URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: vjsi.top
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:33:57 UTC
Total malware sites :14
Online malware sites :0 (0%)
Offline Malware sites :14 (100%)
A record(s) observed :38

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-12-03 23:20:50 8.210.119.33Not listedAS45102 ALIBABA-CN-NET- HKno
2021-02-19 08:16:41 34.105.179.188188.179.105.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- GBno
2021-02-16 13:56:02 34.76.125.214214.125.76.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- BEno
2021-01-28 20:40:09 217.25.88.228Not listedAS9123 TimeWeb-AS- RUno
2021-01-27 08:56:40 46.173.214.101free.example.comSBL668586AS47196 Garant-Park-Internet- RUno
2021-01-18 10:11:54 34.89.33.3535.33.89.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- GBno
2021-01-15 03:52:10 195.133.196.89ptr.ruvds.comNot listedAS48347 MTW-AS- RUno
2021-01-15 03:22:23 188.227.84.157Not listedAS208951 AS-ITGLOBALCOM- NLno
2020-12-18 11:04:04 91.203.192.212SBL669463AS47196 Garant-Park-Internet- RUno
2021-01-13 20:03:19 5.188.3.147denismalakovbinance.example.comNot listedAS210756 EdgeCenterLLC- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-02-21 08:52:04http://vjsi.top/files/1/load.exeOfflineexe Smoke Loader ext zbetcheckin
2021-02-21 08:44:04http://vjsi.top/files/1/start.exeOfflineexe stop zbetcheckin
2021-02-21 07:31:05http://vjsi.top/files/iner/5.exeOfflineArkeiStealer ext exe abuse_ch
2021-02-21 07:31:04http://vjsi.top/files/iner/updatewin2.exeOfflineexe abuse_ch
2021-02-21 07:31:03http://vjsi.top/files/iner/4.exeOfflineexe abuse_ch
2021-02-21 07:31:03http://vjsi.top/files/iner/3.exeOfflineexe abuse_ch
2021-02-21 07:31:03http://vjsi.top/files/iner/updatewin.exeOfflineexe abuse_ch
2021-02-21 07:31:03http://vjsi.top/files/iner/updatewin1.exeOfflineexe abuse_ch
2020-12-18 11:04:09http://vjsi.top/files/penelop/updatewin1.exeOfflineexe abuse_ch
2020-12-18 11:04:09http://vjsi.top/files/penelop/5.exeOfflineArkeiStealer ext exe abuse_ch
2020-12-18 11:04:06http://vjsi.top/files/penelop/3.exeOfflineexe abuse_ch
2020-12-18 11:04:06http://vjsi.top/files/penelop/4.exeOfflineexe abuse_ch
2020-12-18 11:04:05http://vjsi.top/files/penelop/updatewin.exeOfflineexe abuse_ch
2020-12-18 11:04:04http://vjsi.top/files/penelop/updatewin2.exeOfflineexe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-02-21 08:52:0345ca998d1635449e0022fae1b23affef9cbbc10ae555a7001b73b6f863585766exeSmoke Loader
2021-02-21 08:44:040aae86fc0351f1ea0999b86cfe8c6ab1b22d16697ba4753e465c5a31fe7746bbexeRansomware.Stop
2021-02-21 07:33:33ac2fb6674e44ec4e06a12aa1fed4b46fbc064c7940c603aa83344d04f738a3cbexeArkeiStealer
2021-02-21 07:31:04ac2fb6674e44ec4e06a12aa1fed4b46fbc064c7940c603aa83344d04f738a3cbexeArkeiStealer
2021-02-05 11:50:11c1fd5b744ec1119e4d2340e68d38c9f58752c6cac4432f11162cc951c754f1a4exeArkeiStealer
2021-02-03 08:17:35a3b8fa8ebf771261dee5745e62187ea8da346131f79222056aa61d426a6b6a8fexeArkeiStealer
2021-02-02 18:00:09bd3f29c731f654a578d5b05a32e704ed571a78374b719acfe8f22d58b2a1c714exeArkeiStealer
2021-02-02 13:52:13ca689501b79de8430f0900c86e9a6b5c93b2d7cc68bc0b8921bb6ebb005f6893exeArkeiStealer
2021-02-02 09:01:022ee58edcd6709b237d2b4b468fb051641b8b6f86b4d13101b3d65f04862a2fd4exeArkeiStealer
2021-01-22 09:51:14b331a969ecdbc59fc5aefdc281be72a342173994954954168c6d3009656ad33eexe ArkeiStealer
2021-01-21 10:17:166ff7c65d1048315ef8878ed62a25c0bcaebdc836e43425a8f7bf1cf60faa38b4exeArkeiStealer
2021-01-20 15:24:28e291b24d2e480fcf1df67d635e9f86f11f8193df3cc39381e37dab1a2a2c5988exeArkeiStealer
2021-01-15 19:25:28ba5fe55020976c1a1f5138dc0d533b786317f32cff2b1b05a473ce2f3f9eeb3aexeArkeiStealer
2021-01-15 12:06:53f0cd7710ff81d06494b7130e510dbdd80503aa290be1cc845f465c068301747cexeArkeiStealer
2021-01-12 10:53:379c4f5c8cfeb74f170b084d46b94dba4a9bfaae0758ab68037ab5113007d2e7e5exeArkeiStealer
2021-01-09 10:12:48f88733cd3c378ba6dadc00b1f7b8ffd592d4889ffb3157b7d70a8347d30fe7fdexeArkeiStealer
2021-01-04 18:22:564c32e1f716d9c07d672c2fdaa5876040842e9e47752a233b3074a1d4d4fa0454exeArkeiStealer
2020-12-26 12:13:2899efe2a8deeea71edacb53813ca977c730b3d87db80122c7ea2cfa0f01b2ce7bexeArkeiStealer
2020-12-21 10:14:352b6114a62abacb1a8db1fdb29f9855bca78d8e77dfdb3db07d4a0f59cfb4d9a2exeArkeiStealer
2020-12-21 09:59:52bdf2a1937a05ca661942145ec7317ce25e54cb0469fe4c3ae60a7994bcb6bd3aexeArkeiStealer
2020-12-18 11:55:435caffdc76a562e098c471feaede5693f9ead92d5c6c10fb3951dd1fa6c12d21dexe 
2020-12-18 11:04:09bc1f1478ce900528834df2c37730991b230f4744e0fc45bb7349a6f6a5f4513cexeArkeiStealer
2020-12-18 11:04:0914c7bec7369d4175c6d92554b033862b3847ff98a04dfebdf9f5bb30180ed13eexe 
2020-12-18 11:04:0538e6f4d8f53e8a38950594d9588cb00218bf46113c51b5241771181a521b9c75exe