URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cikgushashi.com
Domain registrar:NICENIC -
Domain registration date:2021-11-05 08:43:09 UTC
Abuse complaint sent to registrar: Yes (2021-11-05 23:41:01 UTC to support{at}nicenic[dot]net)
Domain registry:VeriSign Global Registry Services -
Abuse complaint sent to registry: Yes (2021-11-05 23:41:02 UTC to info{at}verisign-grs[dot]com)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-11-05 23:35:08 UTC
Total malware sites :1
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 05:32:25 104.21.87.86Not listedAS13335 CLOUDFLARENETn/ayes
2025-04-29 05:32:25 172.67.142.135Not listedAS13335 CLOUDFLARENETn/ayes
2022-11-07 16:50:09 58.64.137.69SBL676527AS17444 HKBNESL-AS-AP- HKno
2021-11-25 06:45:01 45.130.41.12Not listedAS198610 BEGET-AS- RUno
2021-11-08 07:38:09 185.162.11.18srv16840.hosted-by-eurohoster.orgNot listedAS207728 EUROHOSTER- NLno
2021-11-06 22:47:50 193.232.179.71Not listedAS208626 serv-tech- RUno
2021-11-05 23:35:10 194.87.185.127Not listedAS58061 SCALAXY-AS- CZno
2023-02-01 00:30:50 104.21.47.2Not listedAS13335 CLOUDFLARENETn/ano
2023-02-01 00:30:55 172.67.143.136Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-11-05 23:35:10http://cikgushashi.com/pub33.exeOffline32 exe RaccoonStealer ext RedLineStealer ext Smoke Loader ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-11-08 10:29:49492b287d0e12d4ac97386445a7ae49c02156776f70de5fac1b26edef8cc23d31exe Smoke Loader
2021-11-08 09:27:202de57dd2ce1f80243ef7158318db24162edec36cc100aca8a584502be1c07feeexeRedLineStealer
2021-11-08 08:02:48d108d02cc4980051ebf5714fcec87736de3d65e32de9297c1c6148a30a6655bfexeRedLineStealer
2021-11-08 07:04:58fa39fc60620f4f17937d7866016ba0367143ec8f07baac15941c5c9be299c0ecexe Smoke Loader
2021-11-08 06:19:2879187da9596d8ca101e3f91a0637dd5f26c1016bfc2f593b754d49721a964412exeRedLineStealer
2021-11-08 05:19:55c935bb8aeb42e612d50cf1290ba04e50d2c5c2d312d788f399d334165c7b2f04exeRedLineStealer
2021-11-08 05:02:392affdaec2b15b17e5d125ac1a6fb957469d1aa1dbd40e4bae38c42968cc9563aexe Smoke Loader
2021-11-08 04:46:406cb63365dc477316ad28464d537986a1cb08c4739d4343603baa073327aa58c0exeSmoke Loader
2021-11-08 04:19:42c154f6b9d70bbed049b3c8b2468c4991ac0928bbf0e7f7b842656db496dc44deexeRedLineStealer
2021-11-08 02:49:02a9199bc7ee9a1310ab12cb298918578c320f27bf42b76a257fcc7cfe4d894ebeexe  
2021-11-08 00:06:079d8655f8c66bf894ecb896717d728719d48627322d192a82d689c03b4b853e9fexe Smoke Loader
2021-11-07 23:16:5589b25284f76d77e18a3a444adfe759fd58b9f3c3de5c7434bada7c3a8a8f0df0exe Smoke Loader
2021-11-07 21:33:41ba1b1a445cb01b81c1bd09f568f9b5a6f8af360972ef4ecd89bfa7eaa71f6a95exe Smoke Loader
2021-11-07 19:27:4517936941c27a3a1e4b81f90e702826481a8f1a558f47e48feb25ae1267a2ab55exeRedLineStealer
2021-11-07 18:45:303fef684ef703efa989f107769611d25b35e7e8ecca5df4834d3f6316017475bfexe  
2021-11-07 18:08:0335c522f94882acf5380f879de60764744383223060be20cd98a463816b6a17a9exe  
2021-11-07 17:08:268d23aaaa83434c14a79e26861866641f5e30819145b41ea55bfa2af53288ee30exe  
2021-11-07 16:11:535b2171b57dcffccf67042e9361b07b8fb04e83a79e48caf66811f99687c6a306exeRaccoonStealer
2021-11-07 15:25:4166d3d53c2242d3b2d933404b92d3f1e5c2382439a191fe6a0506ca4e9476e785exe Smoke Loader
2021-11-07 14:25:49839242b4ab783541e13193b9c716c5dc9d8f231055d8d7b18b84393d67277e58exe  
2021-11-07 14:10:51bfaaa01fcab99e26fe88b2991c5e6542b949bb05dda37e18a8b0346aa5d5266cexe Smoke Loader
2021-11-07 12:34:47c61c1765a7559f3c03a90492b402f1c1a44b1a6e4c3cacbff41f52b61b6d6424exe Smoke Loader
2021-11-07 12:03:4620093823a3edbcf53ea0f88953027eef6e3a9e07b7e365f0211fb1e213eed21dexe Smoke Loader
2021-11-07 11:15:16570a362bdbf5e6a01066e3724d6a22f7832d0f8496ed276d5f9e1cfef93943e2exe Smoke Loader
2021-11-07 09:16:2388302c6e28e0d1f89f207be13a4eb9a7988c84db79d76d97078c6bcc1d08b3c5exe Smoke Loader
2021-11-07 08:40:23402b0a019bafa68836e3c9b0ce5dd5ea09e8de4b77e2d2600587092929935fd5exe Smoke Loader
2021-11-07 07:49:2431ec2ce289e35d7d414c84f19bf5b4b1fdaa535c6bae420a434a4bd0879514eeexe Smoke Loader
2021-11-07 06:38:154fd3156280731df7c453704b390bb430c0d12bc26dc16a3f99e78fc5743f23a8exe Smoke Loader
2021-11-07 05:34:12c8770da2e894acaca21815bb1b8fb21052f5dac00ad524992d74129b3df5c7efexe Smoke Loader
2021-11-07 03:38:1894b9091e69863a5031de9443dadda3181f6a212f9b002255fde9c75d89d82ae5exe RedLineStealer
2021-11-07 01:50:01f474c007a6fd8b84812e27c12a0be6dff3c891b66519f02838afb521e18cc170exeSmoke Loader
2021-11-07 01:22:549c082cf496bf4ddc966569acdef5d56addbb6a3d727107115d45acf1b4e93a6eexe Smoke Loader
2021-11-07 00:24:359e7632c03dbae593a01af86ad90ba4821b52861f699762ea02161522f5df3bcbexe Smoke Loader
2021-11-06 23:04:55e41a317c3da41afc39f3a4be2c971e4f935921fa852c70a32418c02580828755exe Smoke Loader
2021-11-06 21:57:30a9138cca62cdbce40d67a682428e47e1693bd4d5851cb94e288abeb685b7941dexeRedLineStealer
2021-11-06 21:36:5871fe581bed4fba2e6f17e7de665fb282e723469338a474fec341906af7aa7286exe Smoke Loader
2021-11-06 19:52:48e6aaca7625a72d571f49e1cfb8db184091e6f94454e6b6ae7abd1f2533b1cd84exe Smoke Loader
2021-11-06 18:54:36e6238fb1eb2824e6a562be352a5bc3da193bf7d3cb55cfbc54acad12d4055058exe Smoke Loader
2021-11-06 17:08:27172d7f301e207c1ec8f2515f01c79294d627f1b63b980cd1fb3b7c6ce6e448d0exe Smoke Loader
2021-11-06 16:15:2184b9b1eb50157b4133582de9e1aae63abbb271f84000199d74ce9afc27b36cc7exe Smoke Loader
2021-11-06 14:25:36ae54dd1d910018c5d1738970f40ac09b24ad16716c8714da9d15865fe429b992exe Smoke Loader
2021-11-06 13:21:2447d959853a4e80132492a3f46362bd2c0ca8d4bd0056df6147db530cd79f1740exe Smoke Loader
2021-11-06 12:03:449f6cf9c7dddb0b66387179a9aab3aae37bf55d21d72833dcfc84fdad88083c9cexe RedLineStealer
2021-11-06 11:38:3622e800961064f209c953696425f73d0648ed44557f460c5440a43455250affd0exe RedLineStealer
2021-11-06 10:32:2564d3a564af0cd822041f48275424612e97f120200ddfb4395eda22a30062efe9exe Smoke Loader
2021-11-06 09:00:37a97bd19461c735427e7d9ba8d821d8f7c63fec9c0bb31396d9c9a9ea65b3de9cexeSmoke Loader
2021-11-06 08:30:24ab807f440f04fedc0170f812b31f524f29257e7bedad77183976cd59762dd06fexe Smoke Loader
2021-11-06 07:30:1021ac6c9fd01a1cf9275c9dbf8b74508813026b0693181f5031c858229a5a111bexe RedLineStealer
2021-11-06 05:29:38199bc18551e8786a107ed743e9aed93e6128a972bb02d76c88bd0c10687a39abexeSmoke Loader
2021-11-06 03:31:30307a3a815ae335ed015c58023562f2a3d39d5886c33e7607b7ef18a51c8b6ac3exe Smoke Loader
2021-11-06 01:49:261b18fa66c118038ca44d0c3d4cad02914a435fed0a7a0bc3357a4b65afe2b515exe Smoke Loader
2021-11-06 00:06:20847d782c741af4a7d25e61c5a170c0f4dfc6eee906f4b7028c61f5dbc00d55b3exeSmoke Loader
2021-11-05 23:35:1014ec56bd0fcc57afecaa43f81321aeae0ab3a21ea79e5ad4bc0b73ebd08b959bexeRedLineStealer