URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: prudprofi.ru
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 18:13:02 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-17 23:17:44 194.67.71.178Not listedAS197695 AS-REGRU- RUyes
2025-10-30 02:49:59 91.236.116.20Not listedAS42237 w1n- SEno
2025-05-05 08:27:30 104.21.27.197Not listedAS13335 CLOUDFLARENETn/ano
2025-05-05 08:27:30 172.67.169.163Not listedAS13335 CLOUDFLARENETn/ano
2020-08-14 18:13:04 31.31.196.178server195.hosting.reg.ruNot listedAS197695 AS-REGRU- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 18:13:04http://prudprofi.ru/engl/private-resource/test-...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 03:01:2102a59b06449a3ba4194e86770a7589c843a4cc341f544ca925d6c2d20f31d237docHeodo
2020-08-15 02:35:35e30f2187480717774431c9396520d352f50a92b8ed57838d535ba1da580b6251docHeodo
2020-08-15 01:02:491734600511f94a2370e03e5367dd885e52858cbef41ea6d3e06ca06370573260docHeodo
2020-08-15 00:42:0764d7da61bc5e477dcd94a4ec0bb3d8c5b2a8047f4118704f2e7be561cf217b0edocHeodo
2020-08-15 00:05:4698d32a982e82317e6e164544ad927cc3cf845e4276795e7ce6e2dc9ebb297724docHeodo
2020-08-14 22:31:17d07ec4fc9657ea145484957e5b68242e719e4a327f4f1c7b1fe940ae182fdc84docHeodo
2020-08-14 22:13:029517fc7b84b22b3d4f23e53877062e2d46f1491e927b91eea03a9f3fe2dc5571docHeodo
2020-08-14 21:58:11173df21dc8e0990b1ade96100cf23e856b57be743461a3edd656e2a245582092docHeodo
2020-08-14 21:37:25e3cfaefd87b2aa287ac22562cc177ec6744c3c9ac27db58b5d2bb7625b694d3ddocHeodo
2020-08-14 21:22:132c50f621efded90cba64805311afc4551d077fef0ac40824b8384ad4118640a9docHeodo
2020-08-14 21:02:351433d3df056954f5b077a1c1c8e643424314a7589ed48c3a33b42038d3d72f2bdocHeodo
2020-08-14 20:18:51665456af44fc843e545d1937baeefa7a85f67eaf4b0c1254adf627ceb4024372docHeodo
2020-08-14 19:54:36c74d9497f6e45b986c8d3aa90e037e0bdf572731082d874ca8187cd51fd90486docHeodo
2020-08-14 19:28:17171778f3f71370ac71991a37d610af0b288786d43479051653130914d8460ba6docHeodo
2020-08-14 19:00:5160b231a19337090e1e24af444fb1b34c6a906e83ad077bd2767706176c275974docHeodo
2020-08-14 18:31:15ca892e2e1fc6ecc27842bda8c95ad80e56f74fa8721ace19c21213c09144492edocHeodo
2020-08-14 18:13:04b4fa9b7b96176c586634c7b58161214316966e9fb61a6df74d28fd458433bed7docHeodo