URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mitmar-pl.com
Domain registrar:Public Domain Registry -
Domain registration date:2021-06-22 08:40:41 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-12 09:07:03 UTC
Total malware sites :15
Online malware sites :0 (0%)
Offline Malware sites :15 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-12-01 06:09:47 193.239.84.207setup-verification.comSBL619114AS9009 M247- GBno
2022-06-22 11:21:43 209.99.40.222209-99-40-222.fwd.datafoundry.comNot listedAS23005 SWITCH-LTD- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-19 08:40:04http://mitmar-pl.com/nnawed.exeOfflineAgentTesla ext exe abuse_ch
2022-01-19 07:30:04http://mitmar-pl.com/okeywed.exeOfflineAgentTesla ext stoerchl
2022-01-18 18:01:04http://mitmar-pl.com/okcff.exeOffline32 AgentTesla ext exe zbetcheckin
2022-01-18 18:00:05http://mitmar-pl.com/baam.exeOffline32 AgentTesla ext exe zbetcheckin
2022-01-18 16:04:04http://mitmar-pl.com/nnabu.exeOfflineAgentTesla ext exe abuse_ch
2022-01-18 15:07:04http://mitmar-pl.com/okeyt.exeOfflineAgentTesla ext exe abuse_ch
2022-01-17 07:45:05http://mitmar-pl.com/okcm.exeOfflineAgentTesla ext exe abuse_ch
2022-01-17 07:45:05http://mitmar-pl.com/nnam.exeOfflineAgentTesla ext exe abuse_ch
2022-01-13 19:33:04http://mitmar-pl.com/okcth.exeOfflineAgentTesla ext exe abuse_ch
2022-01-12 11:04:04http://mitmar-pl.com/baa.exeOffline32 exe SnakeKeylogger ext zbetcheckin
2022-01-12 11:04:04http://mitmar-pl.com/nnat.exeOffline32 AgentTesla ext exe zbetcheckin
2022-01-12 09:13:04http://mitmar-pl.com/okcc.exeOfflineAgentTesla ext exe abuse_ch
2022-01-12 09:12:04http://mitmar-pl.com/nnaw.exeOfflineAgentTesla ext exe abuse_ch
2022-01-12 09:09:05http://mitmar-pl.com/okc.exeOfflineexe SnakeKeylogger ext abuse_ch
2022-01-12 09:07:04http://mitmar-pl.com/nnn.exeOfflineexe SnakeKeylogger ext abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-19 08:40:0474651912c016abd10904732ecd48b62985eeee6fea06da7129a77b144cee4c3bexeAgentTesla
2022-01-19 07:30:046a77796a61b51916eab27e2e041884e7a749caac0b297f642526573ff340722dexeAgentTesla
2022-01-18 18:01:04f2da177aff59093abe1d3bc7c1a769be2701784036c398900a43725d83c9e9a9exeAgentTesla
2022-01-18 18:00:05b1a64c20ab97c17b278aaf0e58dd34c3623ec2662dfdb5557e41d3df2e30a960exeAgentTesla
2022-01-18 16:04:04e58ad3033acb263e6941a9bc8f7769a4bbd7ca915dd952f9f3dca0febbe34534exeAgentTesla
2022-01-18 15:07:04a72069e90144015c65d5f26f95399c1486ca873cef2312b19f179bac7f6c974dexeAgentTesla
2022-01-17 07:45:050b256399b5b3e6cffcb5af4bf153268f8eccb03e2addcff54a2444807281f467exeAgentTesla
2022-01-17 07:45:05d5a6c9d935ffd6bc304797fe87e86daed9c889312f2ee4e1945ebe9fb7322699exeAgentTesla
2022-01-13 19:33:0423c7ee11b32f31b5b6bb9c94af7250d3c8edaccb70ab9472d15a3a9ae2ee3b8dexeAgentTesla
2022-01-12 11:04:043618e199550064327aa66e42fecb1de7ad661587235f5b1e2224ca763d4e0d79exeSnakeKeylogger
2022-01-12 11:04:04932f6deca205abeb65fe5d0c7ca7e4e0525f76c3672ce61cc0d851ff368ad998exeAgentTesla
2022-01-12 09:13:04bbbc76a2fe9af1a1b09191375d03fd30faa241dba2dd7a1b1b118a01d0a39b8cexeAgentTesla
2022-01-12 09:12:04e5435c61a441f9be4c90c2f7fb4645bbb3a3a4cbeb4b8fb7ac48ed6a38adf786exeAgentTesla
2022-01-12 09:09:05d470e374b6075535577b933c34318df4ab83821f6bc259364f086b32dea4fed4exeSnakeKeylogger
2022-01-12 09:07:047501eb04d76c0541148a6b19304117af1a4ee432ab7d1e6e8e03750b5b1b43daexeSnakeKeylogger