############################################################################## # URLhaus ASN CSV Feed # # Generated on 2025-11-19 20:47:24 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS200350 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2025-11-15 21:14:15","http://51.250.54.122:60145/linux","online","malware_download","elf|ua-wget","51.250.54.122","51.250.54.122","200350","RU" "2025-09-16 10:20:07","http://62.84.118.18/1.exe","offline","malware_download","exe","62.84.118.18","62.84.118.18","200350","RU" "2025-09-16 10:19:06","http://158.160.107.248/1.exe","offline","malware_download","exe","158.160.107.248","158.160.107.248","200350","RU" "2025-09-16 10:19:06","http://89.169.129.158/1.exe","offline","malware_download","exe","89.169.129.158","89.169.129.158","200350","RU" "2025-05-23 06:00:34","http://158.160.140.95:10500/a.exe","offline","malware_download","CobaltStrike","158.160.140.95","158.160.140.95","200350","RU" "2025-05-21 06:08:06","http://158.160.153.28/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","158.160.153.28","158.160.153.28","200350","RU" "2025-05-21 06:08:06","http://158.160.176.79/02.08.2022.exe","offline","malware_download","censys|CobaltStrike","158.160.176.79","158.160.176.79","200350","RU" "2025-01-01 10:28:05","http://84.201.142.14/hiddenbin/B_Y_T_E_x86","offline","malware_download","32-bit|ELF|Mirai|x86-32","84.201.142.14","84.201.142.14","200350","RU" "2025-01-01 10:27:05","http://84.201.142.14/hiddenbin/B_Y_T_E_x86_64","offline","malware_download","64-bit|ELF|Mirai|x86-64","84.201.142.14","84.201.142.14","200350","RU" "2025-01-01 07:32:05","http://84.201.142.14/bins/byte.x86","offline","malware_download","ascii|Mirai","84.201.142.14","84.201.142.14","200350","RU" "2025-01-01 02:48:05","http://84.201.142.14/main_x86_64","offline","malware_download","64-bit|ELF|Mirai|x86-64","84.201.142.14","84.201.142.14","200350","RU" "2024-10-03 10:42:31","https://51.250.16.184/02.08.2022.exe","offline","malware_download","CobaltStrike|shellcode","51.250.16.184","51.250.16.184","200350","RU" "2024-09-28 16:15:45","http://84.201.150.223/IM.ps1","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 16:14:06","http://84.201.150.223/demon.x64.bin","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 16:14:06","http://84.201.150.223/Somepdf.pdf","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 16:14:05","http://84.201.150.223/ammy.ps1","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 16:14:05","http://84.201.150.223/iloveblogs.bin","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 16:14:05","http://84.201.150.223/Invoke-Mimikatz.ps1","offline","malware_download","","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 13:04:06","http://84.201.150.223/autoboot.exe","offline","malware_download","c2|Metasploit|opendir","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 13:03:14","http://84.201.150.223/notepad.exe","offline","malware_download","c2|Mimikatz|opendir","84.201.150.223","84.201.150.223","200350","RU" "2024-09-28 13:00:21","http://84.201.150.223/sh-runner.exe","offline","malware_download","c2|Meterpreter|opendir","84.201.150.223","84.201.150.223","200350","RU" "2024-08-16 15:17:15","http://158.160.167.13:9983/02.08.2022.exe","offline","malware_download","cobaltstrike|shellcode","158.160.167.13","158.160.167.13","200350","RU" "2024-08-16 15:17:11","http://158.160.167.13:9984/02.08.2022.exe","offline","malware_download","cobaltstrike|shellcode","158.160.167.13","158.160.167.13","200350","RU" "2024-06-24 06:48:06","http://158.160.165.142/hidakibest.arm4","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:12","http://158.160.165.142/hidakibest.arm5","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:12","http://158.160.165.142/hidakibest.arm6","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:11","http://158.160.165.142/hidakibest.mips","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:11","http://158.160.165.142/hidakibest.mpsl","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:11","http://158.160.165.142/hidakibest.ppc","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:11","http://158.160.165.142/hidakibest.sparc","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:11","http://158.160.165.142/hidakibest.x86","offline","malware_download","elf|Gafgyt|mirai","158.160.165.142","158.160.165.142","200350","RU" "2024-06-24 06:47:05","http://158.160.165.142/hidakibest.sh","offline","malware_download","shellscript","158.160.165.142","158.160.165.142","200350","RU" "2024-05-05 14:31:10","http://158.160.8.110/hidakibest.arm4","offline","malware_download","elf|Gafgyt","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:10","http://158.160.8.110/hidakibest.arm5","offline","malware_download","elf|Gafgyt","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:10","http://158.160.8.110/hidakibest.arm6","offline","malware_download","elf","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:10","http://158.160.8.110/hidakibest.mips","offline","malware_download","elf|Gafgyt","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:10","http://158.160.8.110/hidakibest.ppc","offline","malware_download","elf","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:09","http://158.160.8.110/hidakibest.mpsl","offline","malware_download","elf|Gafgyt","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:09","http://158.160.8.110/hidakibest.sh","offline","malware_download","elf|shellscript","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:09","http://158.160.8.110/hidakibest.sparc","offline","malware_download","elf","158.160.8.110","158.160.8.110","200350","RU" "2024-05-05 14:31:09","http://158.160.8.110/hidakibest.x86","offline","malware_download","elf|Gafgyt","158.160.8.110","158.160.8.110","200350","RU" "2024-02-10 05:20:14","http://51.250.72.163/a-r.m-6.ISIS","offline","malware_download","32|arm|bashlite|elf|gafgyt","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:14","http://51.250.72.163/p-p.c-.ISIS","offline","malware_download","32|arm|bashlite|elf|gafgyt","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:14","http://51.250.72.163/s-h.4-.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|renesas","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/a-r.m-4.ISIS","offline","malware_download","32|arm|bashlite|elf|gafgyt","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/a-r.m-5.ISIS","offline","malware_download","32|arm|bashlite|elf|gafgyt","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/a-r.m-7.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|powerpc","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/i-5.8-6.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|motorola","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/m-i.p-s.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|mips","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/m-p.s-l.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|mips","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:20:13","http://51.250.72.163/x-8.6-.ISIS","offline","malware_download","64|bashlite|elf|gafgyt","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:19:07","http://51.250.72.163/x-3.2-.ISIS","offline","malware_download","32|bashlite|elf|gafgyt|intel","51.250.72.163","51.250.72.163","200350","RU" "2024-02-10 05:00:11","http://51.250.72.163/ISIS.sh","offline","malware_download","","51.250.72.163","51.250.72.163","200350","RU" "2023-11-15 12:10:48","http://faststroygo.com/","offline","malware_download","Darkgate|dll|TR","faststroygo.com","84.201.174.17","200350","RU" "2023-11-15 12:10:48","http://faststroygo.com/msilatecqpa","offline","malware_download","Darkgate|dll|TR","faststroygo.com","84.201.174.17","200350","RU" "2023-11-15 12:10:20","http://faststroygo.com/jsslatecqpa","offline","malware_download","Darkgate|dll|TR","faststroygo.com","84.201.174.17","200350","RU" "2023-05-15 15:43:26","http://51.250.83.119/bins/infinity.x86_64","offline","malware_download","|64-bit|ELF|Mirai|x86-64","51.250.83.119","51.250.83.119","200350","RU" "2023-04-30 10:38:27","http://130.193.40.103/bins/shadow.x86_64","offline","malware_download","|64-bit|ELF|Mirai|x86-64","130.193.40.103","130.193.40.103","200350","RU" "2023-04-30 05:38:04","http://158.160.13.185/Voxility.sh","offline","malware_download","|script","158.160.13.185","158.160.13.185","200350","RU" "2023-04-29 14:57:26","http://158.160.13.185/bins/shadow.x86_64","offline","malware_download","|64-bit|ELF|Mirai|x86-64","158.160.13.185","158.160.13.185","200350","RU" "2023-04-12 14:29:24","http://158.160.0.32/bins/shadow.i686","offline","malware_download","|32-bit|ELF|Mirai|x86-32","158.160.0.32","158.160.0.32","200350","RU" "2023-04-01 20:52:13","http://158.160.21.132/bins/multi.i686","offline","malware_download","|32-bit|ELF|Mirai|x86-32","158.160.21.132","158.160.21.132","200350","RU" "2023-03-27 17:25:25","http://158.160.13.233/bins/sora.i686","offline","malware_download","|32-bit|ELF|x86-32","158.160.13.233","158.160.13.233","200350","RU" "2023-03-27 07:52:21","http://158.160.21.132/test1.i686","offline","malware_download","|32-bit|ELF|Mirai|x86-32","158.160.21.132","158.160.21.132","200350","RU" "2023-03-27 02:24:19","http://158.160.21.132/bins/fix.i686","offline","malware_download","|32-bit|ELF|Mirai|x86-32","158.160.21.132","158.160.21.132","200350","RU" "2023-03-26 08:56:12","http://158.160.21.132/bins/sora.i686","offline","malware_download","|32-bit|ELF|x86-32","158.160.21.132","158.160.21.132","200350","RU" "2023-03-20 19:34:26","http://158.160.21.132/bins/sora.x866","offline","malware_download","|32-bit|ELF|Mirai|x86-32","158.160.21.132","158.160.21.132","200350","RU" "2023-03-19 07:04:26","http://51.250.107.245/bins/sora.x866","offline","malware_download","|32-bit|ELF|x86-32","51.250.107.245","51.250.107.245","200350","RU" "2022-08-02 17:38:06","https://915111.ru/wp-includes/rat.exe","offline","malware_download","DCRat|exe","915111.ru","84.252.137.194","200350","RU" "2021-12-21 14:38:14","http://51.250.28.5/.l/log","offline","malware_download","CVE-2021-44228|log4j |Muhstik|sh|Tsunami","51.250.28.5","51.250.28.5","200350","RU" "2021-12-21 14:01:04","http://51.250.28.5/.l/pty4","offline","malware_download","CVE-2021-44228|elf|log4j|Muhstik|Tsunami","51.250.28.5","51.250.28.5","200350","RU" "2021-12-21 14:00:17","http://51.250.28.5/.l/pty3","offline","malware_download","CVE-2021-44228|elf|log4j|Muhstik|Tsunami","51.250.28.5","51.250.28.5","200350","RU" "2020-12-02 07:02:06","http://84.201.154.133/lmaoWTF/loligang.arm","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.arm5","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.arm6","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.arm7","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.m68k","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.mips","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.mpsl","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.ppc","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.sh4","offline","malware_download","elf","84.201.154.133","84.201.154.133","200350","RU" "2020-12-02 07:02:03","http://84.201.154.133/lmaoWTF/loligang.x86","offline","malware_download","elf|Mirai","84.201.154.133","84.201.154.133","200350","RU" "2020-10-22 20:12:08","http://vipsy.online/advertise/browse/32bwfqpvuu/fspvxec8ulildy5mg9f6ar/","offline","malware_download","doc|emotet|epoch2|Heodo","vipsy.online","51.250.33.153","200350","RU" "2020-04-20 21:52:06","https://ds05.infourok.ru/uploads/doc/0a42/000b2dd1-6b338110.zip","offline","malware_download","zip","ds05.infourok.ru","51.250.126.210","200350","RU" "2019-10-07 10:29:07","http://collegebeast.net/skilzzz/smilecry.exe","offline","malware_download","exe","collegebeast.net","178.154.231.166","200350","RU" "2019-05-21 10:23:05","http://veresk-studio.ru/wp-admin/e032ur-7ivwl-evprfzy/","offline","malware_download","Emotet|Heodo","veresk-studio.ru","158.160.19.103","200350","RU" "2019-05-15 09:43:03","http://veresk-studio.ru/wp-admin/p1ptsd5l06catpoq4_jdd5y3sp39-95860538271/","offline","malware_download","doc|emotet|epoch2","veresk-studio.ru","158.160.19.103","200350","RU" "2019-05-10 12:19:21","http://veresk-studio.ru/wp-admin/wt3smhc5_le7xirr7-9265853/","offline","malware_download","emotet|epoch2|exe|Heodo","veresk-studio.ru","158.160.19.103","200350","RU" "2019-02-22 17:48:43","http://tcl-japan.ru/Sec_Refund/Copy_receipt/yQKB-iu_TKLWrd-Ck5/","offline","malware_download","doc|emotet|epoch1|Heodo","tcl-japan.ru","51.250.120.101","200350","RU" "2019-02-20 19:25:39","http://tcl-japan.ru/organization/business/thrust/file/X2Xs3s9e0dSv3QbXjfEzz/","offline","malware_download","doc|emotet|epoch1|Heodo","tcl-japan.ru","51.250.120.101","200350","RU" "2019-02-20 17:26:03","http://tcl-japan.ru/organization/business/thrust/file/X2Xs3s9e0dSv3QbXjfEzz","offline","malware_download","doc","tcl-japan.ru","51.250.120.101","200350","RU" "2018-07-04 20:21:04","http://krasniykluch.ru/En/OVERDUE-ACCOUNT/invoice/","offline","malware_download","doc|emotet|epoch2|Heodo","krasniykluch.ru","178.154.207.237","200350","RU" # of entries: 92