URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: grigorenko20.kiev.ua
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-30 13:08:18 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-05-30 13:08:19 91.228.154.140hostde34.fornex.hostNot listedAS44051 FORNEX-AS- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-09-20 10:11:03http://grigorenko20.kiev.ua/.well-known/acme-ch...Offlineexe Troldesh ext zbetcheckin
2019-05-30 13:08:19http://grigorenko20.kiev.ua/.well-known/acme-ch...Offlineexe GandCrab ext Troldesh ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-09-20 10:11:034709592e7bf5f8082d72781a8a656944b726bf753319f1128d973ea7ca781dc1exe Ransomware.Troldesh
2019-09-10 06:24:17f48824d00a5e0d8e4a45d007997b7f2b6b6665990fb0bd71b275a9765c73fd12exe Ransomware.Troldesh
2019-09-10 01:44:074709592e7bf5f8082d72781a8a656944b726bf753319f1128d973ea7ca781dc1exe Ransomware.Troldesh
2019-09-07 00:15:5151d0aaeab5478e535162cc12888d2e3e2d4f41367f9815cc4fabb5541531b299exe Ransomware.Troldesh
2019-09-06 05:01:0669e63b9d4f0a95f877832ef0e4e96a7fc0549aae57efef1c9648ad1e38b0665bexe Ransomware.Troldesh
2019-08-22 13:01:18c5028e3abf95468bc3904473cec4373a3faed8466e4478f098c2b573e926f881exe Ransomware.Troldesh
2019-08-22 12:37:366477cd2ceaac411a0ad5429f25f71e04e05f7288cc94e9238633c2bc0f071fb7exe Ransomware.Troldesh
2019-08-22 10:31:5936843dca09c4e2d5dfa66c0a8c0faa43069b00c5258dfe0e99a79d092ebad3f7exe Ransomware.Troldesh
2019-08-22 09:54:06e370453cfecdf202b8799e793d5dc7fa6d7914af016666ca8de0679f865fe87eexe Ransomware.Troldesh
2019-08-22 07:09:43dd69e6975835b8f2043c39684de732608c66f16d8bacc763d32d3fc840595e09exe Ransomware.Troldesh
2019-08-22 05:34:415a2ee91a9f1f5df0061ee0cfb9e7d82b4a0112a0cfe4cb68418f6b46d72fa7a9exe Ransomware.Troldesh
2019-08-22 02:26:09737e7192d85909758552b74bf1c2798825f0bfdd29d493113bbbe5a41576a12dexe Ransomware.Troldesh
2019-08-22 00:21:0203bc3706e754c3f36f58cafd042e1175d5d58f35d71da815d28bcd462ace322fexe Ransomware.Troldesh
2019-08-21 23:18:1157e93069f1701be6fa87a0c31ba7fbc5980a649042688fa81efe3b4a0f1e73ccexe Ransomware.Troldesh
2019-08-21 22:01:25535fa3f811d7f023f4e613a115ac3f9919490800626f8af16268be08e387bd8bexe Ransomware.Troldesh
2019-08-21 19:33:07cf065f4290fe2391fa2bd6d30a12f5dc2cc3a298de58ae5bc8d0fd4856cd4580exe Ransomware.Troldesh
2019-08-21 16:10:51b4475ffe3f465ea2e3811312b6950e8533115014fb99c6d96bea7a3e4e0ba0dfexe Ransomware.Troldesh
2019-08-21 15:26:445aba4f125bf6b209710885b06b7dc2e43c7e3eb23eeebb6c274cc3f2b22d62d2exe Ransomware.Troldesh
2019-08-21 14:43:06a02d054a78eba5927ecbd2e9869b8ee5e751716c1cc5f9f4ca334040b587eba2exe Ransomware.Troldesh
2019-08-14 08:53:09d9f7285aab6306d9caa0084b795bce9f73f121820442ce737c85f564dc55391bexe Ransomware.Troldesh
2019-08-14 07:49:13c28aa29b149c2f978333d9597edd07bbcd3fc292b8a7d525df3b05db0a355bb9exe Ransomware.Troldesh
2019-08-14 06:39:09cb6b4ea936a7d76f778540a4e25ac81d08e37f060531f86d9fae012f6c4fc195exe Ransomware.Troldesh
2019-08-14 05:10:223b3313e0241fa7d3725330f80afd2709395d217615a867cd83588d70971f4018exe Ransomware.Troldesh
2019-08-14 04:19:24635c0ffa30a36640706cc642e242647ee9d51d3913c22f60ca4801dcaf5e0867exe Ransomware.Troldesh
2019-08-13 23:33:09cddeda77d84e35a56f7708bcd10c5940f4e2b415027e05e48c0e6f46842174ebexe Ransomware.Troldesh
2019-08-13 14:22:09300f057f73ef8699e6c669893977d431eda48177e8b3794eec7ba5d55659cfe0exe Ransomware.Troldesh
2019-08-13 11:00:1726eb6ebc5d7a0d9d55408c5137b076c674094350198a8ff4a50decfb527a00a8exe Ransomware.Troldesh
2019-08-13 09:06:03186f07d39a2a9734d4baf139445ee5ab15ad06ee7a7a1a5efcff0344da0596e8exe Ransomware.Troldesh
2019-08-13 06:23:01426d06da1c3264268b096f9fc51e610e924e42ce1aeba8fab385e347bb768428exe  
2019-08-13 03:31:153686b83d736e86f753bcbd2847c912f3c70cb6ad49c5e8eb38187a1d7fd1bb59exe  
2019-08-09 11:52:13f5eae177fd3063965daf699a043dde7bae33ff9b76a7fedb3ae928c1c3155315exe  
2019-08-09 09:53:17b0d766f76a248e07a540d358b0a2d676805a526e25b0b10f1681283d066b7e7fexe  
2019-08-09 07:01:103917d6a04e5c0362ebe41313e83be731f0a9bce5506b88ade55420ba746753ddexe  
2019-08-08 23:35:0514fe0fa7e16253e53ce4c25616e08006ad09330bea8df9161a47b2815cd83067exeRansomware.Troldesh
2019-08-08 11:03:2223116fc1eec2da9db5fd9a850eaadf6a5f11a6dc5839feef08edece86bf4cbffexe Ransomware.Troldesh
2019-08-08 09:32:10de6636da2635e77c29d6c1cbe4d7861607591faa1aa288d9f402711b6f54b6d9exe  
2019-08-08 04:58:05896593f01904947b8546bcc1b7ca54e738f73370caa496c77a3ae44fc994bf3bexe Ransomware.Troldesh
2019-08-08 00:39:1696c7b7d4d1681daab8c1ef35278f7780e4e21554bbe1ccd3ed4d4527327677d1exe Ransomware.Troldesh
2019-07-31 04:03:001caf5105988781e29d93e58abcbf3bf4c973eca1a207803629bd5cf901ef5be1exe  
2019-07-30 09:32:35ac45024cf14e82ccdd6eb4ec6ce17df2d3abb92a6eb91b3aec4b12e9bfd700dcexe  
2019-07-29 12:03:087084cec1c3599690358ffe6abacd34953c31575c7ed418e525362263f85138c7exe 
2019-07-29 09:16:005f12482d278a46a5b4d13ed46950f79dcc5e696b507649081c2cdfe289a138fcexe  
2019-07-29 05:24:5150554e38fb77e67e9b513bed12dda4db5fdbf717f3e1eb0d1340c36991fc41e2exe  
2019-07-23 08:16:058b124559bc26103c2a45f32af4d292567f8f0d63f2aa5ff439f8eb516199039fexe  
2019-07-22 00:50:52f49729f71fd80f3f2d112655bb7d978ab99726eba902e1a52fed41e1f98015c9exe  
2019-07-18 03:22:56efc8a598d15f50646444551c6ff08cea8c3a173f307ecc0b42aaa94d043fba3aexe  
2019-07-17 02:38:00dd1690bbc16c2b44da6f2291e14ab3635f90291a34109744a05e2c82489b3555exe  
2019-07-16 05:13:55e37e5186abb272b2b6316ccc20beee61dec07f62ae70cad2c6c080a5cfb8f145exe  
2019-07-15 05:53:5510bb6284cfd20e35f6a3035075ea859cce541ad31616da992ce9ed64bbbe933eexe  
2019-07-12 03:30:5299362cee447143b51f377252d1cf1955ee90048b768a20594d2ec67f9d069214exe  
2019-07-11 01:24:086122e3767cd08da9e465a6651784440863cf847a51a588d7e5f95a3000ee72ccexe  
2019-07-10 02:50:532d510ba710ff8c4a48b60a74daf9e0489b343c1dec22bcf9369d986921439096exe  
2019-07-04 01:41:58bb6f355ea11ee4a879d7c7ee97c44e06cae6021d9cb23c1df28491336662afffexe Ransomware.Troldesh
2019-07-03 14:22:48501ef03f71805e07dca0acddb4c168cb588b5bc070aa1d692427a037a47d1535exe Ransomware.Troldesh
2019-07-03 07:54:37bf54c931aa1b614c3f439e6c637cfd5c1c65cf71fc217cc2540ef349b61e0ec5exe Ransomware.Troldesh
2019-05-30 13:08:19d78d2ae644482d45196d92bcfc0b2d01788076010967a35c4673b836b4aca7ceexe Ransomware.Troldesh