URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: samsa.id
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 21:11:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-02-06 20:10:06 45.77.173.16245.77.173.162.vultrusercontent.comNot listedAS20473 AS-VULTR- SGno
2020-10-16 21:11:06 45.76.156.4845.76.156.48.vultrusercontent.comNot listedAS20473 AS-VULTR- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 21:11:06https://samsa.id/assets/FILE/fwUDh04QaOA26vN8RXu4/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 05:32:43294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092docHeodo
2020-10-17 04:56:3473c8e321733773d7413efd1447245567bceaac2f4f85447e1196884a898cbea2docHeodo
2020-10-17 04:22:098763a9868e952dfb5be76162ed10b0d62fa00e1ba5baebe53f7cca486cb89542docHeodo
2020-10-17 03:52:312a71d0ad9193b9a5ec07c7040baf6aee1049bde63cdd81fdf346e9f295b95760docHeodo
2020-10-17 03:16:3190e7a0a9f215c30d103034801a89e4b61554c48bff10a98df0d09257cfc716cedocHeodo
2020-10-17 02:45:13971e189c279099a876618c3226ef35e5afc62b91daf3b8bde466a424fdfaa063docHeodo
2020-10-17 02:25:38203a54f8692f6554ad685a3d9e94ec1f3482366c3c455312540f744cbda4f479docHeodo
2020-10-17 02:06:396820620122b2210629007eaae85c11949f1d113edfa9e10c0a0678069bcefa83docHeodo
2020-10-17 01:40:22115b344de8011d635adae59417a4dab2f992101ce81619ffe1b1b0423d9df79adocHeodo
2020-10-17 01:34:43674b59aa10f963845214c91833225375d26e69ccece07609e8a5425a8d952346docHeodo
2020-10-17 01:12:25ac172c6a7fb2f8004f019c9dd8d7400f660d58187ed3adcf2502c5effc15271bdocHeodo
2020-10-17 00:37:1973a83fd3188295433015762cab772d1fc554aad7da08da7e0373ba66a0a9ba38docHeodo
2020-10-17 00:10:5765fe5c36c465cfa1cc58f54aca29a2da9e56f3fa0b499ff8ae0b654338db114bdocHeodo
2020-10-16 23:47:42f248106a010a23404bc680541ff725431478f2a3a368efc846d4bee707af6c22docHeodo
2020-10-16 23:27:3639319e4e0e23653363b81024b93090dbf717424cc2dcc3c0291e6e56e3328ed2docHeodo
2020-10-16 22:54:35d546749eeff6828f731a5f79a2352276696d9ce6d5614dc6e9779fa2dbbe6799docHeodo
2020-10-16 22:43:20691b2fc6acbee6cf5fb93b6afad38eb2f61c4a211cb17cb3c617c2bdebd48f61docHeodo
2020-10-16 22:09:515c58c91ffdffd84690c6746f6afc2eaeacd03df2e4a83c6e662755624113cf5bdocHeodo
2020-10-16 21:43:36ee2a584f20b8fae9caa25baa3476b1dae0aac0d511a2a2584dde95eeb42c4d06docHeodo
2020-10-16 21:24:5849cdf52f6974aff3348c2c2ddb75be089f05da06c6dbc7f5b28fb6b5ee4cbdfddocHeodo
2020-10-16 21:11:057440c2b0a8f5a75b09af167e9259a5fb5f7f449e9c496ccfad8f5675abcca4acdocHeodo