############################################################################## # URLhaus ASN CSV Feed # # Generated on 2026-03-31 11:57:00 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS39494 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2026-01-01 12:54:00","http://89.111.134.202/","offline","malware_download","censys|ClickFix|ClickFix-cc|html","89.111.134.202","89.111.134.202","39494","RU" "2025-08-17 09:10:23","http://89.111.140.210/hiddenbin/boatnet.arc","offline","malware_download","elf|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 09:10:23","http://89.111.140.210/hiddenbin/boatnet.i468","offline","malware_download","elf|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 09:10:10","http://89.111.140.210/hiddenbin/boatnet.x86_64","offline","malware_download","elf|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 09:10:07","http://89.111.140.210/hiddenbin/boatnet.i686","offline","malware_download","elf|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 07:26:15","http://89.111.140.210/ohshit.sh","offline","malware_download","Mirai|sh|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:54:06","http://89.111.140.210/hiddenbin/boatnet.arm5","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:25","http://89.111.140.210/hiddenbin/boatnet.m68k","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.arm6","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.mips","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.mpsl","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.ppc","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.sh4","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.spc","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 05:52:23","http://89.111.140.210/hiddenbin/boatnet.x86","offline","malware_download","elf|Mirai|ua-wget","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 03:02:13","http://89.111.140.210/hiddenbin/boatnet.arm7","offline","malware_download","32-bit|elf|Mirai|Mozi","89.111.140.210","89.111.140.210","39494","RU" "2025-08-17 03:01:09","http://89.111.140.210/hiddenbin/boatnet.arm","offline","malware_download","32-bit|elf|Mirai|Mozi","89.111.140.210","89.111.140.210","39494","RU" "2021-02-25 09:26:04","http://ledia.shop/dwwzeqw/44252389051620400000.dat","offline","malware_download","Qakbot","ledia.shop","31.177.76.32","39494","RU" "2021-02-24 18:07:04","http://ledia.shop/dwwzeqw/44251751062615700000.dat","offline","malware_download","dll|obama06|qakbot|qbot|quakbot","ledia.shop","31.177.76.32","39494","RU" "2020-10-27 05:30:05","https://summit-event.com/wp-admin/browse/01861/GVAiNMnbQ/","offline","malware_download","doc|emotet|epoch3|Heodo","summit-event.com","31.177.76.32","39494","RU" "2020-10-22 09:06:03","http://eq3.summit-event.com/css/qw6bcsj2kf/","offline","malware_download","doc|Emotet|epoch2|Heodo","eq3.summit-event.com","31.177.76.32","39494","RU" "2020-07-14 06:35:04","http://web.golden-goblin.com/setup.exe","offline","malware_download","geofenced|gozi|isfb|ita|ursnif","web.golden-goblin.com","89.111.133.90","39494","RU" "2020-05-26 15:32:07","http://xn--80aqeb2ah.xn--80adxhks/uvktuyqrqvrd/Aufhebung_76653810_25052020.zip","offline","malware_download","Qakbot|Quakbot|zip","xn--80aqeb2ah.xn--80adxhks","31.177.76.32","39494","RU" "2020-05-26 13:22:33","http://xn--80aqeb2ah.xn--80adxhks/uvktuyqrqvrd/Aufhebung_6480341_25052020.zip","offline","malware_download","Qakbot|Quakbot|zip","xn--80aqeb2ah.xn--80adxhks","31.177.76.32","39494","RU" "2020-05-26 13:06:22","http://xn--80aqeb2ah.xn--80adxhks/uvktuyqrqvrd/9856/Aufhebung_9856_25052020.zip","offline","malware_download","Qakbot|Quakbot|zip","xn--80aqeb2ah.xn--80adxhks","31.177.76.32","39494","RU" "2020-05-26 12:59:47","http://xn--80aqeb2ah.xn--80adxhks/uvktuyqrqvrd/Aufhebung_1092_25052020.zip","offline","malware_download","Qakbot|Quakbot|zip","xn--80aqeb2ah.xn--80adxhks","31.177.76.32","39494","RU" "2020-05-26 12:57:33","http://xn--80aqeb2ah.xn--80adxhks/uvktuyqrqvrd/49879918/Aufhebung_49879918_25052020.zip","offline","malware_download","Qakbot|Quakbot|zip","xn--80aqeb2ah.xn--80adxhks","31.177.76.32","39494","RU" "2019-05-30 16:37:04","http://acffiorentina.ru/assets/1.pdf","offline","malware_download","exe|Troldesh","acffiorentina.ru","31.177.76.32","39494","RU" "2019-05-24 09:24:00","http://zagogulina.com/1c.jpg","offline","malware_download","exe|Troldesh","zagogulina.com","31.177.76.32","39494","RU" "2019-05-24 08:35:18","http://www.zagogulina.com/ural_zakaz.zip","offline","malware_download","js|Ransomware|RUS|Troldesh|zip","www.zagogulina.com","31.177.76.32","39494","RU" "2019-05-24 08:33:51","http://new.zagogulina.com/tmp/ural_zakaz.zip","offline","malware_download","js|Ransomware|RUS|Troldesh|zip","new.zagogulina.com","31.177.76.32","39494","RU" "2019-05-23 19:24:33","http://new.zagogulina.com/includes/sserv.jpg","offline","malware_download","exe","new.zagogulina.com","31.177.76.32","39494","RU" "2019-02-07 18:34:04","http://borislosev.ru/98567/stub_Protected.exe","offline","malware_download","exe|rat|remcos|remcosrat","borislosev.ru","31.177.76.32","39494","RU" "2019-01-30 14:44:48","http://fashionandme.ru/cache/preview/update_2018_01.exe","offline","malware_download","","fashionandme.ru","31.177.76.32","39494","RU" "2018-12-17 12:45:41","http://www.krasnobrodsky.ru/AT_T_Online/7eFxSb_is2z3F25h_ce6fUcO/","offline","malware_download","doc|emotet|heodo","www.krasnobrodsky.ru","31.177.76.32","39494","RU" "2018-12-12 11:37:07","http://artscreenstudio.ru/assets/Telekom/RechnungOnline/112018/","offline","malware_download","emotet|epoch1|Heodo","artscreenstudio.ru","31.177.76.32","39494","RU" "2018-12-07 16:02:06","http://artscreenstudio.ru/IRS.GOV/Internal-Revenue-Service/Tax-Account-Transcript/12062018/","offline","malware_download","doc|emotet|Heodo","artscreenstudio.ru","31.177.76.32","39494","RU" "2018-12-07 13:10:04","http://artscreenstudio.ru/IRS.GOV/Internal-Revenue-Service/Tax-Account-Transcript/12062018","offline","malware_download","emotet|epoch2|Heodo","artscreenstudio.ru","31.177.76.32","39494","RU" "2018-11-09 01:47:16","http://transimperial.ru/671VJSAK/oamo/Business/","offline","malware_download","doc|emotet|epoch2|Heodo","transimperial.ru","89.104.84.163","39494","RU" "2018-11-08 18:41:26","http://www.transimperial.ru/671VJSAK/oamo/Business","offline","malware_download","doc|emotet|Heodo","www.transimperial.ru","89.104.84.163","39494","RU" "2018-11-08 16:39:08","http://www.transimperial.ru/671VJSAK/oamo/Business/","offline","malware_download","doc|Heodo","www.transimperial.ru","89.104.84.163","39494","RU" "2018-11-08 14:36:23","http://transimperial.ru/671VJSAK/oamo/Business","offline","malware_download","doc|emotet|heodo","transimperial.ru","89.104.84.163","39494","RU" "2018-11-07 15:06:04","http://transimperial.ru/605FW/BIZ/US/","offline","malware_download","doc|emotet|heodo","transimperial.ru","89.104.84.163","39494","RU" "2018-11-07 07:52:43","http://transimperial.ru/605FW/BIZ/US","offline","malware_download","doc|emotet|heodo","transimperial.ru","89.104.84.163","39494","RU" "2018-11-06 19:41:11","http://www.transimperial.ru/605FW/BIZ/US/","offline","malware_download","emotet|Heodo|macro|word doc","www.transimperial.ru","89.104.84.163","39494","RU" "2018-08-21 16:34:13","http://ar-vrn.ru/06EB/ACH/Commercial/","offline","malware_download","","ar-vrn.ru","31.177.76.32","39494","RU" "2018-08-21 08:42:03","http://ar-vrn.ru/06EB/ACH/Commercial","offline","malware_download","doc|emotet|Heodo","ar-vrn.ru","31.177.76.32","39494","RU" "2018-08-17 03:33:30","http://ar-vrn.ru/WellsFargo/US/Aug-14-2018/","offline","malware_download","doc|emotet|Heodo","ar-vrn.ru","31.177.76.32","39494","RU" "2018-08-15 02:32:35","http://kassconnect.ru/default/En/INVOICES/Invoice-8825239/","offline","malware_download","doc|emotet|Heodo","kassconnect.ru","31.177.76.32","39494","RU" "2018-08-14 12:38:06","http://kassconnect.ru/default/En/INVOICES/Invoice-8825239","offline","malware_download","doc|emotet|Heodo","kassconnect.ru","31.177.76.32","39494","RU" # of entries: 50