URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: aumentofans.it
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-11 09:46:12 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-11 09:46:14 5.134.124.72plesk02.hostingperte.itNot listedAS3242 ASN-ITNET- ITno
2020-09-19 07:38:04 72.5.65.111Not listedAS12182 INTERNAP-2BLK- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-18 23:49:13http://aumentofans.it/fzeb40ebo/Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-11 09:46:14https://aumentofans.it/c_panel/open-array/corpo...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-19 07:44:3014c8425a5923efb623ff5070d126d05348baaca0a46096c569a40d6afe8e0244docHeodo
2020-08-19 07:17:58a1b39bb8e04288328a8785f48219abb0b12a2a6330e2192973405a2bf6682644docHeodo
2020-08-19 06:58:229be9c52a2ed346fcab910d6e22a065f7f1ddbb851e589a1c18e4b0577afe0e5bdocHeodo
2020-08-19 06:42:499300711f5a35bc33dab0314d010f858ea9385b9b41b60e8db605a367ee901d57docHeodo
2020-08-19 06:16:58eb3a3bdc721850d6e51b7c255e5237b5d1657ccf823f9965b2ab012da716b66edocHeodo
2020-08-19 05:57:391e5fdb496c17dd55dfc3e32231d286de4334d59bcc313b939202c4f8ae2abecadocHeodo
2020-08-19 05:42:446ad811a3072f008affd2450407d0a37d9d45166d41c8fedc1d1e0ae2b61c77e9docHeodo
2020-08-19 05:21:502efc148d28ccc7f78e2f598072e171cb43bd6703a0be1abc612c36f1420ec1d0docHeodo
2020-08-19 05:05:338a80d1e540897315edc7acd34b69bf1cd00ea85dbef7186b3751c5a8337f88ccdocHeodo
2020-08-19 04:48:510e79daf2a9f00edeae140c5e513dfe381e03f54ae3fec2dae7b2bd9f005b4f6fdocHeodo
2020-08-19 03:17:485b39d05fd1a75574a20fce09addb52c62b766bb08f8812b8d692936918ba780ddocHeodo
2020-08-19 02:59:4713ecb0280410d83e2d67d9f049fe85af186a0c9959c316c90f3ec327a9ab244ddocHeodo
2020-08-19 02:45:1428e4449bf2803e0d685599cbfbd23a03ac3f9a69b25f6a2669de4ce252de4073docHeodo
2020-08-19 01:33:01189ef09b3af0c487e840219d1b144a8022ff6940de058c276ecd313ad2771c0adocHeodo
2020-08-19 01:12:2794fe6d0cc1723a60d8965c606027ad0283a60c1f4677cf33c8cb85fd202bbc60docHeodo
2020-08-19 00:57:54bb7514867d581af837a3d30b735e4c0e010220c3b2bee800c0217cb4e7275e3cdocHeodo
2020-08-18 23:49:134f1ea64903fced68d8230b8c217e089716c28221e5bb5d2f18eb6887f8d2e671docHeodo
2020-08-11 10:09:145920c7e4ce5cd003b9b0fc667cf8b9414312502656caee024acae86456e58ce0docHeodo
2020-08-11 09:54:48bdec17a0bd8af4f682e06a0e45531d3e90242d09c6a7e99b3c293fcd72418b21docHeodo
2020-08-11 09:46:136cd2978693ea80590b3261eb57a2d4852b3da75dcefc599135cdc7dfd342a254docHeodo