URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: a.ninis.us
Domain registrar:Public Domain Registry -
Domain registration date:2021-05-12 05:49:53 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-08-17 13:40:08 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-05-12 16:32:11 209.99.40.222209-99-40-222.fwd.datafoundry.comNot listedAS23005 SWITCH-LTD- USno
2021-09-30 00:08:08 194.195.211.98194-195-211-98.ip.linodeusercontent.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2021-09-03 13:00:21 54.227.98.220ec2-54-227-98-220.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2021-08-17 13:40:11 172.245.119.43172-245-119-43-host.colocrossing.comNot listedAS36352 AS-COLOCROSSING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-08-17 13:46:06http://a.ninis.us/d/oy.exeOfflineexe opendir abuse_ch
2021-08-17 13:46:04http://a.ninis.us/d/obi.exeOfflineexe Formbook ext opendir abuse_ch
2021-08-17 13:46:04http://a.ninis.us/d/doc.docOfflineopendir RTF abuse_ch
2021-08-17 13:40:11http://a.ninis.us/d/hot.exeOfflineexe Formbook ext opendir abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-08-17 13:46:0637882a4a0aaf84e2f3c063de493fedbf2233c31c7bd146c79059dd1ae914e2f4exe 
2021-08-17 13:46:04caff14d450514a35eac5ba34b3e74126360662d7c8fdf60a8008a0e3bb8ed0b3exeFormbook
2021-08-17 13:46:04a8680fe6b1b96489aa5331018a095d20a4a9c69f3f46bc2f9d1b011242079ba3unknown  
2021-08-17 13:40:1122a3ccdeb9ae4b196461cdb81c895ae891e2149af03e44b6ce86c2a1bf062947exeFormbook