URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ssmuf.org
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-16 07:54:41 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-01-15 11:08:58 104.21.81.141Not listedAS13335 CLOUDFLARENETn/ano
2020-10-05 13:39:25 172.67.189.161Not listedAS13335 CLOUDFLARENETn/ano
2020-09-16 07:54:43 68.66.224.3az1-ss2.a2hosting.comNot listedAS55293 A2HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-16 07:54:43http://ssmuf.org/acme-challenge/O0/Offlineemotet ext epoch3 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-16 17:31:3583062af835be6a8826d71067e91a2f012fcb0f0f4ece99ecba5012142b149d8eexeHeodo
2020-09-16 08:35:21f3e9f0585b5b3a1800bf4b472faf183fdebe4884628152abb61e8ff10eacadfeexe Heodo
2020-09-16 08:06:3229779ee4925693794616ac2d357802fb31cd29ae4a94380473899f91d343370bexe Heodo
2020-09-16 07:54:432ae96275de8be7a9735946bde1a252f1d0ffd3a66d2238bf7b9bdbd1119168d7exe Heodo