URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: damjangro.org
Domain registrar:Realtime Register -
Domain registration date:2014-10-03 01:24:44 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-16 07:55:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 19:45:56 92.63.172.227hosted.by.pcextreme.nlNot listedAS48635 CLDIN-NL- NLyes
2022-03-24 07:15:46 185.182.56.12Not listedAS48635 CLDIN-NL- NLno
2022-03-16 07:55:09 185.182.56.68vserver2.axc.nlNot listedAS48635 CLDIN-NL- NLno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-18 09:53:05https://damjangro.org/data/IlBcH2mM/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1
2022-03-16 07:55:09https://damjangro.org/data/XPMJ/Offlinedll emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-18 12:24:30e085242e68af1bdf96568b0637f7af68f3a4bdf8766e154d81feb3a0a1a22b66dll Heodo
2022-03-18 12:06:308d3503428e5bdba0118f3d1bc73be643b04fcf718b294ccd319e50331f33ab5bdll Heodo
2022-03-18 11:48:040661f739f74d351428d783c305022a2549a8b5240bae6fb2c52e08d2661d8b14dllHeodo
2022-03-18 11:03:45a13a6e8dd5c124e5cb352094abae6a7d76c94b1afb18bfe65f2c482b29b8c6dadllHeodo
2022-03-18 10:21:2614f18c8288fc4cd5e2be42704b9083632ace336345d981a626a8a97cd7f1241edll Heodo
2022-03-18 09:53:0593ecbc79688b494aa0a24d076ef787f30e945d343d0e8e6f4c373289153f285edll Heodo
2022-03-16 14:17:5678170521a3996397cb5fe6fd95e0849c7388ddcad534ca47f15a50a5db975ea4dll Heodo
2022-03-16 14:02:27265d5bc95d915b56fadf6e2a7344bc864444dc2e64f8bdc903e3d6eecedfe932dll Heodo
2022-03-16 13:17:20e59348d4dced35b7efa561c6931c4b6c4cf38d3c49973b1a435b426784edc26bdll Heodo
2022-03-16 12:44:090900771af0f580a50311f3c2663d09268a9fe46653ff367757951c0084d610c9dll Heodo
2022-03-16 11:40:5844d6e84955dda3422f6ce598640283e7a3d4e5650f0a014fb327c78b97035327dll Heodo
2022-03-16 10:41:095c5a1bc8dd79716ef3d153eb66a5385602719cf07a09615183d9fe21ca0cc1bddll Heodo
2022-03-16 09:57:31fd98c8cf3ff16984917de22beef1d73fcaeca194dfaef686ef66f0c77f868256dll Heodo
2022-03-16 09:15:185025e5c5ae5eb416537cfb1952539434890b282782d2139393b8aafd47052b62dll  
2022-03-16 07:55:083e28055052bc64452e3d15a6ac6a3f23b75d09b665fc41aec9b121d08ed8ab14dll Heodo