URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: oooprog.ru
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2021-05-18 16:48:02 UTC
Total malware sites :7
Online malware sites :0 (0%)
Offline Malware sites :7 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-12-09 14:55:26 88.212.208.6767-208-212-88.host.exepto.ruNot listedAS39134 UNITEDNET- RUyes
2025-04-27 08:42:31 91.226.92.8shared-8.sibhoster.ruNot listedAS12389 ROSTELECOM-AS- RUno
2021-05-18 16:48:05 91.226.92.10v1.sibhoster.ruNot listedAS12389 ROSTELECOM-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-05-27 18:59:04http://oooprog.ru/figureso/qbtotakew.exeOffline info_sec_ca
2021-05-25 16:14:04http://oooprog.ru/reqokihv/rfvytufhf.exeOffline info_sec_ca
2021-05-25 10:29:04http://oooprog.ru/amcomes/graced2.exeOfflineexe Loki ext zbetcheckin
2021-05-25 09:07:06http://oooprog.ru/backup/retretwork.exeOfflineexe Loki ext abuse_ch
2021-05-19 13:11:05http://oooprog.ru/huverloop/vzwawork.exeOfflineexe Loki ext zbetcheckin
2021-05-19 01:10:05http://oooprog.ru/wintrol/mx1.exeOfflineexe Loki ext zbetcheckin
2021-05-18 16:48:05http://oooprog.ru/plugin/rqotcar.exeOfflineLoki ext info_sec_ca

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-05-25 10:29:04646bf35f80c438f3ce001c87efddcf34baff5dfceab6d170d9cba72bccb72ee6exeLoki
2021-05-25 09:07:068f02c7003ac4711162d7bf7b6f64fba78c6fc6e3179fd8f30c08a075fb4f7a43exeLoki
2021-05-19 13:11:05b8934d2a6daca6a21badf97c95d9bcc2909fc74bb8fe1ff485c703e17df109b8exeLoki
2021-05-19 01:10:04412c4fb1afdd90879defd320ee66f96a3fad92f40e3dc725dd59df24357cfd1fexeLoki
2021-05-18 16:48:043caee5de346125351a158808884d7e19f0721fadb9dd907be7f18de6a0688dc9exeLoki