c8816f25dc6c86b15748e48f23ae14650791ae3e87d3eedeadexe AgentTesla
2020-03-20 11:42:398d14c0df93fbcf646ce37351184e87ea185e6afa14ae9799828f6c3d61783492exe  
2020-03-20 09:39:05c2db4f53f12bb523d38f7f18230dbbfec5dbcd40bac5c1c06677ffe815af22eeexe AgentTesla
2020-03-20 09:38:44b39da25afb17c2910b3f23c3ace96078e2aec5632dcb8fba65647f168fa99b2eexe AZORult
2020-03-20 00:43:50480fc5e1f26eafb5c745b813732f4758f8bf3acf46cd5c08e09f90daeb611a67exe AgentTesla
2020-03-19 19:08:544a4db3e67a45e9aeb559f81e593fae83ddf72595bc8d7f7bec22aaa5e6ba8353exe AgentTesla
2020-03-19 17:44:2868a5ee6cc4d398899c8a868d5d5e8ff82028e2c05c70698735b5257de5b28c38exe AZORult
2020-03-19 15:21:207ba7ee87d523e5e9ed9ba717fbcc69602004b3b9c35d10389f3c7ca833b8de24exe Loki
2020-03-19 15:20:55023946cb10325407c30c9ec45ecd241d5e0e3f9ebaeffe2ab12f8cd5f0646013exeRemcosRAT
2020-03-19 13:38:064bd40ce6d13259d975ca1d27b91882be0ef86d1ae47b3b5c33d32d46fa54a3bdexe AgentTesla
2020-03-19 13:12:039a976ed46419dfb9e1d81ac4756fb9288fc98f241d50d0185db776d5f21cbe23exe AgentTesla
2020-03-19 11:41:3143dcdf7524532ab5955dd2f737ae74d93c031de9a3e5f039a7c980511d8551b1exe Loki
2020-03-19 10:41:15bc384110b2be14a4fdc49fb70321129beb1d2b589322cbed8725d23a6a732b9fexe  
2020-03-19 10:35:49b9007b60625db6644441cef00078c81e3b0334fe8dad8ca16973cb041c0dedacexe Loki
2020-03-18 10:12:39defa068873e7d834fda941ffbb1da55e770513a727c6c8f0b98115cf6cb0825fexe AZORult
2020-03-18 10:12:288787d71a3a429d5d3050e351e241721f56576470457a31da410785bc696236b8exeLoki
2020-03-18 10:12:28f6bf2ee906aa894a57fada0cb344dce344a78d6143d519fd891f513d23b0e1f9exe Loki
2020-03-18 10:12:2702d65f0d435269da9fd1cc36608da796afb1700d5a4aa301567ed06d0b379b0dexe AgentTesla
2020-03-18 10:11:47efab5691427df802977f9170761420d10f6ebec2dd878ebd6e00d3e6bcc3b141exeAgentTesla
2020-03-18 06:25:11c9000ee2d7188ba9919e82bfe99560573b71f32b1165c740c9530358f630cb2cexeAgentTesla
2020-03-18 06:19:27446e55249a19fcefa746b41fc9ca16bf38c7e876b8334e46b92f53133269d78fexe AgentTesla
2020-03-18 06:19:226fdc264aa1b49b4a5ae9fc8e7a7c41f0d1a4dd72c729d623e262d19d0d418670exe AgentTesla
2020-03-18 06:19:154739ade84f73033aadd0856cb91cc6bec52929ad8e6ca8e812cdbc8b45ef4364exe  
2020-03-18 06:19:104adca9a83d4095e04200e2ae8c88948d32bdb4bd9765112c68c4beafc1fd9a6bexe Loki
2020-03-18 06:19:04fb173f33704a39e7e7008e795c78f38de56e145a8bac6832bfbd69a0087ffec1exe AgentTesla
2020-03-18 06:08:38373b205b1a6eb6decabb51d1ca65d4ac3d510b25853dbc66ab02a46804bad4d3exe Loki
2020-03-18 05:19:07ad14a6153ee0dc81fae262a497e39e1670e6cedb65524535df72f8d0bc68cc75exe  
2020-03-18 01:50:32bd283f14588c5ffb1d3058834e42a32b0cfba282712ba3337acd3d5f1bb40b5fexe AZORult
2020-03-17 16:12:1742b74608b3445a56f60fd25248052c7dde4726996af2102ae31df0efb941c5f6exe AgentTesla
2020-03-17 03:16:04c9f2ba8d2fcdf0b87e01eae922de1c147dcb52337b437cc2476cdc51a27a3a2aexe Loki
2020-03-17 03:15:352c9bb6307c3d9bb3cb7649394b29a90ca43f19e92eede1c626c7936abe554d8fexe Loki
2020-03-16 18:01:154951ad46454f70ed18a3c3a1d8ed47cb1646f7ed1b6ef7c9b895788c948f5d0cexe AgentTesla
2020-03-16 14:41:37136c2f2bd1b90d0890cee4825c70de90e062da85699ef68bd394d9149eb9fbebexe  
2020-03-16 12:11:11f6af8ff1f9026bfcde78c25bf2de35e6ab7d03b9692fb53fe9c42f3be50e0ec8exe AgentTesla
2020-03-16 09:29:12c8a466fb75baf58bb0864f6f198b70c3b4c934f6a0814d59798df4626e724045exe  
2020-03-16 02:00:34eb501fdfab9e81174cb5ddb23a75445939ad20110419983c8fe526ffb065f0ddexeAgentTesla
2020-03-16 00:52:344308aaa504679e2114cc895e43de04ebe4fa6ef59350d7124f55e349ed8875ffexe AZORult
2020-03-16 00:52:33770c2d496dfc62ac8fd27d2c1ce7723db3a2559c3e1d9e6b9a3f6bc50a015093exe HawkEye
2020-03-15 23:28:071baed124b30319ae16fd25c6e9ac8ff2e539a574758363e2eb37a5978251e56cexe  
2020-03-13 03:05:12c340b607b0a523bb7c5677d6ee1099a1c635414388e87bace4bb5fcb1b36131fexe AgentTesla
2020-03-12 16:03:33908c021fbcf096abd16d9446cfb34a020b7ad9c27853f544baea6537870fdf6fexe AgentTesla
2020-03-12 16:03:308857a2b10deffa081d13b7b7b62eda49042f088477faea031e573706e3e37f6cexe HawkEye
2020-03-12 16:03:29cc731e700b3d4286bcb9272d4a3d6a3b42456829adc18d62c422da6f774f0e25exe AgentTesla
2020-03-12 13:51:499f14b628a9842c466749c500583ed0ad57714f1b2ad10367f2823aeee5d81386exe AgentTesla
2020-03-12 12:42:430595b2f01143fa1883c1ebd8a81b49e7501cfb22a1e5a471043e71813dff9d26exe AgentTesla
2020-03-12 07:25:3446b52b03d8d8cc93ca618809c2fe469bfa05c1705f566d9cb5154b0026f26cd7exe AZORult
2020-03-11 15:08:39b312c1b7129093529171b19ce0763f80bde54088268f2c9ff754b01a44868516exe AgentTesla
2020-03-11 15:08:3877eae0bb623714f3bbb31f54f03f8e5022c4450e8ef50c28ae682d9565d2f682exe Loki
2020-03-11 12:10:38d4945e64aae74324c1acedc84d0a0782f01f6994991f1f1ed091cbf2c227e07aexe AgentTesla
2020-03-11 11:00:3221528f7854b9c75d08cfadec409c8684f678c3e65023125962f834e11272b1c1exe Loki
2020-03-11 09:26:489f5c5d2977b32208600063755a6c1b59e64b0aa3aa9eed0e7eb1bd6e2c0a75d0exe AgentTesla
2020-03-11 08:16:34cea85285f58d2e4fa0c876ee6f879bb0a189513a15bd8aea3619b251e75fa42fexe Loki
2020-03-11 08:15:36eba6c91f96ff69388db70f5b972e673b647935587c1916b38534fccbc864694aexe AgentTesla
2020-03-11 00:03:064aa0a3a98c424fc37a3bc40b819ba751e34f18ba94b28466c7b2da0b25cef370exe HawkEye
2020-03-10 23:51:05cda372a4feda48791764ef3b85d51eca34ced7598ea47ad55e1b79311efc4d04exe AgentTesla
2020-03-10 23:18:23e1b83f3d7d9a1de7411c19e6d71c9c2a221a12ff8b09013d209c2c26b996634cexe AgentTesla
2020-03-10 23:13:41ba099ccc52f79159f713a7845174419e868428f48e31436684fa710bd5ff078aexe AZORult
2020-03-10 22:36:1510b2eab7b1f6f1268c2e63c94c1ddf614a6988a7cf03d28ff261d6b9a45cca25exe AgentTesla
2020-03-10 21:00:45ffaecb6af365c4dfdad0d2bb772de8b230dd443f7c51cfd6818b866c6c18daa3exe AgentTesla
2020-03-10 20:54:228bf78e5a880e5b6ab050f710e29a8dc238d5bf63269ff0ccfd76f34fd119a8f6exe AgentTesla
2020-03-10 20:54:06632e4242e678335e2718050a2deeec19146e5cebcb61e3814151736b2b8f84cbexe AgentTesla
2020-03-10 20:48:09be59d72fce94dd1b44774bf7ee435cf1c7010841aec1b4f79326f6019354215dexe AgentTesla
2020-03-10 20:43:0615ba183b782c806b2742664a3fe1b6a518924f0fe00b85998bedd8b482bffe79exe AgentTesla
2020-03-10 14:33:0557b8f7f9eceb5c0311c1ff7a0e13535a26d098a0fef8f9f754f8e5cbacf22953exe Loki
2020-03-10 12:29:4278262fb99fb92cfaedbcd656289e51314f60662d3538ed4f540ada9ca5cb5239exe  
2020-03-09 08:14:051eab0f8dc2b46fef7af8458b26ef5e83d0a45ca09f1a82a79f01c1f27bfde788exe AZORult