URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ortotomsk.ru.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2019-02-05 17:38:14 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-05-30 04:47:2391.236.136.13s15-2.mx.webhost1.ruNot listedAS44094 WEBHOST1-AS- RUno
2019-02-05 17:38:1591.217.9.188s15-2.mx.webhost1.ruNot listedAS50340 SELECTEL-MSK- RUno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-02-21 22:32:02http://ortotomsk.ru/company/business/secur/view/jaiti6FhN...Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-02-19 20:46:05http://ortotomsk.ru/XmaxodB/Offlineemotet epoch2 exe heodo Clean@Cryptolaemus1
2019-02-14 09:00:03http://ortotomsk.ru/De_de/EHDBXWZBJO7581980/GER/Hilfestel...Offlineemotet heodo Clean@spamhaus
2019-02-12 01:11:11http://ortotomsk.ru/trust.accs.docs.biz/Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1
2019-02-07 17:48:15http://ortotomsk.ru/En/doc/mEtZg-szcJi_spMjMviIP-sk/Offlineemotet heodo Clean@spamhaus
2019-02-05 17:38:15http://ortotomsk.ru/O1v4nfV216KwNX/Offlineemotet epoch2 exe heodo Clean@Cryptolaemus1