URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: config01.homepc.it
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2019-02-23 05:01:36 UTC
Total malware sites :17
Online malware sites :0 (0%)
Offline Malware sites :17 (100%)
A record(s) observed :77

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-08-15 14:53:16 109.232.95.252Not listedAS50201 IMPULSO-AS- ITyes
2019-10-17 08:16:04 45.137.150.196no-reverse-yet.localNot listedAS202448 mvps- FRno
2019-07-23 01:54:02 151.26.206.229Not listedAS1267 ASN-WINDTRE- ITno
2019-04-12 08:06:49 151.26.198.48Not listedAS1267 ASN-WINDTRE- ITno
2019-07-17 00:22:58 151.26.196.5Not listedAS1267 ASN-WINDTRE- ITno
2019-07-15 01:41:10 151.26.199.35Not listedAS1267 ASN-WINDTRE- ITno
2019-07-14 02:01:12 151.26.217.8Not listedAS1267 ASN-WINDTRE- ITno
2019-07-13 01:45:17 151.26.215.166Not listedAS1267 ASN-WINDTRE- ITno
2019-07-12 05:56:20 151.26.221.81Not listedAS1267 ASN-WINDTRE- ITno
2019-07-10 17:04:20 151.26.222.53Not listedAS1267 ASN-WINDTRE- ITno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-02-23 05:40:58http://config01.homepc.it/win/wofficeie1.exeOfflineexe payload shotgunner101
2019-02-23 05:40:01http://config01.homepc.it/win/woffice.exeOfflineexe payload shotgunner101
2019-02-23 05:38:51http://config01.homepc.it/win/wincommand.txtOfflineexe payload shotgunner101
2019-02-23 05:38:45http://config01.homepc.it/win/win.batOfflineexe payload shotgunner101
2019-02-23 05:38:38http://config01.homepc.it/win/wget32.exeOfflineexe payload shotgunner101
2019-02-23 05:37:40http://config01.homepc.it/win/wget.exeOfflineexe payload shotgunner101
2019-02-23 05:36:47http://config01.homepc.it/win/termsrv17134.1.dllOfflineexe payload shotgunner101
2019-02-23 05:36:32http://config01.homepc.it/win/termsrv16299.15.dllOfflineexe payload shotgunner101
2019-02-23 05:36:16http://config01.homepc.it/win/termsrv.dllOfflineexe payload shotgunner101
2019-02-23 05:35:37http://config01.homepc.it/win/rfxvmt.dllOfflineexe payload shotgunner101
2019-02-23 05:35:31http://config01.homepc.it/win/nc64.exeOfflineexe payload shotgunner101
2019-02-23 05:35:23http://config01.homepc.it/win/nc.exeOfflineexe payload shotgunner101
2019-02-23 05:35:08http://config01.homepc.it/win/java.exeOfflineexe payload shotgunner101
2019-02-23 05:34:59http://config01.homepc.it/win/get.batOfflineexe payload shotgunner101
2019-02-23 05:34:45http://config01.homepc.it/win/cacert.pemOfflineexe payload shotgunner101
2019-02-23 05:34:28http://config01.homepc.it/win/OneDrive.exeOfflineexe payload shotgunner101
2019-02-23 05:01:38http://config01.homepc.it/svc/my_paner.sqlOfflinebat exe payload stage2 shotgunner101

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-02-27 01:58:28042a83eefd40509382404650c7a52f3ded5e7a9b760b9a822eb46ecc922ffc47exe  
2019-02-24 14:52:163eecd459aa454f7973048af310c7086ff4a74efd5a3aee9f909cca324a0e2013exe  
2019-02-24 14:51:06489d24447898ac587dedd8b8c097bf33ea7a3c639a978910f582015f4a229d5eunknown  
2019-02-23 05:40:58ee86f083fdb8d5e2f4d1d609faf964fa08a01875bc0abb364aeb09bb83c35f8cexe 
2019-02-23 05:40:0159b0dcd63a8e6aa0021575c8b9d24934fc2a12aa14dfbe0f89cf48cebee4a50eexe  
2019-02-23 05:38:384448819d653de3dd5a874cca35ba52df35b4628c1b388501e56da8bfda90c12bexe  
2019-02-23 05:37:40075c08901057ff78cac7e139e9fa38b3a29cd75d8b70f31dbbaf7ff973612d1bexe  
2019-02-23 05:36:47be82341a12ea83d9efadc9ac35cf16d327f8499c99107dcde88dd0f5df84523cexe  
2019-02-23 05:36:32e2e4d23525389c13126401215541f5625258da18372cb5c98d0b95123a86acfbexe  
2019-02-23 05:36:163d3df7bb13a774d394a0c9e3f40a54cc9daa0705887363845eaf7f60218111ccexe  
2019-02-23 05:35:3732ff81be7818fa7140817fa0bc856975ae9fcb324a081d0e0560d7b5b87efb30exe  
2019-02-23 05:35:316050202e924276ed7ed34ff6003d0ab1905a103b5d3fca122a1edd513b69f591exe  
2019-02-23 05:35:239971d1998d7421363b91fd9f3bf03ab31db5c3d1024dcad464f87b3e9f5f0debexe  
2019-02-23 05:35:08097baea0616eaaab899f8d68e919bcaa66d77667a0f98b9ec643b7db980ec8d3exe  
2019-02-23 05:34:5945dcb6e4494f9ccdf91dd6d08b7b4f838c11a19d7c7cbdbc3665266103e3f38funknown  
2019-02-23 05:34:280e524fe27a4307ed8499a1c0d4df1f7354be6862085d368433f8df7028d13803exe