URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: knightmaresolutions.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-05-17 13:47:15 UTC
Total malware sites :23
Online malware sites :0 (0%)
Offline Malware sites :23 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-10-17 11:04:02 34.98.99.3030.99.98.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2021-05-31 11:55:34 45.60.22.24Not listedAS19551 INCAPSULA- USno
2021-05-31 11:55:34 45.60.98.24Not listedAS19551 INCAPSULA- USno
2021-05-17 13:47:19 192.254.232.38192-254-232-38.unifiedlayer.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno
2021-05-27 07:52:42 107.154.146.183107.154.146.183.ip.incapdns.netNot listedAS19551 INCAPSULA- USno
2021-05-27 07:52:41 45.60.96.183Not listedAS19551 INCAPSULA- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-09-30 06:20:10http://knightmaresolutions.net/10/data64_1.exeOffline abuse_ch
2022-09-30 06:20:06http://knightmaresolutions.net/webArg10.txtOffline abuse_ch
2022-09-30 06:20:05http://knightmaresolutions.net/webArg16.txtOffline abuse_ch
2022-09-30 06:20:05http://knightmaresolutions.net/16/data64_2.exeOffline abuse_ch
2022-09-30 06:20:05http://knightmaresolutions.net/10/data64_2.exeOffline abuse_ch
2022-09-30 06:20:05http://knightmaresolutions.net/16/data64_1.exeOffline abuse_ch
2022-09-30 06:20:05http://knightmaresolutions.net/10/data64_6.exeOffline abuse_ch
2022-09-27 05:50:05http://knightmaresolutions.net/10/data64_3.exeOfflineArkeiStealer ext exe abuse_ch
2022-09-27 04:53:06http://knightmaresolutions.net/17/data64_6.exeOffline32 cryptbot CryptOne exe zbetcheckin
2022-09-27 04:38:05http://knightmaresolutions.net/12/data64_5.exeOffline32 exe zbetcheckin
2022-09-27 04:37:07http://knightmaresolutions.net/10/data64_5.exeOffline32 exe zbetcheckin
2022-09-26 08:18:15http://knightmaresolutions.net/12/data64_4.exeOfflineexe RedLineStealer ext abuse_ch
2022-09-26 04:12:14http://knightmaresolutions.net/12/data64_3.exeOffline32 ArkeiStealer ext exe zbetcheckin
2022-09-26 04:12:13http://knightmaresolutions.net/17/data64_4.exeOffline32 exe RedLineStealer ext zbetcheckin
2022-09-26 04:11:10http://knightmaresolutions.net/17/data64_5.exeOffline32 exe zbetcheckin
2022-09-26 04:11:09http://knightmaresolutions.net/17/data64_3.exeOffline32 ArkeiStealer ext exe zbetcheckin
2022-09-26 04:11:05http://knightmaresolutions.net/12/data64_6.exeOffline32 CryptOne exe zbetcheckin
2022-09-25 07:29:07http://knightmaresolutions.net/16/data64_6.exeOfflinecryptbot CryptOne exe abuse_ch
2022-09-25 07:09:13http://knightmaresolutions.net/16/data64_4.exeOfflineexe RedLineStealer ext abuse_ch
2022-09-25 07:08:09http://knightmaresolutions.net/16/data64_5.exeOfflineexe abuse_ch
2022-09-25 07:07:08http://knightmaresolutions.net/16/data64_3.exeOfflineArkeiStealer ext exe abuse_ch
2022-09-25 06:59:11http://knightmaresolutions.net/10/data64_4.exeOfflineexe RedLineStealer ext abuse_ch
2021-05-17 13:47:20https://knightmaresolutions.net/ewq/Noah.Willia...Offlineb-TDS html Qakbot ext qbot ext SilentBuilder TR zip Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-09-30 06:20:10500835cd9506b907dce807fef2fe2ab7f382a7d252a8b09052b6dafe8b615762exe  
2022-09-28 20:40:52e4af63a51847d2b9b538862d20d14a15a879e886820c5419940bbfefe25cbf67exe 
2022-09-28 20:21:17b2c1e70f30e4d975f591d4e91bc6ba75983a0febff66dcb8a046f0a20776e11bexeRedLineStealer
2022-09-28 19:49:279569918b93b9b82de4b92ade819b2b20fe09ed0c7767538fe3709133b8c8fff1exe RedLineStealer
2022-09-28 19:10:21e4af63a51847d2b9b538862d20d14a15a879e886820c5419940bbfefe25cbf67exe 
2022-09-28 19:04:548c57bc7023c1b437b8bb49c9d9f1e41f63805b441a4365dd2ff33d5252078a83exeCryptBot
2022-09-28 19:02:448c57bc7023c1b437b8bb49c9d9f1e41f63805b441a4365dd2ff33d5252078a83exeCryptBot
2022-09-28 18:50:31b9c150aa535b058b690f81cb9966da3d982a710a18ef4344fc978d463022bba8exe RedLineStealer
2022-09-28 18:49:52e4af63a51847d2b9b538862d20d14a15a879e886820c5419940bbfefe25cbf67exe 
2022-09-28 18:42:532582fab2adc3e880f3baa8fe8076ee9e97ff16cb65c099c70cca57fd629aa3c2exe ArkeiStealer
2022-09-28 18:36:5735c4f0759d7ea5dde09144afcdefbecbe3ec46438a0146bbf78d4c8b2e6589beexe ArkeiStealer
2022-09-27 11:24:1614d4fc388f672efad43e9b49ce9c4ceab030ac212603610a48bb30a8eb6f6ce4exe  
2022-09-27 11:04:5814d4fc388f672efad43e9b49ce9c4ceab030ac212603610a48bb30a8eb6f6ce4exe  
2022-09-27 11:04:5214d4fc388f672efad43e9b49ce9c4ceab030ac212603610a48bb30a8eb6f6ce4exe  
2022-09-27 05:50:0578fd273090d2697ec2d7bf6b2d300413dc92d6f25c05443e80e7d3f0f9d8867cexeArkeiStealer
2022-09-27 04:53:063a0597925d2b7686d2386591f60a7abe686c0e10e2e164405270cc0d83e4b128exeCryptOne
2022-09-27 04:38:05621138685d13638a0ec064ca8b1858198116c6699c02eff23fd1d0a841917e4aexe 
2022-09-27 04:37:07621138685d13638a0ec064ca8b1858198116c6699c02eff23fd1d0a841917e4aexe 
2022-09-26 12:05:579824cbd1f17ca98049d3e69bbd9b0e137d7eb13beb51e333bcb737e45d0a5d0eexe ArkeiStealer
2022-09-26 12:05:411beaef74306bbdd4be8b54bc51cc89df09ab313ce0a2c1a60342b109ab850912exe ArkeiStealer
2022-09-26 12:02:35d7f6081b69a74878ff57b139586232e559408cd5bfdc82c5af023c21c8a8fcfcexe RedLineStealer
2022-09-26 11:56:435040da9e81f49ff64c1ca595e6649c8b6f3288835c70cc67364f3f1ca979d047exe ArkeiStealer
2022-09-26 11:56:29621138685d13638a0ec064ca8b1858198116c6699c02eff23fd1d0a841917e4aexe 
2022-09-26 11:55:423a0597925d2b7686d2386591f60a7abe686c0e10e2e164405270cc0d83e4b128exeCryptOne
2022-09-26 11:53:45b1c40ded5b798303fc9ee12e12f58ed66288f87b952812aff63b9c0cf0e07811exeRedLineStealer
2022-09-26 11:52:483a0597925d2b7686d2386591f60a7abe686c0e10e2e164405270cc0d83e4b128exeCryptOne
2022-09-26 11:51:083a7814a744bff6a580e2ca6ddecb8513bd567f5df09e7b6d223ecd8f45eb875aexeRedLineStealer
2022-09-26 11:47:21621138685d13638a0ec064ca8b1858198116c6699c02eff23fd1d0a841917e4aexe 
2022-09-26 11:45:34a066952253a135051c8e916db0f3335c0c66ca840489e945066d8ca2fe2e12e0exe RedLineStealer
2022-09-26 08:18:133f3a8afe1462b065ea7ff3a60f64108b109f17664b8628077eba1bf2856122cfexeRedLineStealer
2022-09-26 04:12:147a2a40b536d4cc69886636cfee52eda36c84b8ef3aacef5d45ac599610a81dabexeArkeiStealer
2022-09-26 04:12:1378c6c77ec2b36ad4a40bee8eea816e57606427aedc3efe44c966203b440b07e7exeRedLineStealer
2022-09-26 04:11:10d3061098277ac0e6dbc8f21e232e8b8514dca48b8b6b95cc583a6049d36eaf1fexe 
2022-09-26 04:11:09536a39f5ff898717ba9b02b146e0cc11bab0ae6d2cb7e7c6926a92171daadb98exeArkeiStealer
2022-09-26 04:11:0531fe316bc8265764d41ee84f7a651857c78b64ef35254f7418de8dbe97bc4f04exe 
2022-09-25 18:44:3731fe316bc8265764d41ee84f7a651857c78b64ef35254f7418de8dbe97bc4f04exe 
2022-09-25 13:22:373652771cd23a8ed349b513ca9654980f18038cb778afb653a736fa319907dd1dexe  
2022-09-25 08:06:205547cb13b66711f96fa79989d901c0c3d1f3dc32185425e02218dd3b3b02cff9exe  
2022-09-25 07:29:072dc3a07e0250d68897ce410535111862be783922356b9a687a349235e8b484d1exeCryptOne
2022-09-25 07:09:132dbbf8e073f27ff97d582ad9b84a66c9692074bcfd0ea574b59a540661955d6bexeRedLineStealer
2022-09-25 07:08:09d3061098277ac0e6dbc8f21e232e8b8514dca48b8b6b95cc583a6049d36eaf1fexe 
2022-09-25 07:07:08acd478880086402aaaeea0f106d0f37790ee6775ff6d3e398fb4fcdf26f622b4exeArkeiStealer
2022-09-25 06:59:1145fa9fe3c81b24b904617aad27ab836e99b3e45252d0ffc684e901a24442aa25exeRedLineStealer
2021-05-17 13:47:18d28f90c0acda1182103978d5b4086c34df292548564982858d31a9dadd97ba2bhtml