URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: smz.sh
Domain registrar:Namecheap -
Domain registration date:2023-06-10 03:58:04 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-07-27 09:47:05 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-27 09:47:10 159.203.191.83Not listedAS14061 DIGITALOCEAN-ASN- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-07-28 04:56:29https://smz.sh/files/09LW5kZ-.exeOffline64 CoinMiner exe zbetcheckin
2023-07-28 04:06:05https://smz.sh/files/util.exeOffline32 AsyncRAT ext exe zbetcheckin
2023-07-27 10:12:07http://smz.sh/files/n47FJITc.exeOfflineexe abuse_ch
2023-07-27 09:47:10http://smz.sh/files/W8vQdbz8.exeOffline64 exe zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-10-11 03:50:14053c0d5743f581db4cf0413d4a78d9213673fced76a374818812c64f5ff513c6exe  
2023-10-10 15:49:028a18ac9a78f8e144cef8373d584a6f2e156225ca3ef4c15317f11404288efff2exe  
2023-10-10 00:40:29781b4d92abd6bb8374ec23dcd1839a1405238bf0231f00b10f5a7ca17854faaeexe  
2023-10-09 00:28:081ff2540cd7f0fd834bea66d872a3f4bc1b53612875f5b9b30515e72fdfa3aab0exe  
2023-10-08 04:16:224ac240b105593f35ad754317c3e9e0324ee4022f701fa4ba46645ca862e44586exe  
2023-10-02 20:49:3289673114c12a3e4c0dba040e6850baedd4f7318a73162d41a4b74aaa7bc4e608exe  
2023-10-02 15:24:5118ed579690be8ff57b42beea3e7b2568d3961d51816f35c8d8c0f1e31a307bb8exe  
2023-09-28 15:09:26fd644fa6de9fd2989ec79f8be715bcde4dea27b357d7d562f5d4d5455bfb6a45exe  
2023-09-24 18:28:14349bc865f3bdc151f31f9109f9981b949eb0524cf14539cac0e5212510113d3eexe  
2023-09-24 18:28:13684332a3ef86aae29070d4d5ec40f0f13e10727d7fd8778f2caa1a312b4b31daexe  
2023-09-23 04:13:57dc9610b1320aa5ba69697f251e7ddff7ad70ae857c9a7e1d0d9737582767aee3exe  
2023-09-23 03:28:4203ff7930a1baf4bad7fcb1bd8c5c9998ba562e63bbb1511a802db72ebf5ac964exe  
2023-09-22 17:10:51af88ba62e4b591237a39e7594840e4c3c5bf58437f845a0244e403dc015394a0exe  
2023-09-01 22:11:09da41402166fd7bef2d12295682a6b25461c548dc4f6bf07f48a49b56c39dc526exe  
2023-09-01 21:44:366a0528eadc393b14e9ebeb35c951142126adc3cc84caaf7f139ccd58a3318923exe  
2023-08-26 18:34:06f0c51a48ae3f32d008090fa8547409c5792e7bc4cb85accabad6513c8a07de64exe  
2023-08-25 11:20:325a733f3f964d14c79ca04ec3956166c9555cae816d9fd0c5cbaebc7eff87ec7aexe  
2023-08-24 19:41:378611f5b091e34ee36329288080073d5669d97e72b97e4cef3e0a58df653b36e7exe  
2023-08-24 17:01:51edf60c16ed20211cc2e756af26f154ffd5fd9cdb74165d2b5c5e32d9cd669fdbexe  
2023-08-24 09:13:22c586506f6f6af6c7de251c1661207d1edbf15ca3d24115d2a9093567c2612d25exe 
2023-08-23 00:20:232c89cd026dbae0a1aaeec5d1a0f614f7a4782f11040e532a9e618e627e7ee1a0exe  
2023-08-17 08:13:014bbffe300415f6d2a8f4cf292c8a8ae0acdd0a9b904dec4d8557a8e149ba5ac1exe  
2023-08-16 17:42:12b40fc29d363b241a320a9c806971c9bd73cbd88da17eb9a96a66524429a84372exe  
2023-08-12 12:56:5574433ae20232ef1e65fe9b026994228869e8707d7b5d18121d261429028e0ea9exe  
2023-08-12 08:24:2034a7e1bd5e085c4749420c3afdff82129fb5baee8fec0f3cb9d4b3dde64309e2exe  
2023-08-03 17:57:295a25bcba79390405c1607a2b8a2b653132cde854044d4b03572a062b0aa62cb3exe 
2023-07-28 04:56:29ce7a9a4a88a1a9f154bb4e0650864933d87fd75bef94ec000faf24f75d0a308fexeCoinMiner
2023-07-28 04:06:05b06b398feb7402b0dfe6173944da3413160c8608d60c89fa5311b65892135f5cexeAsyncRAT
2023-07-27 10:23:435be74a76ba2ee6471c63a1b08b016559f1b64c8caa3c3c78da9093cc4f328da5exe  
2023-07-27 10:12:072eeef488f95e86e0233595da1bf657956349a0c4b8d64f34d24a8cc60ffc9522exe 
2023-07-27 09:47:0943ab825086c6cb0ffccc887273a2acd37f81e0b48de001334579278f7da8e54aexePripyatMiner