############################################################################## # URLhaus ASN CSV Feed # # Generated on 2024-04-19 02:27:13 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS63023 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2023-12-20 14:57:30","https://fasahatechdutse.com/ptqis/","offline","malware_download","Pikabot|TA577|TR|zip","fasahatechdutse.com","193.108.119.142","63023","DE" "2023-12-19 15:07:09","https://eng-designconsult.com/ap71ar/","offline","malware_download","TR","eng-designconsult.com","193.108.119.142","63023","DE" "2023-12-19 15:06:47","https://earnmore.bik.co.ke/cz3t6v/","offline","malware_download","TR","earnmore.bik.co.ke","193.108.119.142","63023","DE" "2023-12-19 15:06:32","https://pms.obo.co.ke/gbheyo/","offline","malware_download","TR","pms.obo.co.ke","193.108.119.142","63023","DE" "2023-12-18 17:33:47","https://justgoodtech.com/khm9s/","offline","malware_download","TR","justgoodtech.com","193.108.119.142","63023","DE" "2023-12-07 10:38:13","https://catbaloganwd.gov.ph/aol/","offline","malware_download","msi|Pikabot|TA577|TR|zip","catbaloganwd.gov.ph","67.220.86.120","63023","US" "2023-11-08 15:26:35","https://file140.gofile.io/download/direct/bb11b522-448a-42f3-b612-4629f239582e/Empress_v1.13.rar","offline","malware_download","2023|password-protected|rar","file140.gofile.io","23.162.152.36","63023","FR" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.arm","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.arm5","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.arm6","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.arm7","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.m68k","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.mips","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.mpsl","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.ppc","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.sh4","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-09-04 02:22:06","http://193.106.250.167/hiddenbin/boatnet.x86","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:23:04","http://193.106.250.167/bins/sora.mips","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:07","http://193.106.250.167/bins/sora.ppc","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:07","http://193.106.250.167/bins/sora.sh4","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:06","http://193.106.250.167/bins/sora.m68k","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.arm","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.arm5","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.arm6","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.arm7","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.i686","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.mpsl","offline","malware_download","elf|Mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.x86","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-08-29 21:22:05","http://193.106.250.167/bins/sora.x86_64","offline","malware_download","elf|mirai","193.106.250.167","193.106.250.167","63023","US" "2023-04-12 05:12:22","https://file20.gofile.io/download/direct/77108d0c-13c9-4a94-80cd-8dfbf287b2b3/OnlineSetup%20By%20Orange.rar","offline","malware_download","pw-POI345KOI678REPACK|rar","file20.gofile.io","38.75.137.66","63023","US" "2023-04-12 05:12:04","http://5.8.18.159/index.php","offline","malware_download","gootloader","5.8.18.159","5.8.18.159","63023","US" "2023-04-08 13:00:35","https://file180.gofile.io/download/direct/4c136b6a-885c-4c65-945c-694a98776047/OnlineSetup%20By%20HxD.7z","offline","malware_download","7z|pw-POI345KOI678REPACK","file180.gofile.io","23.154.136.182","63023","US" "2023-03-14 16:10:23","https://homelandevents.co.ke/it/it.js","offline","malware_download","BB19|geofenced|js|Qakbot|USA","homelandevents.co.ke","193.108.119.142","63023","DE" "2023-02-01 22:56:32","https://amazingkenyaretreat.com/ITSI.php","offline","malware_download","BB12|ONE|Qakbot|Qbot|Quakbot|TR|zip","amazingkenyaretreat.com","38.91.101.124","63023","US" "2023-02-01 18:24:40","https://amazingkenyaretreat.com/ITSI.php?INMAG=9","offline","malware_download","BB12|Qakbot|qbot|TR","amazingkenyaretreat.com","38.91.101.124","63023","US" "2022-12-13 21:46:40","https://queue.co.ke/usc/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","queue.co.ke","38.91.100.153","63023","US" "2022-12-13 20:19:25","https://detfrix.com/oee/index.php?qbot.zip","offline","malware_download","675|BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","detfrix.com","38.91.100.153","63023","US" "2022-12-06 17:21:34","https://gitf2ch.com/tms/index.php?QBOT.zip","offline","malware_download","BB09|qakbot|qbot|quakbot|TR|U12|VHD|zip","gitf2ch.com","38.91.100.153","63023","US" "2022-09-17 10:26:09","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/nss3.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:07","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/freebl3.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:07","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/mozglue.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:07","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/msvcp140.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:07","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/sqlite3.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:06","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/softokn3.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-09-17 10:26:06","http://172.111.36.191/aN7jD0qO6kT5bK5bQ4eR8fE1xP7hL2vK/vcruntime140.dll","offline","malware_download","dll|RecordBreaker","172.111.36.191","172.111.36.191","63023","US" "2022-05-24 17:07:08","https://file170.gofile.io/download/direct/b388f0c4-ef27-4c35-969e-fbe3c735754d/ProgramEngine.exe","offline","malware_download","32|exe","file170.gofile.io","67.220.86.62","63023","US" "2022-01-18 16:37:04","http://5.8.18.7/tmp_it22/test_zip2/loader_zip.js","offline","malware_download","gootkit|gootloader","5.8.18.7","5.8.18.7","63023","US" "2022-01-13 03:51:04","http://petroleumtechnologies.ru/wp-content/VHE_726407/","offline","malware_download","emotet|epoch5|redir-doc|xls","petroleumtechnologies.ru","172.99.190.22","63023","GB" "2022-01-13 03:51:04","http://petroleumtechnologies.ru/wp-content/VHE_726407/?i=1","offline","malware_download","doc|emotet|epoch5|Heodo","petroleumtechnologies.ru","172.99.190.22","63023","GB" "2022-01-11 12:45:05","http://deltagases.com.br/wp-includes/555gssIAjRRQd7fdfx/?i=1","offline","malware_download","emotet|epoch4|Heodo|SilentBuilder|xls","deltagases.com.br","38.143.66.100","63023","US" "2022-01-11 12:24:06","http://deltagases.com.br/wp-includes/555gssIAjRRQd7fdfx/","offline","malware_download","emotet|epoch4|redir-doc|xls","deltagases.com.br","38.143.66.100","63023","US" "2021-12-24 17:05:10","http://petroleumtechnologies.ru/wp-content/cYHTPbbOWLI/","offline","malware_download","emotet|epoch4|redir-doc|xls","petroleumtechnologies.ru","172.99.190.22","63023","GB" "2020-06-15 13:36:26","http://narodna-tvorchist.poltava.ua/sxrtgytqpfxc/64Oq7HzqzD.zip","offline","malware_download","Qakbot|Quakbot|zip","narodna-tvorchist.poltava.ua","193.106.248.114","63023","US" "2020-06-15 13:33:43","http://narodna-tvorchist.poltava.ua/sxrtgytqpfxc/VQ/g4/xfnHZ350.zip","offline","malware_download","Qakbot|Quakbot|zip","narodna-tvorchist.poltava.ua","193.106.248.114","63023","US" "2020-06-08 18:59:59","http://koyss.com/rjhxs/wi/Oh/yOs1NCKK.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-06-08 18:04:52","http://koyss.com/rjhxs/2/jt1GEpgP6.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-06-08 17:07:36","http://koyss.com/zajgjqm/9/Jrn065YNj.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-06-08 16:37:46","http://koyss.com/rjhxs/vv/oa/bxQ5Uqio.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-06-08 16:24:22","http://koyss.com/rjhxs/QY/z5/QGE2iunl.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-06-08 16:09:11","http://koyss.com/rjhxs/w/tXUlHChSb.zip","offline","malware_download","Qakbot|Quakbot|zip","koyss.com","193.106.248.74","63023","US" "2020-05-28 08:36:05","http://air34.um.la/inc/8888888.png","offline","malware_download","exe|Qakbot|Quakbot","air34.um.la","193.106.248.114","63023","US" "2020-04-29 07:58:18","http://avto-pro.hostenko.com/too/50673/Buy-Sell_Agreement_50673_04272020.zip","offline","malware_download","ESP|geofenced|Qakbot|QuakBot|zip","avto-pro.hostenko.com","193.106.248.123","63023","US" "2020-04-29 06:32:29","http://avto-pro.hostenko.com/too/Buy-Sell_Agreement_148815_04272020.zip","offline","malware_download","ESP|geofenced|Qakbot|QuakBot|zip","avto-pro.hostenko.com","193.106.248.123","63023","US" "2020-04-28 19:02:26","http://avto-pro.hostenko.com/too/Buy-Sell_Agreement_738797_04272020.zip","offline","malware_download","ESP|geofenced|Qakbot|QuakBot|zip","avto-pro.hostenko.com","193.106.248.123","63023","US" "2020-04-28 17:57:08","http://avto-pro.hostenko.com/too/4955024/Buy-Sell_Agreement_4955024_04272020.zip","offline","malware_download","ESP|geofenced|Qakbot|QuakBot|zip","avto-pro.hostenko.com","193.106.248.123","63023","US" "2020-02-05 21:30:09","http://magistral.uz.ua/bin/m387t014x/","offline","malware_download","doc|emotet|epoch2|Heodo","magistral.uz.ua","193.106.248.74","63023","US" "2020-01-29 04:26:04","http://kremenchukinvest.com.ua/wp-snapshots/BgkUjNH/","offline","malware_download","doc|emotet|epoch3|heodo","kremenchukinvest.com.ua","193.106.248.89","63023","US" "2020-01-22 14:19:34","http://kremenchukinvest.com.ua/wp-content/Scan/","offline","malware_download","doc|emotet|epoch2|heodo","kremenchukinvest.com.ua","193.106.248.89","63023","US" "2019-02-26 14:13:41","http://tellequelleblog.com/sendincverif/support/sec/En_en/201902/","offline","malware_download","doc|emotet|epoch1|Heodo","tellequelleblog.com","193.106.248.117","63023","US" "2019-01-31 22:05:12","http://indonesiakompeten.com/URLMZzXjcAi_it4FexO_2Wx00/","offline","malware_download","doc|emotet|epoch1|Heodo","indonesiakompeten.com","38.75.137.25","63023","US" # of entries: 70