URLhaus Database
Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).
Database Entry
| Host: | specificsecurity.ru |
|---|---|
| Spamhaus DBL : | Not blocked |
| SURBL : | Not blocked |
| Quad9 : | Status unknown |
| AdGuard : | Not blocked |
| Cloudflare : | Blocked |
| ProtonDNS : | Status unknown |
| OpenBLD : | Blocked |
| DNS4EU : | Blocked |
| Control D HaGeZi : | Not blocked |
| Firstseen: | 2024-10-16 18:24:04 UTC |
| Total malware sites : | 4 |
| Online malware sites : | 0 (0%) |
| Offline Malware sites : | 4 (100%) |
| A record(s) observed : | 12 |
IP addresses
The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.
| Firstseen (UTC) | IP address | Hostname | SBL | ASN | Country | Active? |
|---|---|---|---|---|---|---|
| 2025-09-04 07:43:51 | 194.67.71.174 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2024-10-16 18:24:14 | 79.110.62.15 | Not listed | AS213893 IPTR-AS | BG | no | |
| 2025-09-30 20:05:06 | 194.67.71.103 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-09-25 02:52:44 | 194.67.71.124 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-09-19 06:08:20 | 194.67.71.131 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-09-22 06:36:06 | 194.67.71.140 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-10-03 01:33:30 | 194.67.71.176 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-09-09 01:30:24 | 194.67.71.183 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-09-04 02:24:02 | 194.67.71.21 | Not listed | AS197695 AS-REGRU | RU | no | |
| 2025-10-03 18:35:38 | 194.67.71.46 | Not listed | AS197695 AS-REGRU | RU | no |
Malware URLs
The table below shows all malware URLs that are associated with this particular host.
| Dateadded (UTC) | URL | Status | Tags | Reporter |
|---|---|---|---|---|
| 2024-10-16 18:29:09 | http://specificsecurity.ru/NfjxzZz9jn/Plugins/c... | Offline | Amadey | |
| 2024-10-16 18:29:09 | http://specificsecurity.ru/NfjxzZz9jn/Plugins/c... | Offline | Amadey | |
| 2024-10-16 18:28:10 | http://specificsecurity.ru/NfjxzZz9jn/Plugins/c... | Offline | Amadey | |
| 2024-10-16 18:24:14 | http://specificsecurity.ru/NfjxzZz9jn/Plugins/c... | Offline | Amadey |
The table below shows recent payloads delivery by this host.
| Firstseen (UTC) | SHA256 hash | File type | Bazaar | Signature |
|---|---|---|---|---|
| 2024-10-16 18:29:09 | 1a085e145268798a5d9cb955eb3ab785b76e5c1aef2ff60fed45d81fcb8e2421 | dll | Amadey | |
| 2024-10-16 18:29:08 | 1a085e145268798a5d9cb955eb3ab785b76e5c1aef2ff60fed45d81fcb8e2421 | dll | Amadey | |
| 2024-10-16 18:28:10 | f8dc1e4d3a7b22529a99578313d6168aa5f915913217b1ed4348f773f0a37c4e | dll | Amadey | |
| 2024-10-16 18:24:09 | efadeacca8afa370fce709a27632f7d9a7d684cb55840024421f740494d69633 | dll | Amadey |
RU
BG