URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kuznetsov.ca
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-12-13 10:14:17 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:52:24 158.85.87.76slave2.namespro.caNot listedAS36351 SOFTLAYER- CAyes
2019-12-13 10:14:20 173.0.129.42Not listedAS53628 APYLI-AS- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-12-17 02:53:07http://kuznetsov.ca/thumbs/yEY-BOIx-45/Offlinedoc emotet ext epoch3 heodo ext spamhaus
2019-12-13 10:14:20http://kuznetsov.ca/thumbs/y/Offlineemotet ext epoch2 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-12-14 17:45:45befd9fa4f8c02701387397d61fa9a1a5e4a555783fd7f1416e37790a66a8bcb3exe Heodo
2019-12-14 15:44:3710d00fa6ecd1746acb0415e2fafdee40f810aaac9926770d544ebb6ae163081eexe Heodo
2019-12-14 15:28:556f3c172a0fc3a5c3f4626fc4ac2b09f1df71d54ad89a10f10656fb3a9dce2fe4exe Heodo
2019-12-14 13:42:45829d320a94bc45c699a4a9a1757b2bfb428ef54a80232b5dc21ad40eccbd4bebexe Heodo
2019-12-14 11:41:31c9cca01782369a5f3b391a9a6e77b560d9e73b7819a398f91882cf86b9fafee7exe Heodo
2019-12-14 03:00:45181a79a35af190ce05e5bac09e23d8670c247db0b55f465ff2af8c834e984ed6exeHeodo
2019-12-14 01:36:426cf54601213e918f6f70d5d1a394932ba42bf99415392125f57453f38725d1d4exe Heodo
2019-12-13 23:34:4051fa2da211b25dfa56b759c79d7b52c4615b3f4beebcde07a49ba3d4776062c8exe Heodo
2019-12-13 22:28:39d3abf622be77f3224e376c0ddac558c6ad9adbe4a924202dac4f848e4cb7718bexe Heodo
2019-12-13 20:27:30218a87ca8c818acf90e3e7ee180a7d064d55c10f6c2f172ddaa9941f8c1c9531exe Heodo
2019-12-13 19:17:266cc2a126b3bc3dc955f8d7f93aa12d03acf034b86051073ea8356e14aaa0bc51exe Heodo
2019-12-13 17:16:25ee27ce622d86fc20b1805c2ad66dd90bd7c235083e17217d38ee292488cb19c5exe Heodo
2019-12-13 15:14:24f3e808e32691a551ff0f364946d2d1d273c60977c58a21f16a331634c4732853exe Heodo
2019-12-13 14:01:19f7dda1c623e8da4b16f3fe8573b536ce6fe4bb9d60b0c6c2abb8f236c72057c0exe Heodo
2019-12-13 12:00:18f8fe29f7411d466c75e5057bc341c958e6bc4895338f9cb67dcea1ac31d33239exe Heodo
2019-12-13 10:14:19479943dc8e5c1335b3210310fddffdc06857796ecb5a1e7872595023875602f2exe Heodo