URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: chiaraberettamazzotta.it
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-23 03:28:07 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-07-04 23:49:29 185.220.244.6medea.artera.farmNot listedAS12637 SEEWEB- CHyes
2025-04-27 08:07:45 46.28.2.66d01w5k-vm.sphostserver.comNot listedAS52030 SERVERPLAN-AS- ITno
2020-07-26 19:31:54 116.203.249.0tribit.ipeuc.comNot listedAS24940 HETZNER-AS- DEno
2020-07-23 03:28:37 159.69.132.91cloudficient.comNot listedAS24940 HETZNER-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-07-23 03:28:37http://chiaraberettamazzotta.it/wp-includes/g9a...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-07-23 08:51:02548e4293f740ef77ecf074a7e8eb5ee8659eb565fd08db697ca873dc770c11b0docHeodo
2020-07-23 08:38:12cf2ba9c49c359ebc0d9ce182b928db8e967b6720c8d531c8366b2420ce778d21doc  
2020-07-23 08:23:40fd1b363068e21fa7a3e86cc0aa6134bfa46a640d70bcef686f19f57f54340f6bdocHeodo
2020-07-23 07:31:31a7eba5ce690c5078cfc8875f5a8a07cdf7b8fe15a427b22b2620462b04c4558cdoc Heodo
2020-07-23 06:52:28df314d2431bc91e51d22c2f55c6b9de5577ac0129f93014698c3e17546ae0867docHeodo
2020-07-23 06:38:31063f625ee5274a7caa1637adec2235e98aeaab2f5f8b14877835b82136892654doc  
2020-07-23 06:31:46063f625ee5274a7caa1637adec2235e98aeaab2f5f8b14877835b82136892654doc  
2020-07-23 06:05:41c8974949fec3e295b7d7e7844cdb17d5931a697690a6be15b4863e787931d386doc Heodo
2020-07-23 05:51:38e2796110338cf892ecb47cb8baeafa186dabd1403514af5d5a470c2561c59d11doc Heodo
2020-07-23 05:36:4788cca8fc8a65b95ca50edf7f8f1bc19f7c7d91935a589e7a4a88b42ea443b603doc  
2020-07-23 05:36:19cd246dc83c181223acbe8487d25a97d5c433c31b36f8fe625f2814ca8d28a6c3doc Heodo
2020-07-23 05:20:54eb8252a2dd0e7e0f44a6b26fb09abb04ef9a618d216f46a9c1525a55350766e9doc Heodo
2020-07-23 05:07:33c8bc8587d3706f659ce2dbd1c22be268adad0f5f8c4c7be78ff6b4b17c3f1279doc Heodo
2020-07-23 04:56:268a3c6c28c8e2a7d4a12919a3c5894648e4a54661f9ded2f99e00685742d95bc4doc Heodo
2020-07-23 04:42:31e96a19dec04fc49f1360224fea7d16ee6c04d29b296500a3b7edc87d31a925fbdoc Heodo
2020-07-23 04:31:255ecb66cb399d319d7c2e24a9ae1e427ee2b10ccd3da9b2a2266dd764ba29cd16doc Heodo
2020-07-23 04:08:30b84bcc1db705ebab3793f52dcf633d1ad8ad2a9b7c96dee5daee12d7d4be0375doc Heodo
2020-07-23 03:46:23f815f1d2c10f89e966e1637e1d1478a36c5c8c8ceb852eefaa2247c44f10b9fddocHeodo
2020-07-23 03:34:32330179eaf2aebaf9bc3d247bc1bf97ee8e2ae05d86fd9ea97f8d352332b459badoc Heodo