URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kemard12e.ru.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-04-12 13:47:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-05-22 13:16:55 141.8.226.34Not listedAS401348 DMNL-ASN-01- VGno
2022-04-14 16:45:40 194.67.71.140Not listedAS197695 AS-REGRU- RUno
2021-04-17 21:23:22 34.86.137.163163.137.86.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2021-04-17 12:08:59 95.179.186.7795.179.186.77.vultrusercontent.comNot listedAS20473 AS-VULTR- NLno
2021-04-15 11:01:15 34.95.253.189189.253.95.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- BRno
2021-04-14 13:36:25 8.209.69.51Not listedAS45102 ALIBABA-CN-NET- DEno
2021-04-14 08:13:20 34.125.195.3232.195.125.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2021-04-12 13:47:06 8.211.4.209Not listedAS45102 ALIBABA-CN-NET- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-04-12 14:04:12http://kemard12e.ru.com/ex.htmlOfflineb-TDS Quakbot ext abuse_ch
2021-04-12 13:47:06http://kemard12e.ru.com/exOfflineITA Qakbot ext qbot ext reecdeep

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-05-03 18:32:156765c99b2d57808880d08e831610251a74ca8c2aafdc5766a9236cb3721afd23dll Quakbot
2021-04-30 20:58:273918247128fd4312de9fd6a0ca1fa4f9401d525da4ed2772706c328f6e871641dll 
2021-04-30 19:18:070f54d60d76a0459811af4be3efb2ee07aef2916da72f7723447ad67cf64c8dc7dll Quakbot
2021-04-30 18:06:1466bae09a473ee3bca0613ddeb050811e523aa69960658e67b553dc8b410ee5a8dll Quakbot
2021-04-30 17:03:120db1c8a043efec1941e971cb0f007b35bf1f5c620fa493913d8d1bb5faadc7d5dll Quakbot
2021-04-30 15:59:2000c1f64cbe3e7afe22c38abf3b429dbe1b0da9ba82251ff4361691bd5febad8cdll Quakbot
2021-04-30 10:27:30d09589eacddd4be050099723d4498382a92f7d358153fb0c86125cefc7a5b879dll Quakbot
2021-04-30 06:05:472afc220a849e89dde674186d2bc37095216d2ad84e1b5702f944648344ff0458dll Quakbot
2021-04-30 01:14:587c8571e6c5b4a3717714930a258529eb0ec967b22fa9015fcb96236c5e22c7a1dll Quakbot
2021-04-29 20:57:432874d063541433e03d2af9eeff113d3ab2c47f5c95a84a74e26247be86fb6bf1dll Quakbot
2021-04-29 19:38:4546f36cac0ef7644a262c1ec64dc6d2ccaf1c36b3230792a36522632394d418c7dll Quakbot
2021-04-29 18:27:4066712b355c3589e575b0591b63ad1c52c5e6ae9936d76a2ff5e6f67a73c68dcadll Quakbot
2021-04-29 17:21:086f6d9f4189a226b643be468786d63b255dfc126fdc62bbb124c3d6577c08ac3bdll Quakbot
2021-04-29 16:15:489528d1347dbefad225e1c4b7c685f9bda9552db5a0f5c0186ba4cfd8178c0fcedll Quakbot
2021-04-18 23:31:3215378cdcf98f674922e9000734d1915309bc0b4aa4fe03bcd811d436373136d4dll Quakbot
2021-04-18 10:53:254f6f3108fec5e98d7669b3809046b1db60667449075d4bc7bcc4defcce3da2a9dll Quakbot
2021-04-18 06:45:191ce69a4e24bbacaef652e5b8e90d1ab828ba4d29b5b1f76d2599bbc51cc94ca8dll Quakbot
2021-04-18 05:51:088ff50e4a2e8fba97d21eefb4b66c8049bdcd821247ec679637fbf27a32fe2162dll Quakbot
2021-04-18 05:39:42e00bbaee1f9ae547f1d800c9a122b000091e3ba2bd9e9461ac1c20aafef8a4c2dll Quakbot
2021-04-17 17:22:4660abaa134597d16580257c057cfb0ee896d6f9e193a33f4d4274436393cfd4c0dll Quakbot
2021-04-17 04:48:34dede598e8668cd55bc566968e379732bffc7ffac23ca404c724ec519d31650e5dll Quakbot
2021-04-16 22:57:4782adba8d18d29a2a69ee96f48d10a944bed923fab6c52294e68490d8cb946719dll Quakbot
2021-04-16 18:50:04ab156ebc68cc7f343902374e0a4c8e7b390079a113a4f5f52038dd957a100cecdll Quakbot
2021-04-16 14:43:32abb0b5b6723a0a85fb212db75ac8e187bcba85dfa8a5597c6aec2253da6e031ddll Quakbot
2021-04-16 05:06:380275c7b3c94a82282ed92f255987b98312d2d7db2ab7aba901707fce4ef96202dll Quakbot
2021-04-15 14:11:577608bc544a698e28ac1d7ed3c7956b6ff147a6a04f3250ae4bc871ecdb37f284dll Quakbot
2021-04-15 11:01:1113e672f890f0ed5a092176158e8d994c1f692f731c489af3609e11b85db195e5dll Quakbot
2021-04-15 06:04:20ea29750b30a7f49f62fae5e5363282807be42831a7d8636cdbfe01468aeb4e14dll Quakbot
2021-04-14 21:42:35d84d3d077e4360033c2d6b783f05887a1ea97894c4cad0afa4e15eff837bce69dll Quakbot
2021-04-14 08:13:15e7d05e57e1efa001600bf0fd62fceb0b12ad37a750c1881432d1c4686d256533dll Quakbot
2021-04-14 04:01:235072be7079f30918f15012580dece0565d1b25bcbf522d8f38b60ac85dec3f0adll Quakbot
2021-04-13 23:50:57ae871e00bd45e229a77d6e23a9482f1b1d7fa6c7f0d10b66383ab937042586cedll Quakbot
2021-04-13 19:45:548f0b4ac2f33ced472e3e2ae7ebb099f807eac575b60209975bb165606616c80cdll Quakbot
2021-04-13 18:58:30067ce1c3490005c43037db3f7f005b1d90dfbf4c1596f66aed03e2ccee42c6b4dll Quakbot
2021-04-13 14:55:47b8b006cc576bcb14550edd571bb3853f4e8283c94116bd916f908adf64f2da32dll Quakbot
2021-04-13 10:50:29c5e553f663871712e51fff2a9bce1ee16bf25c9aff746c931066e6c25f035ff5dllQuakbot
2021-04-13 07:51:16500c6c2dd903a6584d2a1e5b1bb9d63a837412d305ef8adebd4661cc6ec4a56ddllQuakbot
2021-04-13 03:49:44d34a8790bafa9607cdd0c2edcf4d9ca35d23335d5dab867f4b1135c074606861dllQuakbot
2021-04-12 23:48:50edc88ef64eed3814a1878da96aef6014fc37a546f401b2fa603e6eb005702ddfdll Quakbot
2021-04-12 19:43:110b231042c6d55b8211fb3066fe56da86424ba4f36bb3e573919b887d5c799f94dll Quakbot
2021-04-12 14:13:022c94a7e8ffd221e0d563d8ccc9252b70cea56388ebd9b4441f9a728fa4020507dllQuakbot
2021-04-12 14:04:11baa5919721fc71b49c97a68af9303cbc84da582a0cec39dfbf521ed8165934acdll Quakbot