URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.grupodulcemar.pe
Domain registrar: n/a
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2024-11-20 16:15:07 UTC
Total malware sites :28
Online malware sites :0 (0%)
Offline Malware sites :28 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-11-20 16:15:12 161.132.57.101yl-huanta.yachay.peNot listedAS3132 Red_Cientifica_Peruana- PEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-04-20 11:14:15https://www.grupodulcemar.pe/RG0987890000.exeOffline10pluspositivesinVT AgentTesla ext abus3reports
2025-04-20 11:14:03https://www.grupodulcemar.pe/GD098765670000800.batOffline10pluspositivesinVT SnakeKeylogger ext abus3reports
2025-04-20 11:13:38https://www.grupodulcemar.pe/FINAL%20REVISED%20...Offline10pluspositivesinVT AgentTesla ext abus3reports
2024-12-20 04:38:08http://www.grupodulcemar.pe/ION67898700.TXZOfflineua-wget BlinkzSec
2024-12-20 04:38:08http://www.grupodulcemar.pe/987656789009800.exeOfflineAgentTesla ext ua-wget BlinkzSec
2024-12-20 04:38:05http://www.grupodulcemar.pe/FTQP098767800.exeOfflineSnakeKeylogger ext ua-wget BlinkzSec
2024-12-10 19:26:08https://www.grupodulcemar.pe/5MHIOPXJKTPrNvo.exeOfflineexe SnakeKeylogger ext abuse_ch
2024-12-10 06:23:08https://www.grupodulcemar.pe/APQSKVTvd60SdAM.exeOfflineexe VIPKeylogger abuse_ch
2024-12-10 06:21:09https://www.grupodulcemar.pe/HKP098767890HJ.exeOfflineexe rat RemcosRAT ext abuse_ch
2024-12-09 14:46:23https://www.grupodulcemar.pe/factura.exeOfflineexe RemcosRAT ext abus3reports
2024-12-09 14:46:21https://www.grupodulcemar.pe/H8hsp6zrMtJI2hC.exeOfflineexe RemcosRAT ext abus3reports
2024-12-09 14:46:19https://www.grupodulcemar.pe/factura098765678.exeOfflineexe Loki ext abus3reports
2024-12-09 14:46:10https://www.grupodulcemar.pe/PHJG9876789000.exeOfflineexe SnakeKeylogger ext abus3reports
2024-12-09 14:45:53https://www.grupodulcemar.pe/PO076567890000.exeOfflineexe RemcosRAT ext abus3reports
2024-12-09 14:45:42http://www.grupodulcemar.pe/DFSA0987789000PO.exeOfflineexe Loki ext abus3reports
2024-12-09 14:45:30https://www.grupodulcemar.pe/FACTURA-0987678.exeOfflineexe RemcosRAT ext abus3reports
2024-12-09 14:45:20https://www.grupodulcemar.pe/IB9876789000.exeOfflineexe RemcosRAT ext abus3reports
2024-12-09 14:45:12https://www.grupodulcemar.pe/FACTURA-09876RT567...Offlineexe SnakeKeylogger ext abus3reports
2024-12-09 14:44:46https://www.grupodulcemar.pe/FDR9876567000.exeOfflineexe abus3reports
2024-12-08 16:38:12http://www.grupodulcemar.pe/FDR9876567000.exeOffline abus3reports
2024-12-08 16:38:11http://www.grupodulcemar.pe/FACTURA-0987678.exeOfflineexe RemcosRAT ext abus3reports
2024-12-08 16:38:05http://www.grupodulcemar.pe/FACTURA-09876RT5678...OfflineSnakeKeylogger ext abus3reports
2024-12-08 16:37:12http://www.grupodulcemar.pe/PO076567890000.exeOfflineRemcosRAT ext abus3reports
2024-12-08 16:37:04http://www.grupodulcemar.pe/FACT0987789000900.exeOfflineRedLineStealer ext SnakeKeylogger ext abus3reports
2024-12-08 16:36:09http://www.grupodulcemar.pe/factura.exeOfflineRemcosRAT ext abus3reports
2024-12-07 14:43:16https://www.grupodulcemar.pe/INVOICE-9876.exeOfflineRemcosRAT ext abus3reports
2024-12-07 14:43:04https://www.grupodulcemar.pe/na56785590-.exeOffline abus3reports
2024-11-20 16:15:12http://www.grupodulcemar.pe/FACTURA09876567000.batOfflineLoki ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-04-23 02:12:1015aae50c58b0261ebdcd3d9e25e602e6162a58ad5558ea03f2ab9e0af68d7863exe  
2025-04-20 11:14:15f9df399fabb84cf4ea29161e8dd8623565b6c0347de338adf44530ecfc746639exe AgentTesla
2025-04-20 11:14:03f2b2dae4b5cd9c3cde870dd6a0722f73fbf8cb6d1936931dccf53a26196be040exe SnakeKeylogger
2025-04-20 11:13:37b48781ff4d51bd55109d02956e02b8df838a1286684680e6c89275e04192a45eexe AgentTesla
2024-12-20 10:11:284812f254fab1c26cb4b899ac706bcca0742c74ac092ba9a45ac4963312ebaf9aexe SnakeKeylogger
2024-12-20 04:38:084efdfd3e946c82fdd9b9ef89db5e7f5a6b4c2e743ad7b3453c0a92405ebbb6d8zip  
2024-12-20 04:38:07363da150d891da7bb5da8056414882429067a0fcb27f58363567567bf18a323eexe AgentTesla
2024-12-10 19:26:081d409e94b935c68a4b4841a1b2e05c6abf1ea827c419eab8bf3ee23229574160exe SnakeKeylogger
2024-12-10 06:23:08cefa40083339d42320bc1f9ba33c578b8abe47e15eb0dd6b0ba2f734aa8f3d6dexeVIPKeylogger
2024-12-10 06:21:09a6d6d1c8299f97f966d72373e999b5a8e6768914e27d5533307cf6878b95dce2exe  
2024-12-09 21:10:317053c8d9983dc949e5d559ba1b006b8ba9c059a23e06cd87c857c3d04201381bexeRemcosRAT
2024-12-09 17:31:22d9b66f2580bd43a5b03487e161d925c63b3d485d22d71607060eb07e453c03d7exeSnakeKeylogger
2024-12-09 14:46:22e51f50b3f520e3de0f0916e0291ad093aa0c50f6c81010001ce5aa2aee88f7b0exeRemcosRAT
2024-12-09 14:46:218dfdaaecfa4a530b2828a88e10859aab01ef8ec3072b623ce878d123e657adabexe RemcosRAT
2024-12-09 14:46:18be789d9c5185f7f04ddb78f2b39f9dd7415080c4d975139fc612158b0b3a5badexeLoki
2024-12-09 14:46:096328f5ad5d16dbe08046450470e8ca083f07a10aa97401b0425a59d224492b13exeSnakeKeylogger
2024-12-09 14:45:52cec4f49a5374bf025bd1ccd700897e017be1e67ca6bc248dae9131a85db91c42exe RemcosRAT
2024-12-09 14:45:39afd5885712157bf7e51471f21b977788084aa78bf58d45287b4043edb2ee3495exeLoki
2024-12-09 14:45:2849e8a1f12fb5202470604efe01c0d60949d20d302a76aed85b2a049e91266366exeRemcosRAT
2024-12-09 14:44:449a32e0821da4466b858ecfd185f3d9bff232d8a3b44983988c248df05ef7c2efexe  
2024-12-08 19:06:00f3530f9d52d1ba3ed70cc5d603cf0a83771027cda5fd545206e1688589ef69fdexe SnakeKeylogger
2024-12-08 17:18:58d9b66f2580bd43a5b03487e161d925c63b3d485d22d71607060eb07e453c03d7exeSnakeKeylogger
2024-12-08 16:38:129a32e0821da4466b858ecfd185f3d9bff232d8a3b44983988c248df05ef7c2efexe  
2024-12-08 16:38:1149e8a1f12fb5202470604efe01c0d60949d20d302a76aed85b2a049e91266366exeRemcosRAT
2024-12-08 16:37:12cec4f49a5374bf025bd1ccd700897e017be1e67ca6bc248dae9131a85db91c42exe RemcosRAT
2024-12-08 16:36:09e51f50b3f520e3de0f0916e0291ad093aa0c50f6c81010001ce5aa2aee88f7b0exeRemcosRAT
2024-12-07 17:07:58656e1bcadf18f78e0a1480beda30b3be8a3aee636c758e30247e2126ad6bed98exe  
2024-12-07 14:43:1628331e2705bf58bd76a9f8ba0f0a431b762eaf6e4284dbf12f1453dd3fecf281exeRemcosRAT
2024-11-20 16:15:12ecc61fe635e2cdb0859441ef90e330230094e7514cf00cb48829e136d713b63bexeLoki