URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: def163.keenetic.pro
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2025-10-02 14:17:04 UTC
Total malware sites :18
Online malware sites :18 (100%)
Offline Malware sites :0 (0%)
Newest active malware site :2025-10-02 14:18:11 UTC
Oldest active malware site :2025-10-02 14:17:05 UTC (Age: 7 months, 27 days, 8 hours, 52 minutes)
A record(s) observed :17

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2026-05-23 12:51:48 109.226.118.111109-226-118-111.clients.tlt.100megabit.ruNot listedAS8439 AIST- RUyes
2026-04-23 11:13:16 85.114.173.162Not listedAS8439 AIST- RUno
2026-03-24 14:52:45 85.114.165.1Not listedAS8439 AIST- RUno
2026-02-22 13:06:06 188.122.250.211188-122-250-211.clients.tlt.100megabit.ruNot listedAS8439 AIST- RUno
2026-01-31 09:36:09 85.114.172.75Not listedAS8439 AIST- RUno
2026-01-21 14:16:24 85.114.176.92Not listedAS8439 AIST- RUno
2026-01-21 13:54:12 85.114.177.144Not listedAS8439 AIST- RUno
2026-01-21 13:42:29 188.122.250.57188-122-250-57.clients.tlt.100megabit.ruNot listedAS8439 AIST- RUno
2026-01-21 09:17:48 109.226.87.54109-226-87-54.clients.tlt.100megabit.ruNot listedAS8439 AIST- RUno
2026-01-21 06:35:35 31.28.40.7431-28-40-74.clients.tlt.100megabit.ruNot listedAS8439 AIST- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-10-02 14:18:11http://def163.keenetic.pro/Video.lnkOnlineCoinMiner Riordz
2025-10-02 14:17:24http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:24http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:24http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz
2025-10-02 14:17:23http://def163.keenetic.pro/Video.scrOnlineCoinMiner Riordz
2025-10-02 14:17:21http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:17http://def163.keenetic.pro/Photo.scrOnlineCoinMiner Riordz
2025-10-02 14:17:12http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:12http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:12http://def163.keenetic.pro/AV.lnkOnlineCoinMiner Riordz
2025-10-02 14:17:12http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz
2025-10-02 14:17:11http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz
2025-10-02 14:17:09http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz
2025-10-02 14:17:08http://def163.keenetic.pro/AV.scrOnlineCoinMiner Riordz
2025-10-02 14:17:08http://def163.keenetic.pro/Photo.lnkOnlineCoinMiner Riordz
2025-10-02 14:17:08http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz
2025-10-02 14:17:05http://def163.keenetic.pro/USB-%d0%bd%d0%b0%d0%...OnlineCoinMiner Riordz
2025-10-02 14:17:05http://def163.keenetic.pro/%d0%9f%d0%b8%d0%bb%d...OnlineCoinMiner Riordz

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2026-04-03 08:08:06efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2026-04-03 02:23:46efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2026-04-02 14:30:15efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2026-04-02 14:11:58efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2026-04-02 13:39:17efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2026-04-02 13:16:47efdf8e6d182ba4644375fa7eaad615b0df41f4e872e1550466e76c8b2d816ddbexeCoinMiner
2025-10-02 14:18:116c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:24717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:24717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:23717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:23717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:21717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:17717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:126c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:126c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:126c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:126c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:11717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:09717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:08717fac4c5f7f77428de80b2da5edf4af459f6076ecffb288bcbdcede21f81961exe CoinMiner
2025-10-02 14:17:086c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:076c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:056c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk  
2025-10-02 14:17:056c143930a3c3b82e7ac25412fd74dc376cad1db9ff66ae25cd95da7f0a32da4dlnk