URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: specificsecurity.ru
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-10-16 18:24:04 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-04 07:43:51 194.67.71.174Not listedAS197695 AS-REGRU- RUno
2024-10-16 18:24:14 79.110.62.15Not listedAS213893 IPTR-AS- BGno
2025-09-30 20:05:06 194.67.71.103Not listedAS197695 AS-REGRU- RUno
2025-09-25 02:52:44 194.67.71.124Not listedAS197695 AS-REGRU- RUno
2025-09-19 06:08:20 194.67.71.131Not listedAS197695 AS-REGRU- RUno
2025-09-22 06:36:06 194.67.71.140Not listedAS197695 AS-REGRU- RUno
2025-10-03 01:33:30 194.67.71.176Not listedAS197695 AS-REGRU- RUno
2025-09-09 01:30:24 194.67.71.183Not listedAS197695 AS-REGRU- RUno
2025-09-04 02:24:02 194.67.71.21Not listedAS197695 AS-REGRU- RUno
2025-10-03 18:35:38 194.67.71.46Not listedAS197695 AS-REGRU- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-10-16 18:29:09http://specificsecurity.ru/NfjxzZz9jn/Plugins/c...OfflineAmadey abus3reports
2024-10-16 18:29:09http://specificsecurity.ru/NfjxzZz9jn/Plugins/c...OfflineAmadey abus3reports
2024-10-16 18:28:10http://specificsecurity.ru/NfjxzZz9jn/Plugins/c...OfflineAmadey abus3reports
2024-10-16 18:24:14http://specificsecurity.ru/NfjxzZz9jn/Plugins/c...OfflineAmadey abus3reports

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-10-16 18:29:091a085e145268798a5d9cb955eb3ab785b76e5c1aef2ff60fed45d81fcb8e2421dll Amadey
2024-10-16 18:29:081a085e145268798a5d9cb955eb3ab785b76e5c1aef2ff60fed45d81fcb8e2421dll Amadey
2024-10-16 18:28:10f8dc1e4d3a7b22529a99578313d6168aa5f915913217b1ed4348f773f0a37c4edllAmadey
2024-10-16 18:24:09efadeacca8afa370fce709a27632f7d9a7d684cb55840024421f740494d69633dll Amadey