URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wiwirdo.ac.ug
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-06-19 17:28:04 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-06-19 17:28:05 45.143.201.4free.ntup.netSBL625748AS200195 VERASEL- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-06-19 17:35:05http://wiwirdo.ac.ug/pm.exeOfflineAsyncRAT ext exe XFilesStealer abuse_ch
2022-06-19 17:35:05http://wiwirdo.ac.ug/cc.exeOfflineexe abuse_ch
2022-06-19 17:35:04http://wiwirdo.ac.ug/azne.exeOfflineAZORult ext exe abuse_ch
2022-06-19 17:29:05http://wiwirdo.ac.ug/Plugin_1.plgOfflineencrypted abuse_ch
2022-06-19 17:28:05http://wiwirdo.ac.ug/rc.exeOfflineexe RemcosRAT ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-08-14 05:24:577f8ca86d343ef0a4dae7be8b2872734d1bfa0afec57e31eac9c316e59a331d59exeAZORult
2022-08-14 05:24:40758295408fb9e3e2741e097590c8c974792d80063f651f34661d47bf8a2323a6exeRemcosRAT
2022-08-14 05:18:213d5381ffbeff5b5cd6a864cb3d15de8393ab4be8b1dfead3179a8079ebd68e05exeAsyncRAT
2022-08-14 05:16:16b11d6f9ecb21082af5dbe40b8433ca80680ae92cd7bf9a52058fe6abf35a56a3exe  
2022-07-10 12:40:59ea55619edf8fbf29000be3591014bcf5388b1fd63b2563d18a7d00b834e17ad1exe XFilesStealer
2022-07-10 12:40:585d97621e71741cf4e2b90ebd16281ddb2c1fe806b3c4e6be5aef738cdf79089bexeRemcosRAT
2022-07-10 12:39:568dbdd7a4e41a4a0d30af17b412ad41c04cad728eddc9c4d4cb89b2522f3f8df6exe  
2022-07-10 12:38:54c56d7650cb69a9ecc1cb26d4324a0708ae5eea20e640b33e32bbcb45b58c0703exeAZORult
2022-06-25 14:47:45b227ba29bda37f89b315c06f77ae46f0ca0558fb4e3bd1f35f0565af8a758c45exe  
2022-06-25 14:40:4070199c37ff74d3feebd76f55ef786284132979a9b8f14bf1180d1f6b30ebb6a3exeXFilesStealer
2022-06-25 14:37:18885e232a7bfad8cdbe87ebe9716534d4f5572142eaf8666d87a9bd7688e009a0exeAZORult
2022-06-25 14:31:24eb91bf1e2eb3877f0942cef113bb0fb76e2c2fd2c2651dbf09f6da6df649e8fbexeRemcosRAT
2022-06-19 17:35:05ad8707472a147dc440da2adbc80dbcd6269ae0d345b8a85081e390fa8d842947exeXFilesStealer
2022-06-19 17:35:055264fb4ba5dac27b8b5d0602963d7401b58f93509b10686302f345691c55797eexe  
2022-06-19 17:35:043c90fb39f5c4023f142b1b71d0172cd2a5caad6d469ea88f3ee7458cac81b064exeAZORult
2022-06-19 17:29:0585afcd52cce634575f5f6fa994faffa37a45b11f544823ff1bf7853c9ae4d19eunknown  
2022-06-19 17:28:05a1098873c94184cf24edd24c3883f4be52224575da34f0469ad4a525c852ef28exeRemcosRAT