URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kuyporn.com
Domain registrar:Namecheap -
Domain registration date:2020-03-08 06:47:08 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-26 23:09:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :14

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-02-05 00:27:46 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ano
2022-02-05 00:27:46 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2022-01-26 23:10:08 104.21.11.177Not listedAS13335 CLOUDFLARENETn/ano
2022-01-26 23:10:07 172.67.149.209Not listedAS13335 CLOUDFLARENETn/ano
2022-09-20 23:59:14 188.114.96.5Not listedAS13335 CLOUDFLARENETn/ano
2022-09-20 23:59:14 188.114.97.5Not listedAS13335 CLOUDFLARENETn/ano
2022-06-05 11:20:40 188.114.96.2Not listedAS13335 CLOUDFLARENETn/ano
2022-06-05 11:20:40 188.114.97.2Not listedAS13335 CLOUDFLARENETn/ano
2022-05-07 17:11:05 188.114.96.6Not listedAS13335 CLOUDFLARENETn/ano
2022-05-07 17:11:05 188.114.97.6Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-27 14:11:09http://kuyporn.com/wp-content/XSs5/Offlinedll emotet ext epoch5 unixronin
2022-01-26 23:10:08https://kuyporn.com/wp-content/XSs5/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-19 15:49:10ee1b39c7563a437d2b29156219baefa5fe6429d8dccca353e6ec60c154c86317zip  
2022-01-27 06:10:32da59c095920ffb504ea7ee72b6677130384fbffba6a87f0cb0e28a5b9efb503fdll Heodo
2022-01-27 04:33:01e39a17b6a08e20415e2ca06f278c2265ff1998d02cc3bf33d0bf4c14afd01373dll Heodo
2022-01-27 04:24:11502dce43f73b9607ec9da5324ceb04483623c0d676a0472510ca2eb6963816c3dll Heodo
2022-01-27 03:58:58d9ad9968b75ba86e75f365a63061165d747eab3a50021c4e3ea46ca3807f4780dll Heodo
2022-01-27 03:47:09b1562438849f57fc524afa55138062e31752e39b52665992ed501e5c8a0e7168dll Heodo
2022-01-27 03:26:398bb185b275349686d54f2df5bd4496732422bd7e8b5aadb3855c3b89d3387d43dll Heodo
2022-01-27 03:09:124af21a4b031cba8f9c45891dbf6fe9fed7aa4be9593725608aa8031d1f3a6431dll Heodo
2022-01-27 02:52:23a436bcba18c588736e74e936642b8398da5e107d500a488ae83c4868e252aa26dll Heodo
2022-01-27 02:34:2932d8732bddf85d6e90fd4bc26a04603914879da2415aae2ac88094799ef6388fdll Heodo
2022-01-27 02:17:18766be27c7445bbcee653e1c32c5de61032916753938b2e55f039f86e048e8724dll Heodo
2022-01-27 02:09:30611f2de73c5030d174c270e60d5e086e06909cc88a36ab90c3faaae722bec948dll Heodo
2022-01-27 01:46:12d7c1b4e5da0667cfb492d73f86d6d1fe8a62027bc854d31ae66b80d6f1802a37dll Heodo
2022-01-27 01:28:58a785b59806c2e8db8c14dc5dc83a481ff7b9cb9c2d69bd30577c49d10dda0249dll Heodo
2022-01-27 01:09:200309d698edf914856373127dcadd614db73c33a691794879f4efd88507bff25ddll Heodo
2022-01-27 01:02:200831dbc361c2eeae4706288be50e6b1a6b8177ce8aa15db576a4f2d2a0738a0adll Heodo
2022-01-27 00:43:452fc4ba13ca9e25651acc9a7f13218cf098c4a79095cc11a9f93eccae0aacf3dbdll Heodo
2022-01-27 00:31:44298511f1252d569cab1ef8e6fd655720a3acdb7d6a43a562eb587fdf6765399ddll Heodo
2022-01-27 00:12:24328f1315d7f8244409bd9055459edbabcbf7abc76efd1a2c66dd0f6613c22971dllHeodo
2022-01-26 23:58:59e2eaee0d658fd90d3f24e260baf477091583401b6535a8284b4f6ef8c938013ddll Heodo
2022-01-26 23:41:37479ba2643ef85330113666971ced06891c1d5b038eab3ca257a74349dca03e83dll Heodo
2022-01-26 23:34:00b6750f72fde243596a70cc3c0091844e0bc934a503535d105bb190634a3e76fbdll Heodo
2022-01-26 23:10:06747b5b63876be540868007a8f875c5b1686ce707813412202f39e0bbc77dce2cdll Heodo