URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host ssofhoseuegsgrfnu.ru.

Database Entry

Spamhaus DBL:Not listed
SURBL:Not listed
Firstseen:2018-11-27 23:16:01

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-03-03 17:41:4697.124.225.12097-124-225-120.phnx.qwest.netNot listedAS209 CENTURYLINK-US-LEGACY-QWEST - CenturyLink Communications, LLC- USyes
2018-11-27 23:16:0392.63.197.48SBL420216AS60307 HVFOPSERVER-AS- RUno

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-11-29 19:26:38http://ssofhoseuegsgrfnu.ru/hello.exe?GvqCWVeOfflineexe GandCrab Ransomware Ransomware.GandCrab Clean@de_aviation
2018-11-29 04:59:07http://ssofhoseuegsgrfnu.ru/crb.exeOfflineexe Ransomware.GandCrab Clean@zbetcheckin
2018-11-28 08:38:10http://ssofhoseuegsgrfnu.ru/hello.exeOfflinephorpiex Ransomware.GandCrab Clean@Racco42
2018-11-28 05:10:03http://ssofhoseuegsgrfnu.ru/hello.exe?IGrqOfflineexe GandCrab Ransomware.GandCrab Clean@cocaman
2018-11-28 02:08:02http://ssofhoseuegsgrfnu.ru/m.exeOfflineCoinMiner exe Clean@zbetcheckin
2018-11-27 23:16:03http://ssofhoseuegsgrfnu.ru/t.exeOfflineCoinMiner exe GandCrab Ransomware.GandCrab Clean@zbetcheckin