URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ssofhoseuegsgrfnu.ru.

Database Entry


Host:ssofhoseuegsgrfnu.ru
Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-11-27 23:16:01 UTC

IP addresses


The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-04-01 00:12:5871.209.210.14071-209-210-140.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USyes
2019-03-29 05:55:3571.209.201.20971-209-201-209.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-28 22:57:2597.124.226.11997-124-226-119.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-28 10:59:3471.209.228.117Not listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-27 22:56:3271.209.253.071-209-253-0.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-27 04:51:5871.209.199.189Not listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-22 09:15:2571.209.248.6771-209-248-67.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2019-03-03 17:41:4697.124.225.12097-124-225-120.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USno
2018-11-27 23:16:0392.63.197.48SBL420216AS60307 HVFOPSERVER-AS- RUno

Malware URLs


The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-11-29 19:26:38http://ssofhoseuegsgrfnu.ru/hello.exe?GvqCWVeOfflineexe GandCrab Ransomware Ransomware.GandCrab Clean@de_aviation
2018-11-29 04:59:07http://ssofhoseuegsgrfnu.ru/crb.exeOfflineexe Ransomware.GandCrab Clean@zbetcheckin
2018-11-28 08:38:10http://ssofhoseuegsgrfnu.ru/hello.exeOfflinephorpiex Ransomware.GandCrab Clean@Racco42
2018-11-28 05:10:03http://ssofhoseuegsgrfnu.ru/hello.exe?IGrqOfflineexe GandCrab Ransomware.GandCrab Clean@cocaman
2018-11-28 02:08:02http://ssofhoseuegsgrfnu.ru/m.exeOfflineCoinMiner exe Clean@zbetcheckin
2018-11-27 23:16:03http://ssofhoseuegsgrfnu.ru/t.exeOfflineCoinMiner exe GandCrab Ransomware.GandCrab Clean@zbetcheckin