URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: avantage-doc.ru
Domain registrar:REG.RU -
Domain registration date:2019-08-13 07:39:46 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 09:55:04 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 08:12:28 185.215.4.60Not listedAS57724 DDOS-GUARD- RUyes
2022-01-11 09:55:06 31.31.196.170server76.hosting.reg.ruNot listedAS197695 AS-REGRU- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-17 21:40:04http://avantage-doc.ru/wp-snapshots/662586/Offlineemotet ext epoch5 redir-doc xls sugimu_sec
2022-01-17 21:40:04http://avantage-doc.ru/wp-snapshots/662586/?i=1Offlinedoc emotet ext epoch5 heodo ext sugimu_sec
2022-01-11 19:38:04http://avantage-doc.ru/wp-snapshots/ldVENN/?name=Offlineemotet ext epoch4 macro xlm FplPhoenix1
2022-01-11 09:55:06http://avantage-doc.ru/wp-snapshots/ldVENN/Offlineemotet ext epoch4 redir-doc xls sugimu_sec
2022-01-11 09:55:06http://avantage-doc.ru/wp-snapshots/ldVENN/?i=1Offlineemotet ext epoch4 heodo ext redir-doc SilentBuilder Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-18 06:26:32e95a1d9f8651d516e59ddffadc5fd94a499b888077d6cc60ee5cc1b95c1f91e7xlsm Heodo
2022-01-18 06:07:5308ed773eaf043bb76b2576c9376b8715da6d2677f07277f709e74d4844343b7cxlsm Heodo
2022-01-18 05:50:41c837ba3be459d30d75ba53677884651f8ea4be085bfc4fd3bd3d87a85c4f2136xlsm Heodo
2022-01-18 05:39:508a1f1920da77f2aa02e0d38a92cc3f9901781484353db80e8940a750d673f023xlsm Heodo
2022-01-18 05:16:35c376ffe4c231464c947bc77a323936d8eb64d85bcd1ddcd33bcc161dae53ef15xlsm Heodo
2022-01-18 05:02:3164d41354ecd7f297389d824c38b8b00241322769011feb0c864269145fd8f174xlsm Heodo
2022-01-18 04:50:375548e14a9b8742e7772ebe754d1e7c8bd00039714138ddb87d4fe2a8e92dd212xlsm Heodo
2022-01-18 04:37:161d95f9d613b01b2dcf2ff10254cf77e3210a07f1a209855de18043c161520191xlsm Heodo
2022-01-18 04:14:49ccbc039cf33ad86b9287d5ddeb42977c7b30bdf9e8a728478f7be2f0231c9310xlsm Heodo
2022-01-18 03:54:5542671e33a5cd09da48d20b7a12e9d8c6b5c3e8e397deffd7d721f10e3c26c410xlsm Heodo
2022-01-18 03:33:460228ceafa8f9fb29813b9462d9aee85f346c43440aabab248ee3a28283eb4f6fxlsm Heodo
2022-01-18 03:17:3158a1033b4773f07ae0f7257590bf372fde51e9bc60298c483a5bf53a93210433xlsm Heodo
2022-01-18 02:54:42976872f868b49d98d5e487b42d9bce61f8b05d610fb794ccacbe1ca4274d71cdxlsm Heodo
2022-01-18 02:43:39071b56a5371a11d25784a06fa995cbf3127cafc79a1da89ed889d7d35b235f46xlsm Heodo
2022-01-18 02:14:21954cce122bbc5f2db9b047be265ecb1c8dbbe04b37eaf5b2f738423610df2d4axlsm Heodo
2022-01-18 02:00:2672c3f7215a023270169a1f1a078c7df9714bdb4ab297fe3bfde6e13fbcb08c68xlsm Heodo
2022-01-18 01:41:36bca263286c21f2647b4f0885a0848164685ab40aa0d758e94eb8d774d940c69dxlsm Heodo
2022-01-18 01:27:49b977c5112c9836972623051077502437f1a49a9b8c0ae004c54d0a5685f5b974xlsm Heodo
2022-01-18 01:20:507a36780755f25695430762b1ae5759a6b789c298db856370cd0b6fd0f857f835xlsm Heodo
2022-01-18 01:01:535b40663cd5694685107f64ce59209f23d87706238f5b564227a288fdf40749f6xlsm Heodo
2022-01-18 00:36:5664b618a8cd97c14013cdb8352e6959b5f4097adfa9986a19e4a916141cccc9adxlsm Heodo
2022-01-18 00:19:29875b1c9e36a5cf567317565b0b54324da0aac7ca5c69f0c688853731da4082fexlsm Heodo
2022-01-18 00:11:102fed78e7159614ab93c099805eda683afcb3a8a0efcb75d260f19202886700e3xlsm Heodo
2022-01-17 23:49:296f547f1af075434c1f8fd54fb78b5a4f15d49e4a38e86d6e129d88c3e83ea230xlsm Heodo
2022-01-17 23:32:333205e9241e6f23942fd5b8ff4babdf561cd0022a6d42a800075046bb9e627eb8xlsm Heodo
2022-01-17 23:18:51b74ebda344b21397a7dda793d725fc98a04efae5d4cc51c8c8b6f9c253bdcb83xlsm Heodo
2022-01-17 23:02:1447c80c975818ab9bd09449d2130bcfb94eeab3b0aaaa784f5c2b56cc3d32c796xlsm Heodo
2022-01-17 22:55:19f4bb1e4f32c5444db3de6d023a3e27ecd0b948e8b13b1d54d7c725ff63dbd7daxlsm Heodo
2022-01-17 22:33:461227b6464953ca3a4307804a94c248736f40446a42121d3e0ceb52fc63629f8axlsm Heodo
2022-01-17 22:24:37d184b3138413ca1b9e64edc98add0851bdeec2158f3a247532593deb9cbfc808xlsm Heodo
2022-01-17 22:03:20ffb2a0ff4ab817787bae6e304ecc561e2e839edd4d20194227a194e6e8bb7b0fxlsm Heodo
2022-01-17 21:53:402350f0180119d36193a0ff0d35370865e389ebf2b910fbfa8419c7a2258a9356xlsm Heodo
2022-01-17 21:40:04d617e18915823ed787d6a6d05689a574c7286b6e0c1dccfda44870670679f7b5xlsm Heodo
2022-01-17 21:40:045096dcef23f73b915c43a873d4256e75523e4301177c40837cb2ee521dad5feahtml  
2022-01-12 02:47:00769ecd4d91e53cc734ede1b06a3935096e838020e44061032964dd769dda3968xlsSilentBuilder
2022-01-12 02:09:14796cb1dfe07dac51d9dd955ef372b6283adbfc38e34c92ee379fff29c89baccexlsSilentBuilder
2022-01-12 01:47:21ca65e9146957f09c7cdbb479666279a91d9065b309e29fea80fc5e3b7bd49393xls SilentBuilder
2022-01-12 01:31:02b4e5abec6cda8d6601e77495e9eaf91756cfc834e816faa0fd327029da72d881xls SilentBuilder
2022-01-12 00:55:33ee39e88c3c79292adf03f167d3b538ed98543b64a867264a09a9d19b0ac28645xls Heodo
2022-01-12 00:27:419e0c891bd4b687d10b5c7d8082a2d4c7d24a0c9ea90b1d0aa09dafa6dee22047xlsSilentBuilder
2022-01-12 00:10:5905dc48ca9e5d5feb04a32c1ef3a8d18453a2a679e7257ce24856895a5dea268bxlsSilentBuilder
2022-01-11 23:51:2466f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6xls SilentBuilder
2022-01-11 23:21:36bfe1c65501eb9a22ea914fe380d24127cdf99ce17fc20683f99a7b1e0ccc06f8xlsSilentBuilder
2022-01-11 23:10:35a7fe36211a0be63df4c3929830b8fc4e21fc0548b5446377ce9c83b3d1fd9339xlsSilentBuilder
2022-01-11 22:40:129b3fb2f88edc75661d9aba9ccac4bd15607dbf2fa7542c47be3d533c0db5cbe5xlsSilentBuilder
2022-01-11 22:18:1314222deeec10d32091a2947e045833bd25c041a662f4090df26e50381cf922c6xls Heodo
2022-01-11 21:48:00e7065618e785e98792d570656fd412ecf695c45ec5a8123d04cf4ee302d225bfxlsSilentBuilder
2022-01-11 21:21:4462ec5aff1c6c20ac27c09077ff459dbe375a4d8841b6b47f85c7e51b7d26fd9bxls SilentBuilder
2022-01-11 21:04:20c630d761d951cbb2a45247adbe0361f1311dbc9c9dd2e90447ef752f3927a4fcxls Heodo
2022-01-11 20:55:592057afa974ff72e5f28439f4cdef17396772fe0edde04405fbcf8c5cb5a47888xls Heodo
2022-01-11 20:17:18f9e789531cb031e9e6767f54a780f6ee8b53a417acb2b2012dbfaf1579aee55fxls SilentBuilder
2022-01-11 20:03:36067076b82d8006677b674411e2ac9d00f6b68e93ff460cb2f113d9150e73a88cxls SilentBuilder
2022-01-11 19:30:563d2ad015f60956cee32029cb7d6fee846f34a91d0f6dae2b68cfde31c99b4a77xlsHeodo
2022-01-11 19:08:27afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292exlsSilentBuilder
2022-01-11 18:44:2018e24e9b03fde05fa41b9d86aa612dbbd5deabcebbe97ee5b3a3b7fa8fb43f51xlsSilentBuilder
2022-01-11 18:25:5860fdf680c8e0272784588bf87ead2814df683a2fcb697522ddd4ef323166440axls SilentBuilder
2022-01-11 18:04:17f9dc6d359581da286cc014340d248cea2acedf09a9dc0cf9280641f3393fba35xlsSilentBuilder
2022-01-11 17:40:35ac54419fabe46284edceb8053b9d82d570dc0bdf6c0f0302122329da99c28a12xls SilentBuilder
2022-01-11 17:27:54a88483cdfd340711d7a65d74a5646e6bc7159a4af250074e0fea6db954177753xls SilentBuilder
2022-01-11 17:04:57c5850b16a368ab7c8f2d03cebcc7dd51173a704cdd1d6c105ba43083a40b6063xlsSilentBuilder
2022-01-11 16:49:041cdf6133fd1d4138849b8f2b29f199d90ccce54c369b74a88a14e8329e1051c3xlsHeodo
2022-01-11 16:21:47b4f4e361680cbe98e26106393beca73acc80418fdae4ab118917b7e8bd9fc917xls Heodo
2022-01-11 15:52:102c89633bdbd869ccfd8f94b4b5a78048ba0f36bd76b04ecf6b99b7583fb1591ahtml  
2022-01-11 15:40:33d998c674fa44d16219511679b665d89c572e0ba8736919f99baaf7ba096f072cxls SilentBuilder
2022-01-11 15:17:1217832170dc965d40f1a4b7b5abf6dd5f8d131468c82c281388bf6f6967b77490xlsSilentBuilder
2022-01-11 15:04:59b53a3f09073ba4c63f1634b32bc6328f22d9965ebc1384797a886d07959313faxlsSilentBuilder
2022-01-11 14:40:4889224af568d4e29e7836c2961d33045490b337a9d5d40db852137e1f2dbbfbf9xlsSilentBuilder
2022-01-11 14:17:37645258c3eec8a24b056403664b65d66c43f78566a0f33270723a6edc4d0c7ed8xls SilentBuilder
2022-01-11 14:04:5606b383970ed4fab68a430bc021dd0744b77518ec82ef09f6d167c8edbf50fd53xls SilentBuilder
2022-01-11 13:37:11a672f734a98a5b287eb96d134893701f055f20573dd9f9d778b1e7953b00a944xlsSilentBuilder
2022-01-11 13:23:52ffd39f522cb9bcdb3dac93c34aa136be3cdc6cc6f6b878cf756a5a53443546fexls Heodo
2022-01-11 12:57:1754517f5914c526589a1b1ad61249c75209d239c1885cd72f638d9924d53983dexlsSilentBuilder
2022-01-11 12:38:347344902cb22762b87d48eb15a20c8bf0f2e6ac3753f23922d6cf2fd721277d2cxls Heodo
2022-01-11 12:18:3125a3e55a8c505687b78fb62ff041db36ed577b17dbd1b9ebf4e8628b9cf7b18exls SilentBuilder
2022-01-11 12:07:545d5960ceec11681300fcf26d61f3e8c614aa21a0eeec555c70a63c4049587756xls Heodo
2022-01-11 11:39:35aa4aad81decb8b0cb81bef9f2fb19aaf9d7ab1e30e1c4bb6f983b4b45973d250xls SilentBuilder
2022-01-11 11:16:00014fc0f35570524af821c5eba7c6efd66e8b973be290e6aefcc2b4ba1d56870axls SilentBuilder
2022-01-11 10:57:128d553f79df6c325e23d3dbf5395971d1e0e1132eb66d882f365a931e848a6556xlsSilentBuilder
2022-01-11 10:36:447443d5335a207cca176825bd774a412e72882c815206c7f59ace1feb111bb4e9xlsSilentBuilder
2022-01-11 10:17:55276395e58ccf322a3705f0f21c4b4c62fa416a5ff02bb8e65e5b9d4289ebf763xls SilentBuilder
2022-01-11 09:55:06b5d8116e0b4f01eb2affa09d857d1be4df2e18dd793e4ab0b6ad28e0d5eadc15xlsHeodo
2022-01-11 09:55:0619ac53a1fb1de52115a8fae14a6489cc3822576852b5c45ec63af07bb8eafa4dhtml