URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host kikidoyoulabme222.ru.

Database Entry


Host:kikidoyoulabme222.ru
Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-11-22 15:02:02 UTC

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-08-03 07:02:28109.70.26.37expirepages-kiae-1.nic.ruNot listedAS48287 RU-SERVICE-AS- RUyes
2019-08-03 07:02:28194.85.61.76expirepages-kiae-2.nic.ruNot listedAS48287 RU-SERVICE-AS- RUyes
2018-12-03 11:48:45109.237.111.185Not listedAS57494 ADMAN-AS- RUno
2018-12-03 04:15:29194.87.94.80ptr.ruvds.comSBL444604AS48347 MTW-AS- RUno
2018-12-01 19:30:29109.237.108.57Not listedAS57494 ADMAN-AS- RUno
2018-12-01 06:01:06194.87.98.96ptr.ruvds.comNot listedAS48347 MTW-AS- RUno
2018-11-30 01:25:4731.148.99.92329895.msk-kvm.ruNot listedAS48666 AS-MAROSNET Moscow, Russia- RUno
2018-11-28 20:30:0291.103.252.672004.vm.hostglobal.wsSBL425369AS202306 HOSTGLOBALPLUS-AS- RUno
2018-11-27 18:12:08185.178.45.234vds-cf89904.timeweb.ruNot listedAS9123 TIMEWEB-AS- RUno
2018-11-27 18:12:0891.201.65.195kaermanher.sale-dedic.euNot listedAS56630 MELBICOM-EU-AS Melbikomas UAB- ITno
2018-11-27 18:12:085.188.232.58rusrealtypromo.ruNot listedAS49981 WORLDSTREAM- NLno
2018-11-26 07:46:16109.234.36.159host-109-234-36-159.hosted-by-vdsina.ruNot listedAS48282 MCHOST-AS- RUno
2018-11-25 21:10:5295.142.47.227host-95-142-47-227.hosted-by-vdsina.ruNot listedAS48282 MCHOST-AS- RUno
2018-11-24 20:42:13185.178.44.250vds-cr30292.timeweb.ruNot listedAS9123 TIMEWEB-AS- RUno
2018-11-24 02:40:57185.162.131.18customer.clientshostname.comNot listedAS14576 HOSTING-SOLUTIONS - Hosting Solution Ltd.- USno
2018-11-24 02:40:575.188.232.243mail.ruspost.ru.comNot listedAS49981 WORLDSTREAM- NLno
2018-11-23 23:55:1295.181.179.143kropotovds.example.comNot listedAS57311 NEOHOST-AS- RUno
2018-11-23 14:45:40185.224.249.37kropotovds.sale-dedic.euNot listedAS56630 MELBICOM-EU-AS Melbikomas UAB- RUno
2018-11-22 15:02:08192.162.244.13Not listedAS16262 DATACHEAP-LLC-AS- RUno
2018-11-22 15:02:08185.224.251.77alkonsaer.sale-dedic.euNot listedAS56630 MELBICOM-EU-AS Melbikomas UAB- RUno
2018-11-22 15:02:08185.224.249.72Not listedAS56630 MELBICOM-EU-AS Melbikomas UAB- RUno
2018-11-22 15:02:08176.113.83.92ptr.ruvds.comNot listedAS48347 MTW-ASn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-12-02 23:02:03http://kikidoyoulabme222.ru/zz/r11111.exeOfflineexe Ransomware.GandCrab Clean@zbetcheckin
2018-11-29 04:05:05http://kikidoyoulabme222.ru/zz/zilla.exeOfflineexe godzilla Ransomware.GandCrab Clean@zbetcheckin
2018-11-28 16:12:07http://kikidoyoulabme222.ru/zz/im2.exeOfflineexe ImminentRAT Clean@zbetcheckin
2018-11-22 23:11:07http://kikidoyoulabme222.ru/r2.exeOfflineexe Ransomware.GandCrab Clean@zbetcheckin
2018-11-22 23:10:37http://kikidoyoulabme222.ru/pp.exeOfflineexe ImminentRAT RemcosRAT Clean@zbetcheckin
2018-11-22 22:59:05http://kikidoyoulabme222.ru/azonet.exeOfflineAZORult exe Clean@zbetcheckin
2018-11-22 22:22:08http://kikidoyoulabme222.ru/r1.exeOfflineexe Ransomware.GandCrab Clean@zbetcheckin
2018-11-22 22:22:07http://kikidoyoulabme222.ru/azonative.exeOfflineAZORult exe Ransomware.GandCrab Clean@zbetcheckin
2018-11-22 15:02:09http://kikidoyoulabme222.ru/zz/r2.exeOfflineexe Ransomware.GandCrab Clean@abuse_ch
2018-11-22 15:02:08http://kikidoyoulabme222.ru/zz/r1.exeOfflineexe Ransomware.GandCrab Clean@abuse_ch