URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: wsspaq.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-14 10:54:15 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-17 16:46:04 154.218.43.211Not listedAS9294 GNETINC-AS-AP- SCyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-14 10:54:20http://wsspaq.com/404/swift/b414uy3bs5l/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-15 10:28:1955f8854dbcaa2832aa10f768c129ab27544b5b153c7e4ea008f7ae9444681eecdocHeodo
2020-08-15 09:59:58e3dc10847c610fb756b701eb6c9eff581d98adda60bbd1df9ca1c41f43e6710fdocHeodo
2020-08-15 09:30:340d05dd18608b5e67e89cd5c7cba41f47e7094084294b33950992871764e43321docHeodo
2020-08-15 09:13:2672af635d51194d2ab428924c2c7f51aa4a9d040e93566ed7302ed43f5fa16eeddocHeodo
2020-08-15 01:03:40c1f1f9b4ea3631f3eaf9afa4e8f27d8dcfbcbce4c65a47b6ca4778a833104ec1docHeodo
2020-08-15 00:03:222282676dff6e201e68e1817f507dbb2f5ecbeb498367e7aada3916d32e89511ddocHeodo
2020-08-14 22:13:30c837fd8744bd36a0ac0a3a3f11e102063d60651777ee888c2f3f8e83c54a6483docHeodo
2020-08-14 21:46:41f868e00a4f8d182360784894248a210bb56e707c5a830c89485b157ff1a72402docHeodo
2020-08-14 21:37:025936c071471d7130c47558241c18b4dcac2be07eb3aba3327d251590f952c2aadocHeodo
2020-08-14 21:22:306c2eba2dcea75385e146eb28ffde0be82b8b78f4d943bda7462eebfb283e6c34docHeodo
2020-08-14 20:57:50739eab0c4f294e4ba8fff9f685d6ab8303b5e4ab1caf9482d846afec5aeab316docHeodo
2020-08-14 20:30:2818eac692518c945b0bd23be239abac9df98f3e77f39773df35ac22233f25749cdocHeodo
2020-08-14 19:54:3896b6cab1427a652a35407967a7c4f7e6bb2bd63159d8e2510793ea9b9e76093bdocHeodo
2020-08-14 19:29:31b118fd8dcf97cf570ff2c1e3640e17e7fe7bd4f73b7ec79f4aac13d6b1fcca19docHeodo
2020-08-14 19:06:15508a3ceae3f786124dba30150aba4fce295d13eb1a60afacd789b4f37c2df5c0docHeodo
2020-08-14 18:30:200800f5f92096b10eaffebb3ca43a7a5006b931823de9002d8c9004a5a96eaf9fdocHeodo
2020-08-14 16:58:5692ffc87ebde551d6dec0d9a939474f99575856d4aa63e78b2db40680f2da2188docHeodo
2020-08-14 16:39:51b5ced3fd9b5203a48e44f9df4cb09216c9527f2bdae51b0d7ee1a53e51c12350docHeodo
2020-08-14 15:07:53f63f10c76f2b6b2a83ab7db285bcb34995b5777deb95e87bc6a9255f4e63a634docHeodo
2020-08-14 14:44:06195495f81ec757b286d74776c59ace3b717a02c3f357abc851fe9702008f66f7docHeodo
2020-08-14 14:20:56062fc69188911892d65d155ba828eeb25b0662d9e9b399a14f718ede3c62d538docHeodo
2020-08-14 12:46:552958931d81ad10eb95bb3fca9457a800e9b4a9459d2727f30cb5d49d7bed0527docHeodo
2020-08-14 12:30:048f9649dab8ca8b9830c3cf160314bc7bf4c8e9e64454056eba927e3d8867ba77docHeodo
2020-08-14 12:08:1066b1702c8b46746eec9ed42b4dc27d9f9a7bdf36e19ef3d3291454092cf7006bdocHeodo
2020-08-14 11:47:0360c6203d9b7a2178fb3f76f12d896c8191aaef13c55973e5a177df215181683ddocHeodo
2020-08-14 11:28:448e0fd038c7bf7a3cb3e06a8186340b23adc90e48beddfffb70324f433b39c4d9docHeodo
2020-08-14 11:09:04e2ef53050e1f0551495ce13051c31852e747e9ebb6825fcee8d6da553414e670docHeodo
2020-08-14 10:54:19866dc1feb70fb000d28b41e938d97511daf3c14bf919927e202adf7db158e940docHeodo