URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ozon.misatheme.com.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2019-01-24 22:35:11 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-04-12 07:28:00165.22.132.163Not listedAS14061 DIGITALOCEAN-ASN - DigitalOcean, LLC- USyes
2019-01-24 22:35:13128.199.135.126Not listedAS14061 DIGITALOCEAN-ASN - DigitalOcean, LLC- SGno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2019-03-04 18:13:07http://ozon.misatheme.com/wp-admin/DT1Y4BBXJw/Offlineemotet epoch1 exe heodo Clean@Cryptolaemus1
2019-02-26 08:01:08http://ozon.misatheme.com/kAGBl08noF/Offlineemotet epoch2 exe heodo Clean@Cryptolaemus1
2019-02-22 15:07:03http://ozon.misatheme.com/doc/Invoice/005060974679/QLeW-m...Offlineemotet heodo Clean@spamhaus
2019-01-24 22:35:13http://ozon.misatheme.com/MwXc-s1JM8aL6xIMWPCM_wmwLBfZA-iND/Offlinedoc emotet epoch1 heodo Clean@Cryptolaemus1