############################################################################## # URLhaus ASN CSV Feed # # Generated on 2024-03-28 13:11:08 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS205275 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2024-01-25 19:02:48","https://andamiechipamente.ro/5iv/","offline","malware_download","TA577|TR","andamiechipamente.ro","89.42.218.91","205275","RO" "2023-12-22 16:09:18","https://gptplan.ro/wcrsfz/","offline","malware_download","PDF|Pikabot|TA577|TR|ZIP","gptplan.ro","89.42.218.242","205275","RO" "2023-12-21 16:06:32","https://progusto.ro/fio/","offline","malware_download","Pikabot|TA577|TR|zip","progusto.ro","93.115.53.199","205275","RO" "2023-12-21 16:06:12","https://denisspedition.ro/ogzn/","offline","malware_download","Pikabot|TA577|TR|zip","denisspedition.ro","89.42.218.162","205275","RO" "2023-12-21 16:04:33","https://ultrastei.ro/vcd/","offline","malware_download","Pikabot|TA577|TR|zip","ultrastei.ro","89.42.218.237","205275","RO" "2023-12-21 16:04:26","https://spitalcfpascani.ro/w4h5q/","offline","malware_download","Pikabot|TA577|TR|zip","spitalcfpascani.ro","89.42.218.111","205275","RO" "2023-12-20 14:57:31","https://highcare-bucuresti.com/hpppw/","offline","malware_download","Pikabot|TA577|TR|zip","highcare-bucuresti.com","188.240.20.155","205275","RO" "2023-12-19 15:06:52","https://denisspedition.ro/p8wq/","offline","malware_download","TR","denisspedition.ro","89.42.218.162","205275","RO" "2023-12-19 15:06:43","https://clinicileardeleanu.ro/fb2kwo/","offline","malware_download","TR","clinicileardeleanu.ro","89.42.218.142","205275","RO" "2023-12-19 15:06:36","https://casemobilejapeto.ro/4woth5/","offline","malware_download","TR","casemobilejapeto.ro","89.42.218.209","205275","RO" "2023-12-19 15:06:29","https://pifmedia.ro/nxrzzi/","offline","malware_download","TR","pifmedia.ro","89.42.218.239","205275","RO" "2023-12-19 15:06:01","https://dj-david.ro/uxa/","offline","malware_download","TR","dj-david.ro","89.42.218.226","205275","RO" "2023-12-19 15:06:00","https://fundatiispeciale.ro/v9xqrq/","offline","malware_download","TR","fundatiispeciale.ro","89.42.218.29","205275","RO" "2023-12-19 15:05:40","https://rclrt.ro/hfh/","offline","malware_download","TR","rclrt.ro","89.41.38.22","205275","RO" "2023-12-19 15:05:25","https://diamond-dent.net/6eg/","offline","malware_download","TR","diamond-dent.net","89.42.218.206","205275","RO" "2023-12-18 17:33:47","https://cabinetstomatologic-brasov.ro/ru2a/","offline","malware_download","TR","cabinetstomatologic-brasov.ro","89.42.218.29","205275","RO" "2023-12-18 17:33:23","https://expressslichidator.ro/ah0/","offline","malware_download","TR","expressslichidator.ro","89.42.218.101","205275","RO" "2023-12-15 08:43:40","https://cascade-wow.eu/tura27/","offline","malware_download","js|Pikabot|TA577|TR|zip","cascade-wow.eu","89.42.218.231","205275","RO" "2023-12-15 08:43:25","https://georgica.ro/gfq/","offline","malware_download","js|Pikabot|TA577|TR|zip","georgica.ro","89.42.218.231","205275","RO" "2023-11-17 19:14:18","https://girlsmacktalk.com/enelverfactura/?hash=user@domain.com","offline","malware_download","Mekotio","girlsmacktalk.com","89.42.218.27","205275","RO" "2023-06-16 15:24:54","https://haleportostudio.ro/irm/?1","offline","malware_download","BB32|geofenced|js|Qakbot|Qbot|Quakbot|TR|USA","haleportostudio.ro","89.40.72.27","205275","RO" "2023-06-16 15:22:36","https://bestachizitii.ro/eld/?1","offline","malware_download","BB32|geofenced|js|Qakbot|Qbot|Quakbot|TR|USA","bestachizitii.ro","93.115.53.199","205275","RO" "2023-06-15 16:15:53","https://gederex.ro/st/?1","offline","malware_download","BB32|geofenced|js|Qakbot|USA","gederex.ro","89.42.218.29","205275","RO" "2023-06-15 16:14:12","https://bestachizitii.ro/tete/?1","offline","malware_download","BB32|geofenced|js|Qakbot|USA","bestachizitii.ro","93.115.53.199","205275","RO" "2023-06-15 11:03:17","https://gederex.ro/st/?","offline","malware_download","BB32|geofenced|js|Qakbot|USA","gederex.ro","89.42.218.29","205275","RO" "2023-05-16 21:52:15","https://bestachizitii.com/ca/?1","offline","malware_download","BB28|geofenced|GuLoader|js|Qakbot|Qbot|Quakbot|USA","bestachizitii.com","93.115.53.199","205275","RO" "2023-05-16 19:08:19","https://bestachizitii.com/tma/?1","offline","malware_download","BB28|geofenced|js|Qakbot|Qbot|Quakbot|USA","bestachizitii.com","93.115.53.199","205275","RO" "2023-05-05 08:43:37","https://meqyas.ae/download/File_pass1234.zip","offline","malware_download","1234|password-protected|zip","meqyas.ae","89.42.218.163","205275","RO" "2023-03-16 16:20:19","https://art-dentalstudio.ro/ima/ima.js","offline","malware_download","BB19|geofenced|js|Pikabot|Qakbot|Qbot|Quakbot|USA","art-dentalstudio.ro","89.42.218.228","205275","RO" "2023-03-13 17:50:30","https://drraducampeanu.ro/rnu/rnu.js","offline","malware_download","BB19|geofenced|js|Qakbot|Qbot|Quakbot|USA","drraducampeanu.ro","89.42.218.228","205275","RO" "2022-12-14 16:03:35","https://felixfinance.ro/ups/index.php","offline","malware_download","BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","felixfinance.ro","89.40.72.91","205275","RO" "2022-12-13 20:31:41","https://marketingitalianfood.ro/lsi/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","marketingitalianfood.ro","89.40.72.91","205275","RO" "2022-12-13 20:16:01","https://asociatialucanineibalcani.ro/as/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","asociatialucanineibalcani.ro","89.40.72.91","205275","RO" "2022-11-14 17:06:20","https://provita-nutrition.ro/er/index.php?qbot.zip","offline","malware_download","BB06|HK57|iso|qakbot|qbot|quakbot|TR|zip","provita-nutrition.ro","89.39.83.31","205275","RO" "2022-11-14 17:06:17","https://organikfarm.eu/ma/index.php?qbot.zip","offline","malware_download","BB06|HK57|iso|qakbot|qbot|quakbot|TR|zip","organikfarm.eu","89.39.83.31","205275","RO" "2022-11-14 17:06:17","https://provita-organika.ro/eaq/index.php?qbot.zip","offline","malware_download","BB06|HK57|iso|qakbot|qbot|quakbot|TR|zip","provita-organika.ro","89.39.83.31","205275","RO" "2022-11-14 17:06:13","https://organikfarm.ro/do/index.php?qbot.zip","offline","malware_download","BB06|HK57|iso|qakbot|qbot|quakbot|TR|zip","organikfarm.ro","89.39.83.31","205275","RO" "2022-11-14 17:02:12","https://anglonubian.ro/onon/index.php?qbot.zip","offline","malware_download","BB06|HK57|iso|qakbot|qbot|quakbot|TR|zip","anglonubian.ro","89.39.83.31","205275","RO" "2022-11-02 01:57:24","https://norocelsrl.ro/ereu/qbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","norocelsrl.ro","89.42.218.246","205275","RO" "2022-11-02 01:56:46","https://profetul-muhammed.ro/qnae/qbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","profetul-muhammed.ro","89.42.218.101","205275","RO" "2022-11-02 01:56:34","https://stagira.ro/re/qbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","stagira.ro","89.42.218.246","205275","RO" "2022-11-02 01:56:16","https://startbusinessclub.ro/eail/qbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","startbusinessclub.ro","188.241.142.222","205275","RO" "2022-11-02 01:51:18","https://averroes.ro/isci/qbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","averroes.ro","89.42.218.101","205275","RO" "2022-10-31 17:00:16","https://femeiamusulmana.ro/iics/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","femeiamusulmana.ro","89.42.218.101","205275","RO" "2022-10-31 16:16:20","https://vin-acasa.ro/ui/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","vin-acasa.ro","89.41.38.22","205275","RO" "2022-10-31 16:16:07","https://vilanova.ro/oi/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","vilanova.ro","89.42.218.234","205275","RO" "2022-10-31 16:15:48","https://terapie-copii.ro/qe/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","terapie-copii.ro","89.42.218.237","205275","RO" "2022-10-31 16:13:28","https://rabota.ro/sma/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","rabota.ro","89.42.218.165","205275","RO" "2022-10-31 16:12:32","https://maverick-adventure.ro/edd/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","maverick-adventure.ro","89.42.218.237","205275","RO" "2022-10-31 16:11:55","https://ioanadominte.ro/eidi/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","ioanadominte.ro","89.42.218.147","205275","RO" "2022-10-31 16:11:55","https://luxuryhomefurniture.ro/dnq/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","luxuryhomefurniture.ro","89.42.218.240","205275","RO" "2022-10-31 16:07:25","https://bucovinacazare.ro/osui/qakbot.zip","offline","malware_download","BB05|BV1|iso|qakbot|qbot|quakbot|TR|zip","bucovinacazare.ro","89.42.218.243","205275","RO" "2022-10-27 23:37:40","https://jurnalgiurgiuvean.ro/me/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","jurnalgiurgiuvean.ro","89.39.83.231","205275","RO" "2022-10-27 23:37:38","https://jurnalgiurgiuvean.ro/ipoo/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","jurnalgiurgiuvean.ro","89.39.83.231","205275","RO" "2022-10-27 23:37:14","https://jurnalgiurgiuvean.ro/el/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","jurnalgiurgiuvean.ro","89.39.83.231","205275","RO" "2022-10-27 23:33:26","https://bartha-prelatecamioane.ro/qsuu/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","bartha-prelatecamioane.ro","93.115.53.7","205275","RO" "2022-10-27 23:33:14","https://bartha-prelatecamioane.ro/aiqb/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","bartha-prelatecamioane.ro","93.115.53.7","205275","RO" "2022-10-27 23:33:08","https://bartha-prelatecamioane.ro/aute/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","bartha-prelatecamioane.ro","93.115.53.7","205275","RO" "2022-10-27 23:33:08","https://bartha-prelatecamioane.ro/ru/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","bartha-prelatecamioane.ro","93.115.53.7","205275","RO" "2022-10-27 23:33:07","https://bartha-prelatecamioane.ro/erta/qakbot.zip","offline","malware_download","BB04|iso|PG1|qakbot|qbot|quakbot|TR|zip","bartha-prelatecamioane.ro","93.115.53.7","205275","RO" "2022-09-30 21:02:40","https://glcrypto.ro/nim/eedts","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:37","https://glcrypto.ro/nim/dsltnrpeuueael","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:37","https://glcrypto.ro/nim/nqstaiiu","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:37","https://glcrypto.ro/nim/onnrntaieimvie","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:37","https://glcrypto.ro/nim/reucmrafree","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:37","https://glcrypto.ro/nim/rrplhionio","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:36","https://glcrypto.ro/nim/aiusltaa","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:36","https://glcrypto.ro/nim/naaqmiigu","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:36","https://glcrypto.ro/nim/pttlmuospavbietesnuuari","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:28","https://glcrypto.ro/nim/alltiiomatu","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:26","https://glcrypto.ro/nim/ucmrmrue","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:25","https://glcrypto.ro/nim/avintleimi","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:25","https://glcrypto.ro/nim/tuesd","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:25","https://glcrypto.ro/nim/xoetdi","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:19","https://glcrypto.ro/nim/lquosordmae","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:16","https://glcrypto.ro/nim/seecsionlrdutno","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:15","https://glcrypto.ro/nim/abmetuniosovtlp","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:15","https://glcrypto.ro/nim/oebvleminnoarrut","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-30 21:02:15","https://glcrypto.ro/nim/raoetvu","offline","malware_download","BB|qakbot|qbot|quakbot|TR|U492|zip","glcrypto.ro","185.162.65.207","205275","RO" "2022-09-28 17:42:20","https://asr24.ro/aii/auvautpltumot","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:20","https://asr24.ro/aii/dspsomireioamcroe","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:17","https://asr24.ro/aii/sieuits","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:17","https://asr24.ro/aii/sitsbisadbiicnuetetes","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:17","https://asr24.ro/aii/stgnimoufi","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:17","https://asr24.ro/aii/vroseet","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:16","https://asr24.ro/aii/aelmdruobs","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:15","https://asr24.ro/aii/treisocedhact","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:12","https://asr24.ro/aii/rioebtspmtuipoo","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:10","https://asr24.ro/aii/seenedmsupsauraantmi","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:09","https://asr24.ro/aii/ouevaremt","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-09-28 17:42:09","https://asr24.ro/aii/peupatslrucaarn","offline","malware_download","BB|H322|H436|qakbot|qbot|quakbot|TR|U425|zip","asr24.ro","89.41.38.48","205275","RO" "2022-05-16 21:11:05","http://staredefapt.ro/wp-includes/sABxabq6vgSOaVfn/","offline","malware_download","dll|emotet|epoch5|heodo","staredefapt.ro","89.40.72.214","205275","RO" "2022-05-16 21:11:05","http://www.staredefapt.ro/wp-includes/gGtaPSS67Zz7rn/","offline","malware_download","dll|emotet|epoch5|heodo","www.staredefapt.ro","89.40.72.214","205275","RO" "2022-01-12 21:11:10","https://snmobis.ro/wp-content/xA8xQhAu/","offline","malware_download","Emotet","snmobis.ro","89.40.72.90","205275","RO" "2022-01-11 14:44:04","http://snmobis.ro/wp-content/xA8xQhAu/","offline","malware_download","emotet|epoch4|redir-doc|xls","snmobis.ro","89.40.72.90","205275","RO" "2022-01-11 14:44:04","http://snmobis.ro/wp-content/xA8xQhAu/?i=1","offline","malware_download","doc|emotet|epoch4|Heodo|SilentBuilder","snmobis.ro","89.40.72.90","205275","RO" "2021-12-31 08:48:07","http://onplongejr.ro/nb/Y/LxTG8gnaP.zip","offline","malware_download","qakbot|Qbot|Quakbot","onplongejr.ro","89.42.218.72","205275","RO" "2021-12-07 16:19:34","https://www.salin.ro/doc/X/HMsp8EWLD.zip","offline","malware_download","Obama141|Qakbot|zip","www.salin.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:23","https://www.salin.ro/doc/piK/6Jz/XiG/IS3FNaL.zip","offline","malware_download","Obama141|Qakbot|zip","www.salin.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:22","https://farmacia-organika.ro/doc/L1q/xNH/Bem/D3O2kDZ.zip","offline","malware_download","Obama141|Qakbot|Quakbot|zip","farmacia-organika.ro","89.40.72.233","205275","RO" "2021-12-07 16:19:17","https://farmacia-organika.ro/doc/uZ/Ua/Yof4JFbU.zip","offline","malware_download","Obama141|Qakbot|Quakbot|zip","farmacia-organika.ro","89.40.72.233","205275","RO" "2021-12-07 16:19:16","https://www.salin.ro/doc/f4V/Tc9/0g4/LUB0ldZ.zip","offline","malware_download","Obama141|Qakbot|zip","www.salin.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:10","https://farmacia-organika.ro/doc/1/KAdKWFDc7.zip","offline","malware_download","Obama141|Qakbot|Quakbot|zip","farmacia-organika.ro","89.40.72.233","205275","RO" "2021-12-07 16:19:10","https://farmacia-organika.ro/doc/cI/1X/5lrDrDAq.zip","offline","malware_download","Obama141|Qakbot|Quakbot|zip","farmacia-organika.ro","89.40.72.233","205275","RO" "2021-12-07 16:19:10","https://www.managerexpress.ro/doc/k2b/lCP/tbq/NuSikc9.zip","offline","malware_download","Obama141|Qakbot|zip","www.managerexpress.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:10","https://www.managerexpress.ro/doc/N/pZmDSHxyo.zip","offline","malware_download","Obama141|Qakbot|zip","www.managerexpress.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:10","https://www.managerexpress.ro/doc/vPl/AIt/Xxf/axbmUiX.zip","offline","malware_download","Obama141|Qakbot|zip","www.managerexpress.ro","89.42.218.79","205275","RO" "2021-12-07 16:19:10","https://www.salin.ro/doc/1/MkS8vNDnx.zip","offline","malware_download","Obama141|Qakbot|zip","www.salin.ro","89.42.218.79","205275","RO" "2021-10-15 11:25:16","https://ignaconstruct.ro/etrerum/nonipsa-143446838","offline","malware_download","qbot","ignaconstruct.ro","89.42.218.143","205275","RO" "2021-10-15 11:25:10","https://ignaconstruct.ro/etrerum/corruptiprovident-143501470","offline","malware_download","qbot","ignaconstruct.ro","89.42.218.143","205275","RO" "2021-10-05 13:06:06","https://loyal.ro/ea-non/documents.zip","offline","malware_download","TR|zip","loyal.ro","89.42.218.243","205275","RO" "2021-10-04 15:25:10","https://funmag.ro/earum-ut/documents.zip","offline","malware_download","TR|zip","funmag.ro","89.42.218.231","205275","RO" "2021-10-04 15:23:07","https://metalline.ro/sint-eveniet/documents.zip","offline","malware_download","TR|zip","metalline.ro","89.42.218.72","205275","RO" "2021-09-29 11:36:39","https://acordimobiliar.ro/qui-quia/rerum.zip","offline","malware_download","","acordimobiliar.ro","89.42.218.99","205275","RO" "2021-09-29 10:18:22","https://acordimobiliar.ro/qui-quia/documents.zip","offline","malware_download","squirrelwaffle|TR|zip","acordimobiliar.ro","89.42.218.99","205275","RO" "2021-09-28 15:06:20","https://acordimobiliar.ro/qui-quia/cum.zip","offline","malware_download","SQUIRRELWAFFLE","acordimobiliar.ro","89.42.218.99","205275","RO" "2021-09-23 15:30:10","https://westkarpaten.ro/accusantium-eum/documents.zip","offline","malware_download","TR|zip","westkarpaten.ro","89.42.218.164","205275","RO" "2021-09-23 11:12:16","https://turismtimis.ro/a-quas/documents.zip","offline","malware_download","TR|zip","turismtimis.ro","89.42.218.164","205275","RO" "2021-09-23 08:11:08","https://chop-shop.ro/maiores-repudiandae/documents.zip","offline","malware_download","TR|zip","chop-shop.ro","89.47.242.199","205275","RO" "2021-09-23 08:06:08","https://arcb.ro/harum-laborum/documents.zip","offline","malware_download","TR|zip","arcb.ro","89.42.218.232","205275","RO" "2021-09-22 16:50:16","https://seinsweise.com/laborum-rerum/documents.zip","offline","malware_download","TR|zip","seinsweise.com","89.42.218.164","205275","RO" "2021-09-22 13:00:24","https://actualitatea-crestina.ro/laudantium-reiciendis/documents.zip","offline","malware_download","TR|zip","actualitatea-crestina.ro","89.42.218.232","205275","RO" "2021-09-22 13:00:22","https://vladimirghika.ro/et-dolor/documents.zip","offline","malware_download","TR|zip","vladimirghika.ro","89.42.218.232","205275","RO" "2021-09-22 13:00:15","https://btvideo.ro/neque-magni/documents.zip","offline","malware_download","TR|zip","btvideo.ro","89.42.218.228","205275","RO" "2021-09-22 13:00:05","https://louloucuisine.ro/expedita-consequatur/documents.zip","offline","malware_download","TR|zip","louloucuisine.ro","89.42.218.94","205275","RO" "2021-09-22 12:06:06","https://rdrcollect.ro/ad-sunt/documents.zip","offline","malware_download","TR|zip","rdrcollect.ro","89.42.218.226","205275","RO" "2021-09-21 21:16:04","https://louloucuisine.com/eligendi-soluta/documents.zip","offline","malware_download","TR|zip","louloucuisine.com","89.42.218.94","205275","RO" "2021-05-20 14:35:32","https://fotounirii.ro/wp-content/plugins/under-construction-page/themes/000webhost/EYZWDFGxTaDjbR.php","offline","malware_download","","fotounirii.ro","89.41.38.37","205275","RO" "2021-05-17 14:43:06","https://spectrum.ro/oMbXA/Emma.Jones-87.zip","offline","malware_download","b-TDS|html|Qakbot|Qbot|SilentBuilder|TR|zip","spectrum.ro","89.42.218.110","205275","RO" "2021-05-17 11:10:04","http://spectrum.ro/oMbXA/joao_alencar-59.zip","offline","malware_download","qbot","spectrum.ro","89.42.218.110","205275","RO" "2021-04-30 14:03:05","https://greenenergie.ro/wp-content/plugins/elementor/includes/admin-templates/fM2JX6RjAmwQr2.php","offline","malware_download","Dridex","greenenergie.ro","89.40.72.105","205275","RO" "2021-03-17 17:12:06","https://www.ideeadoors.ro/ckeditor/_source/plugins/about/dialogs","offline","malware_download","Dridex","www.ideeadoors.ro","89.42.218.73","205275","RO" "2021-02-02 18:55:06","https://www.ideeadoors.ro/ckeditor/_source/plugins/about/dialogs/LFICfpXl","offline","malware_download","Dridex","www.ideeadoors.ro","89.42.218.73","205275","RO" "2021-02-02 18:31:09","https://www.ideeadoors.ro/ckeditor/_source/plugins/about/dialogs/c4HZxaZ1Prje.php","offline","malware_download","Dridex","www.ideeadoors.ro","89.42.218.73","205275","RO" "2020-11-24 18:08:04","https://scoalajupinesti.ro/sbtma40.pdf","offline","malware_download","dridex","scoalajupinesti.ro","89.42.218.189","205275","RO" "2020-11-24 18:07:05","http://scoalajupinesti.ro/sbtma40.pdf","offline","malware_download","Dridex","scoalajupinesti.ro","89.42.218.189","205275","RO" "2020-10-21 10:01:05","http://palestraburns.com/wp-includes/browse/e4pTDHiI8K/","offline","malware_download","doc|emotet|epoch1|Heodo","palestraburns.com","89.42.218.98","205275","RO" "2020-10-19 23:27:04","http://fonduri-service-auto.ro/ebitda-multiple/parts_service/MvdtVq21gTl/","offline","malware_download","doc|emotet|epoch1|Heodo","fonduri-service-auto.ro","89.39.83.73","205275","RO" "2020-10-06 18:10:07","http://traducerejuridica.ro/tenlxhlzpagc/625986.png","offline","malware_download","loader|qbot|QuakBot","traducerejuridica.ro","86.106.30.71","205275","RO" "2020-08-14 19:50:16","http://twist.ro/open-cLdv2ZSwq-1slCEllx3z/private_zone/guarded_forum/52933214336_VDGDD1twXiaZgJF/","offline","malware_download","doc|emotet|epoch1|heodo","twist.ro","89.33.44.153","205275","RO" "2020-08-11 06:33:30","http://laboratoruldeganduri.ro/wp-admin/dF238/","offline","malware_download","emotet|epoch1|exe|Heodo","laboratoruldeganduri.ro","89.33.25.24","205275","RO" "2020-08-06 18:56:07","http://neptunservice.ro/wp-admin/closed_sector/close_forum/z78sbzh_sts20s69z9/","offline","malware_download","doc|emotet|epoch1","neptunservice.ro","89.42.218.245","205275","RO" "2020-08-06 17:53:35","http://www.neptunservice.ro/wp-admin/closed_sector/close_forum/z78sbzh_sts20s69z9/","offline","malware_download","doc|emotet|epoch1|heodo","www.neptunservice.ro","89.42.218.245","205275","RO" "2020-08-06 09:31:17","http://twist.ro/wwvv2/lvgutb0upn_qzrlughm37h8_sector/D1zOEk_EBbDGlvNTNug_gopozmilk4_crtjzebig4n3i/15215355_EShrPhOLx/","offline","malware_download","doc|emotet|epoch1|heodo","twist.ro","89.33.44.153","205275","RO" "2020-08-03 18:31:41","http://www.echipamenteacvarii.ro/wp-/bin_iwlTOFWjHT250.bin","offline","malware_download","encrypted|GuLoader","www.echipamenteacvarii.ro","185.162.64.21","205275","RO" "2020-07-30 23:27:07","http://cerebralart.ro/blog/closed_module/tt1z_PhYsBFYP48XC3L_cloud/40386520689229_eE6kNn6IZvm4/","offline","malware_download","doc|emotet|epoch1|Heodo","cerebralart.ro","86.106.30.181","205275","RO" "2020-07-30 17:23:05","http://horado.ro/wwvvv/vzuWutd/","offline","malware_download","doc|emotet|epoch3|Heodo","horado.ro","86.106.30.71","205275","RO" "2020-07-28 14:34:35","http://coruia.ro/ww4w/DwhOxZH/","offline","malware_download","doc|emotet|epoch3|Heodo","coruia.ro","86.106.30.71","205275","RO" "2020-07-28 13:14:03","http://customgrup.ro/sites/aoiu9571/","offline","malware_download","doc|emotet|epoch2|heodo","customgrup.ro","188.241.142.247","205275","RO" "2020-07-27 18:02:34","http://casabatraneasca.ro/fonts/070772659-l2kZ1JV-array/test-warehouse/5823966353-F1t4Z8hk6Q9d/","offline","malware_download","doc|emotet|epoch1|heodo","casabatraneasca.ro","89.42.219.55","205275","RO" "2020-06-17 05:10:24","http://www.iarpp.ro/wp-image/J/ben.bin","offline","malware_download","encrypted|GuLoader","www.iarpp.ro","89.47.53.13","205275","RO" "2020-06-15 13:19:14","http://pesteravadulcrisului.ro/hipxvldgzb/C8/zl/VMAgJfwh.zip","offline","malware_download","Qakbot|Quakbot|zip","pesteravadulcrisului.ro","89.42.223.46","205275","RO" "2020-06-15 13:14:04","http://pesteravadulcrisului.ro/hipxvldgzb/OI/hP/MToUXwpc.zip","offline","malware_download","Qakbot|Quakbot|zip","pesteravadulcrisului.ro","89.42.223.46","205275","RO" "2020-06-05 19:26:16","http://iarpp.ro/wp-image/build_RKgxEgf110.bin","offline","malware_download","encrypted|GuLoader","iarpp.ro","89.47.53.13","205275","RO" "2020-03-06 08:54:55","http://ventilator-aer.ro/wp-content/uploads/2020/02/0303/ginndoe.jp","offline","malware_download","","ventilator-aer.ro","89.42.223.153","205275","RO" "2020-01-25 00:44:05","http://backupcom.e-twow.uk/wp-content/public/","offline","malware_download","doc|emotet|epoch2|heodo","backupcom.e-twow.uk","93.115.53.70","205275","RO" "2020-01-24 10:17:35","http://etwowcharge.ro/wp-content/pjp9zkhw-7v1t6-4230/","offline","malware_download","doc|emotet|epoch3|heodo","etwowcharge.ro","93.115.53.70","205275","RO" "2020-01-24 10:06:34","http://etwowofficiel.fr/wp-content/hIAqM/","offline","malware_download","doc|emotet|epoch3|Heodo","etwowofficiel.fr","93.115.53.70","205275","RO" "2020-01-24 10:01:05","http://etwowsharing.com/wp-content/browse/9w4ghed81kw/","offline","malware_download","doc|emotet|epoch2|heodo","etwowsharing.com","93.115.53.70","205275","RO" "2020-01-24 09:57:09","http://milanacademy.ro/wp-content/docs/1jiwo45/","offline","malware_download","doc|emotet|epoch2|heodo","milanacademy.ro","93.115.53.70","205275","RO" "2020-01-24 08:06:08","http://basel.e-twow.ro/gps-backup/swift/e137n-539-9505-n7ds-3qw6u4j6/","offline","malware_download","doc|emotet|epoch2|heodo","basel.e-twow.ro","93.115.53.70","205275","RO" "2020-01-24 07:55:03","http://e-twow.be/verde/paclm/0tvf3rcbf/","offline","malware_download","doc|emotet|epoch2|heodo","e-twow.be","93.115.53.70","205275","RO" "2020-01-21 18:10:17","http://e-twow.es/wp-content/dJilYkPOF/","offline","malware_download","emotet|epoch3|exe|Heodo","e-twow.es","93.115.53.70","205275","RO" "2020-01-21 15:30:06","http://backupcom.e-twow.uk/wp-content/docs/nljx10-963-48486-rpqi-p2479cdxj5/","offline","malware_download","doc|emotet|epoch2|heodo","backupcom.e-twow.uk","93.115.53.70","205275","RO" "2020-01-21 14:46:15","http://e-twow.be/verde/in6k/","offline","malware_download","emotet|epoch2|exe|Heodo","e-twow.be","93.115.53.70","205275","RO" "2020-01-21 12:02:13","http://basel.e-twow.ro/gps-backup/public/jg05wqik/y6-631940557-82036027-2g1lt9-imm2dcjbqi3/","offline","malware_download","doc|emotet|epoch2|heodo","basel.e-twow.ro","93.115.53.70","205275","RO" "2020-01-10 06:18:04","http://uleiuri-motor.ro/FedEx.zip","offline","malware_download","nanocore","uleiuri-motor.ro","89.42.223.46","205275","RO" "2019-05-20 12:11:16","http://azbeton.ro/wp-content/Document/vtjHcnFgqglXQqzqEkohRLJd/","offline","malware_download","doc|emotet|epoch2|Heodo","azbeton.ro","89.42.218.26","205275","RO" "2019-03-19 15:27:17","http://rowebstyle.com/a/out-750521680.ps1","offline","malware_download","","rowebstyle.com","86.106.30.181","205275","RO" "2018-12-14 20:00:05","http://akili.ro/EN_US/Messages/12_18/","offline","malware_download","doc|Heodo","akili.ro","89.47.53.12","205275","RO" "2018-12-12 15:38:04","http://akili.ro/invoices/957440775812577404/LLC/US_us/Document-needed/","offline","malware_download","emotet|epoch2|Heodo","akili.ro","89.47.53.12","205275","RO" "2018-12-12 12:24:02","http://artmedik.ro/IRS.GOV/Internal-Revenue-Service-Online-Center/Tax-Account-Transcript/","offline","malware_download","doc","artmedik.ro","89.33.44.83","205275","RO" "2018-12-10 23:51:14","http://akili.ro/masrer/media/INFO/US_us/Sales-Invoice/","offline","malware_download","doc|emotet|epoch2|Heodo","akili.ro","89.47.53.12","205275","RO" "2018-12-10 14:36:03","http://akili.ro/masrer/media/INFO/US_us/Sales-Invoice","offline","malware_download","emotet|epoch2","akili.ro","89.47.53.12","205275","RO" "2018-12-07 19:01:28","http://akili.ro/IRS/IRS-Press-treasury-gov/Verification-of-Non-filing-Letter/December-06-2018","offline","malware_download","emotet|epoch2","akili.ro","89.47.53.12","205275","RO" "2018-11-28 12:56:03","http://www.covoruloltenesc.ro/wp-content/themes/retro/classes/Envato/calc.exe?93","offline","malware_download","retefe","www.covoruloltenesc.ro","89.33.44.243","205275","RO" "2018-11-26 15:43:06","http://amenajari-gradini-iazuri.ro/7668367HGSWCJ/ACH/US/","offline","malware_download","doc|emotet|epoch2|Heodo","amenajari-gradini-iazuri.ro","89.42.221.132","205275","RO" "2018-11-26 09:58:14","http://amenajari-gradini-iazuri.ro/7668367HGSWCJ/ACH/US","offline","malware_download","doc|emotet|Heodo","amenajari-gradini-iazuri.ro","89.42.221.132","205275","RO" "2018-10-26 01:40:03","http://proinstalco.ro/NERT_23.10.2018.jar","offline","malware_download","zip","proinstalco.ro","89.42.218.9","205275","RO" "2018-10-25 14:05:03","http://proinstalco.ro/Lists_of_Agents.jar","offline","malware_download","","proinstalco.ro","89.42.218.9","205275","RO" "2018-10-08 15:49:33","http://termodinamic.ro/FILE/Auditor-of-State-Notification-of-EFT-Deposit","offline","malware_download","doc|emotet","termodinamic.ro","89.42.219.173","205275","RO" "2018-10-02 01:28:03","http://colorshotevents.com/03-04429641519786984206660352.zip","offline","malware_download","zip","colorshotevents.com","89.42.219.200","205275","RO" "2018-09-24 13:49:49","http://termodinamic.ro/Rechnungszahlung/Rechnungsanschrift-korrigiert","offline","malware_download","doc|emotet","termodinamic.ro","89.42.219.173","205275","RO" "2018-09-17 08:56:07","https://www.optimbirou.ro/crm/custom/FR112014754114.zip","offline","malware_download","FRA|TinyNuke|zipped-MZ","www.optimbirou.ro","89.42.216.133","205275","RO" "2018-08-02 09:53:04","http://iulius.eu/files/Rechnungs/DETAILS/RechnungScan-YWQ-35-40351","offline","malware_download","DOC|Emotet|Heodo","iulius.eu","89.42.219.210","205275","RO" "2018-08-01 16:11:59","http://iulius.eu/files/Rechnungs/DETAILS/RechnungScan-YWQ-35-40351/","offline","malware_download","doc|emotet|epoch2|Heodo","iulius.eu","89.42.219.210","205275","RO" "2018-07-31 03:34:31","http://mobilaok.ro/DHL-number/En_us/","offline","malware_download","doc|emotet|epoch2|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-30 19:12:42","http://iulius.eu/DHL-Tracking/EN_en/","offline","malware_download","doc|emotet|epoch2|Heodo","iulius.eu","89.42.219.210","205275","RO" "2018-07-27 04:07:39","http://mobilaok.ro/Tracking/En/","offline","malware_download","doc|emotet|epoch2|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-25 03:59:42","http://mobilaok.ro/files/US/Past-Due-Invoices/Account-53659/","offline","malware_download","doc|emotet|epoch2|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-24 08:58:07","http://mobilaok.ro/files/US/Past-Due-Invoices/Account-53659","offline","malware_download","doc|emotet|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-18 22:50:48","http://mobilaok.ro/Facturas/","offline","malware_download","doc|emotet|epoch1|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-17 09:14:19","http://mobilaok.ro/doc/En/Jul2018/Order-36249338869","offline","malware_download","doc|emotet|heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-07-17 00:28:44","http://mobilaok.ro/doc/En/Jul2018/Order-36249338869/","offline","malware_download","doc|emotet|epoch2|Heodo","mobilaok.ro","86.107.169.160","205275","RO" "2018-06-18 18:31:32","http://termodinamic.ro/FILE/Auditor-of-State-Notification-of-EFT-Deposit/","offline","malware_download","emotet|Heodo","termodinamic.ro","89.42.219.173","205275","RO" "2018-06-15 17:22:43","http://bostik.com.ro/6koI2ip/","offline","malware_download","Heodo","bostik.com.ro","89.42.219.59","205275","RO" "2018-06-12 18:13:05","http://www.bostik.com.ro/6koI2ip/","offline","malware_download","emotet|epoch1|Heodo|payload","www.bostik.com.ro","89.42.219.59","205275","RO" "2018-06-12 14:04:03","http://termodinamic.ro/ACCOUNT/Payment/","offline","malware_download","doc|emotet|Formbook|Heodo","termodinamic.ro","89.42.219.173","205275","RO" "2018-06-06 15:59:25","http://termodinamic.ro/Rechnungszahlung/Rechnungsanschrift-korrigiert/","offline","malware_download","doc|emotet|Heodo","termodinamic.ro","89.42.219.173","205275","RO" "2018-06-04 12:01:04","http://thermo-logos.ro/ups.com/WebTracking/CY-8499307413835/","offline","malware_download","","thermo-logos.ro","89.42.219.59","205275","RO" "2018-05-29 20:27:14","http://thermo-logos.ro/Facturation/","offline","malware_download","doc|emotet|Heodo","thermo-logos.ro","89.42.219.59","205275","RO" "2018-05-10 19:39:48","http://thermo-logos.ro/PbsTqmcd/","offline","malware_download","doc|emotet","thermo-logos.ro","89.42.219.59","205275","RO" "2018-04-27 15:24:06","http://akili.ro/P82jj0pL7yKr/","offline","malware_download","doc|emotet|Heodo","akili.ro","89.47.53.12","205275","RO" "2018-04-26 17:35:30","http://arendatelesti.ro/Qkq1aslpZAa8Hlt/","offline","malware_download","doc|emotet|Heodo","arendatelesti.ro","89.47.53.11","205275","RO" "2018-04-26 11:35:26","http://scari-maurer.ro/XRYkB7LG0OBv5/","offline","malware_download","doc|emotet|Heodo","scari-maurer.ro","89.47.53.10","205275","RO" "2018-04-26 11:10:17","http://roman-tica.ro/vCxlf/","offline","malware_download","emotet|payload","roman-tica.ro","89.47.53.10","205275","RO" "2018-04-12 06:11:29","http://electrice1.ro/image/flags/mi1k.exe","offline","malware_download","exe|Loki","electrice1.ro","89.42.219.211","205275","RO" "2018-04-10 09:07:35","http://electrice1.ro/image/flags/nn1.exe","offline","malware_download","lokibot","electrice1.ro","89.42.219.211","205275","RO" "2018-04-01 07:21:59","http://testebac.ro/ohhi.exe","offline","malware_download","gandcrab","testebac.ro","188.215.2.204","205275","RO" "2018-03-29 15:00:06","http://smart-deco.ro/RECHNUNG-51627/6IP2R41UK3AJ/","offline","malware_download","doc|emotet|heodo","smart-deco.ro","89.42.223.46","205275","RO" "2018-03-28 13:48:25","http://www.autorizatiifirme.ro/INVOICE/VCP-200058340/","offline","malware_download","doc|emotet|heodo","www.autorizatiifirme.ro","89.42.220.100","205275","RO" # of entries: 211