############################################################################## # URLhaus ASN CSV Feed # # Generated on 2025-11-19 19:40:13 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS49981 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2025-09-05 06:12:12","http://80.79.6.185/PDF%201.zip","offline","malware_download","","80.79.6.185","80.79.6.185","49981","NL" "2025-09-05 06:12:10","http://80.79.6.185/64B.exe","offline","malware_download","RemcosRAT","80.79.6.185","80.79.6.185","49981","NL" "2025-09-05 06:12:10","http://80.79.6.185/remcos_a.exe","offline","malware_download","RemcosRAT","80.79.6.185","80.79.6.185","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/FinancePlugin1.xll","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/hello.txt%20-%20Shortcut.lnk","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/Raul.lnk","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/Raul.zip","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/Vtsu.docx","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2025-06-04 22:46:03","http://185.132.176.240/Vtsu.zip","offline","malware_download","opendir|WsgiDAV","185.132.176.240","185.132.176.240","49981","NL" "2024-12-13 06:31:39","http://download.emailorganizer.com/download/NEOFreeSetup.exe","offline","malware_download","RedlineStealer","download.emailorganizer.com","190.2.142.115","49981","NL" "2024-12-13 06:30:42","http://download.emailorganizer.com/download/TrackYourSentOLSetup.exe","offline","malware_download","RedlineStealer","download.emailorganizer.com","190.2.142.115","49981","NL" "2024-12-11 12:28:18","http://download.emailorganizer.com/download/neofindsetup.exe","offline","malware_download","RedlineStealer","download.emailorganizer.com","190.2.142.115","49981","NL" "2024-09-24 15:14:13","http://soundfrost.org/update/396/Descargar%20Musica%20Gratis-updater.exe","offline","malware_download","soundfrost|trojan","soundfrost.org","185.132.132.47","49981","NL" "2024-05-12 11:35:08","https://bluenotchfashion.com/9528d56c3943b8891cec389946d48cdb.exe","offline","malware_download","dropped-by-PrivateLoader|RiseProStealer","bluenotchfashion.com","217.23.10.181","49981","NL" "2024-05-12 04:14:14","https://bluenotchfashion.com/eb1b9026.exe","offline","malware_download","dropped-by-PrivateLoader|RiseProStealer","bluenotchfashion.com","217.23.10.181","49981","NL" "2024-05-11 08:22:08","https://bluenotchfashion.com/crypted_87ddcda6.exe","offline","malware_download","dropped-by-PrivateLoader|RiseProStealer","bluenotchfashion.com","217.23.10.181","49981","NL" "2024-04-18 16:55:06","http://93.190.140.76/last_stage","offline","malware_download","exe","93.190.140.76","93.190.140.76","49981","NL" "2024-04-18 15:55:08","http://93.190.140.76/DisabilityCharge.exe","offline","malware_download","Rhadamanthys","93.190.140.76","93.190.140.76","49981","NL" "2024-04-18 15:55:08","http://93.190.140.76/factura","offline","malware_download","exe|Rhadamanthys","93.190.140.76","93.190.140.76","49981","NL" "2023-12-22 12:02:13","https://roseserver.ir/oyfsa/","offline","malware_download","PDF|Pikabot|TA577|TR|zip","roseserver.ir","93.190.137.37","49981","NL" "2023-12-07 10:40:34","https://hbnursery.com/mtip/","offline","malware_download","msi|Pikabot|TA577|TR|zip","hbnursery.com","109.236.93.10","49981","NL" "2023-11-17 19:15:26","http://urmiadesign.ir/ano/","offline","malware_download","PikaBot|TR","urmiadesign.ir","109.236.93.10","49981","NL" "2023-11-17 19:15:18","https://urmiadesign.ir/ano/","offline","malware_download","PikaBot|TR","urmiadesign.ir","109.236.93.10","49981","NL" "2023-10-25 16:30:16","http://smsfunny.ir/sv/","offline","malware_download","Pikabot|TA577|TR","smsfunny.ir","109.236.93.10","49981","NL" "2023-10-25 16:20:14","https://smsfunny.ir/sv/","offline","malware_download","Pikabot|TA577|TR","smsfunny.ir","109.236.93.10","49981","NL" "2023-10-23 15:49:03","http://smsfunny.ir/uo/","offline","malware_download","TA577|TR","smsfunny.ir","109.236.93.10","49981","NL" "2023-10-23 15:46:15","https://smsfunny.ir/uo/","offline","malware_download","TA577|TR","smsfunny.ir","109.236.93.10","49981","NL" "2023-10-23 15:45:41","https://ariamedical.ir/pirn/","offline","malware_download","TA577|TR","ariamedical.ir","109.236.93.10","49981","NL" "2023-10-16 16:24:42","https://pizzajagvar.ir/oo/","offline","malware_download","IcedID|TR","pizzajagvar.ir","93.190.137.37","49981","NL" "2023-05-02 16:57:16","https://icaeta.com/muas/doloresqui.php","offline","malware_download","BB26|geofenced|Qakbot|Qbot|Quakbot|tr|USA|wsf|zip","icaeta.com","212.8.242.106","49981","NL" "2023-04-19 12:50:36","https://variables.com.pk/ie/etet.php","offline","malware_download","921|BB24|geofenced|Qakbot|Qbot|Quakbot|tr|USA|wsf|zip","variables.com.pk","212.8.242.106","49981","NL" "2023-04-10 16:21:28","https://rajatraveltour.com.pk/tuft/tuft.php","offline","malware_download","BB23|geofenced|Qakbot|Qbot|Quakbot|R89|tr|USA|wsf|zip","rajatraveltour.com.pk","109.236.92.46","49981","NL" "2023-02-17 11:58:17","http://topstarpolymer.com.pk/unpack/TgyJZo98Y.dll","offline","malware_download","dll|geofenced|min-headers|Qakbot|Qbot|Quakbot|USA","topstarpolymer.com.pk","185.177.125.110","49981","NL" "2023-02-02 23:14:13","https://miprm.edu.pk/NCI.php","offline","malware_download","BB12|ONE|Qakbot|Qbot|Quakbot|TR|zip","miprm.edu.pk","109.236.92.46","49981","NL" "2023-02-02 23:10:59","https://cantechconnections.com/OSN.php","offline","malware_download","BB12|ONE|Qakbot|Qbot|Quakbot|TR|zip","cantechconnections.com","109.236.92.46","49981","NL" "2022-12-19 16:36:49","https://pdkala.com/et/index.php","offline","malware_download","BB11|IMG|ISO|Qakbot|Qbot|Quakbot|TR|TR23|zip","pdkala.com","93.190.143.231","49981","NL" "2022-12-19 16:30:49","https://imco.pk/itn/index.php","offline","malware_download","BB11|IMG|ISO|Qakbot|Qbot|Quakbot|TR|TR23|zip","imco.pk","212.8.242.106","49981","NL" "2022-12-14 16:09:25","https://loxtop69.ir/lie/index.php","offline","malware_download","BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","loxtop69.ir","190.2.146.141","49981","NL" "2022-12-14 15:59:47","https://atillaweb.ir/oalo/index.php","offline","malware_download","BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","atillaweb.ir","190.2.146.141","49981","NL" "2022-12-13 21:45:52","https://psc.edu.pk/de/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","psc.edu.pk","109.236.92.46","49981","NL" "2022-12-13 20:30:10","https://loxtop69.ir/mg/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","loxtop69.ir","190.2.146.141","49981","NL" "2022-12-13 20:18:28","https://cargowings.com.pk/eitd/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","cargowings.com.pk","109.236.92.46","49981","NL" "2022-12-13 20:16:03","https://aqdas.com.pk/utet/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","aqdas.com.pk","109.236.92.46","49981","NL" "2022-12-05 18:02:21","https://anderzafscheid.nl/idu/index.php?QBOT.zip","offline","malware_download","BB09|N54|qakbot|qbot|quakbot|TR|VHD|zip","anderzafscheid.nl","212.8.248.138","49981","NL" "2022-10-13 15:54:19","https://nidhis.net/cocf/offerHall","offline","malware_download","BB01|BNO87|iso|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-13 15:53:51","https://nidhis.net/cocf/uiimdcusts","offline","malware_download","BB01|BNO87|iso|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-13 15:53:50","https://nidhis.net/cocf/aimluatduuqni","offline","malware_download","BB01|BNO87|iso|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-13 15:53:13","https://nidhis.net/cocf/ospibsiutermet","offline","malware_download","BB01|BNO87|iso|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-13 15:52:26","https://nidhis.net/cocf/qiteaursioan","offline","malware_download","BB01|BNO87|iso|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:39:39","https://nidhis.net/ifu/offerLynn","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:39:12","https://nidhis.net/ifu/mmpveiaultaontg","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:39:06","https://nidhis.net/ifu/offerSmoot","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:39:03","https://nidhis.net/ifu/etmue","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:38:52","https://nidhis.net/ifu/ucma","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-10-11 22:38:18","https://nidhis.net/ifu/offerShiakallis","offline","malware_download","BB|iso|L875|qakbot|qbot|quakbot|TR|zip","nidhis.net","62.112.8.115","49981","NL" "2022-09-22 21:23:18","https://sarv90.ir/cn/trsucks","offline","malware_download","bb|encrypted|iso|qakbot|qbot|quakbot|tr|zip","sarv90.ir","190.2.146.141","49981","NL" "2022-09-22 21:22:37","https://lavincode.ir/mii/trsucks","offline","malware_download","bb|encrypted|iso|qakbot|qbot|quakbot|tr|zip","lavincode.ir","190.2.146.141","49981","NL" "2022-08-31 05:39:19","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/nss3.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:13","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/mozglue.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:13","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/sqlite3.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:10","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/freebl3.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:10","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/msvcp140.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:10","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/softokn3.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-08-31 05:39:09","http://91.234.254.126/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/vcruntime140.dll","offline","malware_download","dll|RecordBreaker","91.234.254.126","91.234.254.126","49981","NL" "2022-06-06 16:11:15","http://assaref.ma/old_assaref/A2B3P/","offline","malware_download","emotet|epoch5|exe|heodo","assaref.ma","109.236.83.25","49981","NL" "2022-05-15 18:01:23","https://myprintscreen.com/soft/myp0912.exe","offline","malware_download","","myprintscreen.com","185.132.132.47","49981","NL" "2022-05-05 15:36:04","http://91.234.254.233/%2044686.7322065972.dat","offline","malware_download","dll|obama182|Qakbot|qbot|Quakbot","91.234.254.233","91.234.254.233","49981","NL" "2022-04-06 17:08:04","http://91.234.254.131/7790983516.dat","offline","malware_download","dll|Qakbot|qbot|Quakbot","91.234.254.131","91.234.254.131","49981","NL" "2022-02-28 15:33:07","https://greendoors.pk/etc/R7/zI/uyFgTnMh.zip","offline","malware_download","Qakbot|qbot|Quakbot","greendoors.pk","45.14.135.55","49981","NL" "2022-01-19 18:48:04","http://dbspakistan.com/preview.php","offline","malware_download","bazaloader|bazarloader","dbspakistan.com","89.38.98.88","49981","NL" "2021-12-03 23:59:05","http://piratenhits.fm/luna1.exe","offline","malware_download","exe|RedLineStealer","piratenhits.fm","89.39.106.69","49981","NL" "2021-07-13 18:22:03","http://91.234.254.152/images/moonmars.png","offline","malware_download","dll|rob107|TrickBot","91.234.254.152","91.234.254.152","49981","NL" "2021-07-06 08:37:04","http://91.124.209.148:32920/Mozi.m","offline","malware_download","elf|Mozi","91.124.209.148","91.124.209.148","49981","DE" "2021-05-14 12:38:37","https://politecnicosuperior.com.co/UH8AE0/Emma.Garcia-67.zip","offline","malware_download","b-TDS|html|Qakbot|Qbot|SilentBuilder|TR|zip","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 18:05:18","https://politecnicosuperior.com.co/UH8AE0/SophiaWilliams-32.zip","offline","malware_download","b-TDS|html|Qakbot|Qbot|SilentBuilder|TR|zip","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:32:06","http://politecnicosuperior.com.co/UH8AE0/rfloyd-49.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:31:27","http://politecnicosuperior.com.co/UH8AE0/lisa_anderson-21.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:31:23","http://politecnicosuperior.com.co/UH8AE0/ernestine_collins-11.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:31:22","http://politecnicosuperior.com.co/UH8AE0/headquarters-69.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:31:21","http://politecnicosuperior.com.co/UH8AE0/irene_gutierrez-15.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:31:10","http://politecnicosuperior.com.co/UH8AE0/mwildy-64.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:30:13","http://politecnicosuperior.com.co/UH8AE0/nvoss-54.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:30:09","http://politecnicosuperior.com.co/UH8AE0/lkeel-45.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:30:05","http://politecnicosuperior.com.co/UH8AE0/dcassady-48.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:25","http://politecnicosuperior.com.co/UH8AE0/jhager-51.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:23","http://politecnicosuperior.com.co/UH8AE0/doug_harber-89.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:21","http://politecnicosuperior.com.co/UH8AE0/jimmyc-17.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:21","http://politecnicosuperior.com.co/UH8AE0/mpierce-53.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:20","http://politecnicosuperior.com.co/UH8AE0/cynthia_long-90.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:20","http://politecnicosuperior.com.co/UH8AE0/ddawson-66.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:15","http://politecnicosuperior.com.co/UH8AE0/fellis-70.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:03","http://politecnicosuperior.com.co/UH8AE0/aitea_diaz-74.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:03","http://politecnicosuperior.com.co/UH8AE0/cecile_richards-62.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 16:29:03","http://politecnicosuperior.com.co/UH8AE0/rreyes-39.zip","offline","malware_download","qbot","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-13 13:40:37","https://politecnicosuperior.com.co/UH8AE0/Emma.Smith-0.zip","offline","malware_download","b-TDS|html|Qakbot|Qbot|SilentBuilder|TR|zip","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-05-12 19:40:19","https://politecnicosuperior.com.co/UH8AE0/WilliamGarcia-5.zip","offline","malware_download","b-TDS|html|Qakbot|Qbot|SilentBuilder|TR|zip","politecnicosuperior.com.co","185.132.133.147","49981","NL" "2021-01-16 05:50:04","http://212.8.242.104/cornflexC.gif","offline","malware_download","exe","212.8.242.104","212.8.242.104","49981","NL" "2021-01-16 03:11:03","http://212.8.242.104/cornflexE.gif","offline","malware_download","exe|MyloBot","212.8.242.104","212.8.242.104","49981","NL" "2020-12-07 19:48:03","http://212.8.242.104/warCS.gif","offline","malware_download","exe","212.8.242.104","212.8.242.104","49981","NL" "2020-12-07 19:43:03","http://212.8.242.104/warEXT.gif","offline","malware_download","exe|MyloBot","212.8.242.104","212.8.242.104","49981","NL" "2020-11-20 08:29:03","http://212.8.242.104/corCS.gif","offline","malware_download","exe","212.8.242.104","212.8.242.104","49981","NL" "2020-11-20 08:29:03","http://212.8.242.104/corEXT.gif","offline","malware_download","exe|MyloBot","212.8.242.104","212.8.242.104","49981","NL" "2020-11-03 15:31:05","http://moon.leasevps.com/bins/cfcucoff.arm6","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-31 20:12:03","http://moon.leasevps.com/bins/cfcucoff.mpsl","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-27 12:12:03","http://moon.leasevps.com/bins/cfcucoff.mips","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-24 10:34:03","http://moon.leasevps.com/uknoit.sh","offline","malware_download","shellscript","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-23 09:58:03","http://moon.leasevps.com/bins/cfcucoff.arm5","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-22 10:26:03","http://moon.leasevps.com/bins/cfcucoff.arm","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 20:24:03","http://moon.leasevps.com/trustinit.sh","offline","malware_download","shellscript","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:04","http://moon.leasevps.com/bins/cfcucoff.arm7","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:04","http://moon.leasevps.com/bins/cfcucoff.spc","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:04","http://moon.leasevps.com/bins/cfcucoff.x86","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:03","http://moon.leasevps.com/bins/cfcucoff.m68k","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:03","http://moon.leasevps.com/bins/cfcucoff.ppc","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-10-21 09:47:03","http://moon.leasevps.com/bins/cfcucoff.sh4","offline","malware_download","ddos|elf|mirai","moon.leasevps.com","185.172.108.39","49981","AU" "2020-06-12 18:06:09","http://geoefarmogi.gr/iurwsjgzraac/xiBrawuw8B.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 18:04:43","http://geoefarmogi.gr/dylxn/5/jVCCZA204.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 17:02:01","http://geoefarmogi.gr/dylxn/J/AB1u3N5Xj.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 16:34:49","http://geoefarmogi.gr/iurwsjgzraac/Iq/UU/HhKZY5QO.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 15:44:44","http://geoefarmogi.gr/iurwsjgzraac/H/dAQjR366m.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 15:36:17","http://geoefarmogi.gr/iurwsjgzraac/wIZtK4Gjuc.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 15:33:34","http://geoefarmogi.gr/dylxn/Y/uFJNWNOR9.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 14:59:03","http://geoefarmogi.gr/iurwsjgzraac/c/l51HPK5EF.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 14:46:04","http://geoefarmogi.gr/dylxn/Gl/0U/PS6gjBP5.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-12 14:31:43","http://geoefarmogi.gr/dylxn/g/cnWyzpA46.zip","offline","malware_download","Qakbot|Quakbot|zip","geoefarmogi.gr","91.229.23.12","49981","NL" "2020-06-05 08:07:39","http://photure.nl/dvirpr/9828/KTEQ_9828_03062020.zip","offline","malware_download","Qakbot|Quakbot|zip","photure.nl","195.128.184.151","49981","NL" "2020-06-05 08:03:22","http://photure.nl/dvirpr/KTEQ_62746673_03062020.zip","offline","malware_download","Qakbot|Quakbot|zip","photure.nl","195.128.184.151","49981","NL" "2020-06-04 17:40:58","http://photure.nl/dvirpr/KTEQ_6245_03062020.zip","offline","malware_download","Qakbot|Quakbot|zip","photure.nl","195.128.184.151","49981","NL" "2020-06-04 15:52:15","http://photure.nl/dvirpr/KTEQ_3914161_03062020.zip","offline","malware_download","Qakbot|Quakbot|zip","photure.nl","195.128.184.151","49981","NL" "2020-01-03 03:24:04","http://212.8.242.104/opext.gif","offline","malware_download","exe","212.8.242.104","212.8.242.104","49981","NL" "2019-05-22 17:35:03","http://wellyoumust.ru/wp-admin/cNhHhYXeJmFRpNzCUwAef/","offline","malware_download","Emotet|Heodo","wellyoumust.ru","91.226.31.86","49981","RU" "2019-04-08 23:14:07","http://campustunisie.info/1770243137/JHsLn-hATo8mOEmcgcR0q_jbJWQOCz-6Nd/","offline","malware_download","doc|emotet|epoch1|Heodo","campustunisie.info","190.2.145.38","49981","NL" "2019-04-02 11:14:14","http://campustunisie.info/96132500/secure.myaccount.send.net/","offline","malware_download","Emotet|Heodo","campustunisie.info","190.2.145.38","49981","NL" "2019-03-20 05:20:02","http://www.nvvsvc.com/Error/Isass.exe","offline","malware_download","exe","www.nvvsvc.com","178.132.4.72","49981","NL" "2019-03-20 05:17:03","http://www.nvvsvc.com/check/svchost.exe","offline","malware_download","exe","www.nvvsvc.com","178.132.4.72","49981","NL" "2019-03-20 05:07:02","http://www.nvvsvc.com/error/svchost.exe","offline","malware_download","exe","www.nvvsvc.com","178.132.4.72","49981","NL" "2019-03-20 05:01:04","http://www.nvvsvc.com/check/isass.exe","offline","malware_download","exe","www.nvvsvc.com","178.132.4.72","49981","NL" "2019-03-20 03:02:04","http://www.nvvsvc.com/files/Isass.exe","offline","malware_download","exe","www.nvvsvc.com","178.132.4.72","49981","NL" "2019-03-19 08:00:07","http://217.23.14.81/f4.exe","offline","malware_download","exe|RAT|RemcosRAT","217.23.14.81","217.23.14.81","49981","NL" "2019-03-15 10:58:05","http://hotcode.gr/wp-admin/5wti-172yr-pdgwdcvj/","offline","malware_download","doc|emotet|epoch2|Heodo","hotcode.gr","190.2.131.72","49981","NL" "2019-03-12 16:35:06","http://campustunisie.info/cgi-bin/zy3r-412rju-zhifdmrdt/","offline","malware_download","Emotet|Heodo","campustunisie.info","190.2.145.38","49981","NL" "2019-03-06 08:05:45","http://riksjasoft.nl/wp-content/themes/vantage/icons/GKPIK.zip","offline","malware_download","js|Ransomware|RUS|Troldesh|zip","riksjasoft.nl","185.28.36.62","49981","NL" "2019-02-06 18:17:46","http://178.132.0.66/unk10","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:46","http://178.132.0.66/unk9","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:44","http://178.132.0.66/unk8","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:41","http://178.132.0.66/unk7","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:37","http://178.132.0.66/unk6","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:34","http://178.132.0.66/unk5","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:32","http://178.132.0.66/unk4","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:30","http://178.132.0.66/unk3","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:28","http://178.132.0.66/unk2","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:24","http://178.132.0.66/unk1","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-02-06 18:17:22","http://178.132.0.66/unk","offline","malware_download","elf|gafgyt","178.132.0.66","178.132.0.66","49981","NL" "2019-01-22 20:03:41","http://tracker.sematic.ru/driY-TY_lRmn-jU/ACH/PaymentInfo/US/Invoice-for-you/","offline","malware_download","doc|emotet|epoch2|Heodo","tracker.sematic.ru","91.226.31.82","49981","RU" "2018-12-29 13:23:02","http://217.23.7.125/161zkjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:22:05","http://217.23.7.125/74XKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:22:05","http://217.23.7.125/85tKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:22:04","http://217.23.7.125/74jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:22:03","http://217.23.7.125/156XKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:22:03","http://217.23.7.125/161jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:21:04","http://217.23.7.125/226tKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:21:03","http://217.23.7.125/17jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:21:02","http://217.23.7.125/161xkjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:19:05","http://217.23.7.125/85jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:18:04","http://217.23.7.125/123tKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:18:03","http://217.23.7.125/123XKjddnnsa.exe","offline","malware_download","Emotet|exe|Heodo","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:18:02","http://217.23.7.125/161tKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:17:02","http://217.23.7.125/17XKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:16:08","http://217.23.7.125/17tkjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:16:07","http://217.23.7.125/38tKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 13:16:06","http://217.23.7.125/85XKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:42","http://217.23.7.125/226zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:42","http://217.23.7.125/43aKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:41","http://217.23.7.125/123zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:40","http://217.23.7.125/17zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:40","http://217.23.7.125/74zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:39","http://217.23.7.125/85zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:38","http://217.23.7.125/123jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:38","http://217.23.7.125/156zKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:37","http://217.23.7.125/226jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-29 12:25:36","http://217.23.7.125/38jKjddnnsa.exe","offline","malware_download","exe","217.23.7.125","217.23.7.125","49981","NL" "2018-12-20 19:45:03","http://fbs33.ru/Amazon/Clients_Messages/2018-12/","offline","malware_download","emotet|epoch1|Heodo","fbs33.ru","91.226.31.86","49981","RU" "2018-11-01 11:44:06","http://89.38.98.97/viviKjddnnsa.exe","offline","malware_download","exe|Neutrino","89.38.98.97","89.38.98.97","49981","NL" "2018-10-27 09:22:08","http://89.38.98.97/17Kjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-10-27 09:22:07","http://89.38.98.97/123Kjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:14:02","http://89.38.98.97/226Kjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:13:16","http://89.38.98.97/85tKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:13:10","http://89.38.98.97/226jKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:13:02","http://89.38.98.97/85aKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:12:08","http://89.38.98.97/85zKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:12:06","http://89.38.98.97/123jKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:12:02","http://89.38.98.97/156tKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:00:07","http://89.38.98.97/123tKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 16:00:02","http://89.38.98.97/74jKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:58:04","http://89.38.98.97/226zKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:58:03","http://89.38.98.97/156aKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:58:01","http://89.38.98.97/17jKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:46:02","http://89.38.98.97/156zKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:45:02","http://89.38.98.97/161jKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:44:02","http://89.38.98.97/161tKjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:43:05","http://89.38.98.97/43akjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:43:04","http://89.38.98.97/161zkjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-24 15:43:02","http://89.38.98.97/161Kjddnnsa.exe","offline","malware_download","exe","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:13","http://89.38.98.97/161bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:11","http://89.38.98.97/38bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:10","http://89.38.98.97/226bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:09","http://89.38.98.97/123bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:08","http://89.38.98.97/74bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:07","http://89.38.98.97/17bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:06","http://89.38.98.97/85bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:05","http://89.38.98.97/156bKjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-09-05 14:14:04","http://89.38.98.97/43Kjddnnsa.exe","offline","malware_download","Lethic","89.38.98.97","89.38.98.97","49981","NL" "2018-06-12 11:54:23","http://217.23.6.179/ntpd","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:54:23","http://217.23.6.179/sshd","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:54:22","http://217.23.6.179/bash","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:54:22","http://217.23.6.179/openssh","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:16","http://217.23.6.179/tftp","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:15","http://217.23.6.179/cron","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:15","http://217.23.6.179/ftp","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:15","http://217.23.6.179/pftp","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:15","http://217.23.6.179/wget","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:14","http://217.23.6.179/apache2","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:14","http://217.23.6.179/sh","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:48:14","http://217.23.6.179/telnetd","offline","malware_download","","217.23.6.179","217.23.6.179","49981","NL" "2018-06-12 11:42:01","http://217.23.4.22/bins/Tenshi.arm4","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:42:01","http://217.23.4.22/bins/Tenshi.arm5","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:42:01","http://217.23.4.22/bins/Tenshi.arm6","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:42:00","http://217.23.4.22/bins/Tenshi.ppc","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:42:00","http://217.23.4.22/bins/Tenshi.sh4","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:42:00","http://217.23.4.22/bins/Tenshi.x86","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:41:59","http://217.23.4.22/bins/Tenshi.arm","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:41:59","http://217.23.4.22/bins/Tenshi.mpsl","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:40:58","http://217.23.4.22/bins/Tenshi.mips","offline","malware_download","","217.23.4.22","217.23.4.22","49981","NL" "2018-06-12 11:40:57","http://190.2.132.111/apache2","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:57","http://190.2.132.111/sh","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:57","http://190.2.132.111/telnetd","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:56","http://190.2.132.111/cron","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:56","http://190.2.132.111/ftp","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:56","http://190.2.132.111/pftp","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:53","http://190.2.132.111/tftp","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:53","http://190.2.132.111/wget","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:40:52","http://190.2.132.111/bash","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:38:50","http://190.2.132.111/ntpd","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:38:50","http://190.2.132.111/openssh","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-12 11:38:50","http://190.2.132.111/sshd","offline","malware_download","","190.2.132.111","190.2.132.111","49981","NL" "2018-06-06 12:35:07","http://bochka-dub.ru/ups.com/WebTracking/LC-48206985019287/","offline","malware_download","doc|emotet|Heodo","bochka-dub.ru","91.226.31.86","49981","RU" "2018-04-12 15:09:06","http://217.23.4.53/viviKjddnnsa.exe","offline","malware_download","exe|Neutrino","217.23.4.53","217.23.4.53","49981","NL" "2018-03-29 14:45:06","http://drivejet.ru/UPS-US/Mar-08-18-07-48-30/","offline","malware_download","doc|emotet|heodo","drivejet.ru","91.226.31.86","49981","RU" # of entries: 248