URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mamamiya137.ru
Domain registrar: n/a
Domain registration date:2022-08-27 18:50:31 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2022-09-30 16:00:05 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-22 02:17:43 31.177.76.32Not listedAS48287 RU-CENTER- RUno
2025-07-22 02:17:43 31.177.80.32Not listedAS48287 RU-CENTER- RUno
2025-06-17 23:37:56 34.41.139.193193.139.41.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-06-17 23:37:56 34.159.223.4343.223.159.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- DEno
2025-04-27 10:18:15 34.132.102.66.102.132.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-27 10:18:15 34.136.111.8181.111.136.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-08-28 04:32:07 141.8.197.252net197-sw28.from.shNot listedAS35278 SPRINTHOST- RUno
2022-11-09 04:11:44 77.73.133.46Not listedAS215540 GCS-AS- DEno
2022-09-30 16:00:10 79.137.192.1079.137.192.10Not listedAS216246 RU-AEZA-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-11-19 05:30:12https://mamamiya137.ru/mine/NETSvc10.exeOfflineCoinMiner exe zbetcheckin
2022-11-19 03:48:07https://mamamiya137.ru/mine/NETSvc7.exeOfflineCoinMiner exe zbetcheckin
2022-11-11 05:00:12https://mamamiya137.ru/mine/NETSvc5.exeOfflineCoinMiner exe zbetcheckin
2022-10-27 07:09:10https://mamamiya137.ru/Smart.exeOfflineexe LaplasClipper vxvault
2022-10-24 07:05:05https://mamamiya137.ru/mine/ChomiumPath.exeOfflineexe LaplasClipper vxvault
2022-10-05 04:38:11https://mamamiya137.ru/mine/NETSvc8.exeOfflineCoinMiner CoinMiner.XMRig exe zbetcheckin
2022-09-30 16:00:10https://mamamiya137.ru/mine/NETSvc6.exeOfflineCoinMiner miner xmrig crep1x

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-12-02 13:45:4174c8c6a0f407ef4528a6941efcf6a06a40c009c18e6be4d8929ec79cf0e72f95exe  
2022-12-02 11:57:5762cc48c50393d4b3b67464e734824c7450db16b837ec2156027353bb2355c6acexe  
2022-12-02 10:16:325a9975d75cb3619dda09caa11dd0e4389e74ae23c37a239078ccae6f91c21972exe  
2022-12-02 09:17:269332fbe35b57e8f7301d7422b9edb54393b715e6d716e15104f0ca57af4186b2exe  
2022-12-02 05:38:58038766e57becf0a5bc9b280a4c14990df8833ccce7b0caa5574fea1c1f4dda3dexe  
2022-12-02 02:38:5571654c23f220144df239a256f49b2ef095b03b2d805978d6b380cfea331dd22dexe  
2022-12-02 02:06:174917dbdd7b43e309f416881c5704d468ab8f8789e681e3fcf7e3e4f2e54053e4exe  
2022-12-02 00:52:46d5c2a9ccc58a795abd3809c457d5279d5f5e48a979c75705cd8c0905d8365834exe  
2022-12-01 22:56:303f9656da9a434f26aa883e331ae78d80dc91cd91728b66a0a1ec187be378eb35exe  
2022-11-19 05:30:127bcab7072dac6fce4e62ac27752d38f817183db6a5ab1fbf0717a7adc400de7bexeCoinMiner
2022-11-19 03:48:06fc8104fc4da76a2b556e1bf4e900dc6828fab4cafeaf32b3001e8ba2ff68a200exeCoinMiner
2022-11-18 15:49:233c39c19a17c68b76ab916e85cc9d7a2e24525f4099a6d258f28dd27353febd25exeLaplasClipper
2022-11-17 12:46:2762b8e9437275cae17cd905270052beb519383f9bab76d4ac2d9865b21ba9db3fexe LaplasClipper
2022-11-15 10:40:58b6d92af464782b07ae75cd0ccdf3cfa38cc3b5e02aa95dfc90c14b39c0829c62exeLaplasClipper
2022-11-11 05:00:111516fd38b103458fca0ab1d8e06f38a0f4eeb9e8b4aa415fe1259d8f131f412aexeCoinMiner
2022-11-07 14:59:56f1c2175432d02dcddd03974bbecefb86b2d312757d3b5d650ebe84f33e41af68exe CoinMiner.XMRig
2022-11-07 14:53:2652901dc481d1be2129725e3c4810ae895f9840e27a1dce69630dedcf71b6c021exe LaplasClipper
2022-11-06 16:49:04996b5641b740bad298bf85d3d7a4066589f66931ae90b13bc44a3106111314b1exe CoinMiner
2022-11-02 06:51:158c77759eff69330a5c9697d05e2a0f99c6edff904bdd52a048df0461d0459b27exeLaplasClipper
2022-10-27 07:09:104be73a47825a39e0b571baae7dfbb5ee36609d26bc2ec8f6e45e84003bd80fcdexeLaplasClipper
2022-10-24 18:20:198789899d36045ba32e9ca43e663d3ae1b0ce7fec8c4a5f63d604900d4796cd84exe LaplasClipper
2022-10-24 07:05:05ad4080baa83c70ec3f8c0671b1d75bc85b17def9641be2e02aaf400811410b26exeLaplasClipper
2022-10-05 04:38:1167ad330292443e6a92c2ac01a855a8edf9ea82fa0bbd5a371b66b765bbc3d0f5exeCoinMiner
2022-10-05 04:20:26afad6ffd3c71f7c194e0cf987e4a0ad2441d7b706d037248c73a9d921be27c5eexe CoinMiner
2022-09-30 16:00:092d149bca64703b7cf996a772ba91423da1e1f11dbae522f3e4d3b34095d3b89dexeCoinMiner