URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: damoreca.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 17:47:07 UTC
Total malware sites :1
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-04 10:18:14 91.195.240.94Not listedAS47846 SEDO-AS- DEyes
2021-01-12 23:47:01 103.224.212.220lb-212-220.above.comNot listedAS133618 TRELLIAN-AS-AP- AUno
2021-01-20 20:13:03 70.32.1.32ip-70.32.1.32.hosted.by.gigenet.comNot listedAS32181 ASN-GIGENET- USno
2021-01-20 09:48:27 170.178.168.203becrawl-show.flatreutic.comNot listedAS46844 SHARKTECH- USno
2021-01-11 12:45:40 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-12-04 12:43:46 34.98.99.3030.99.98.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2020-10-16 17:47:09 199.167.200.151surf.hblocal.coNot listedAS63410 PRIVATESYSTEMS- USno
2021-01-12 14:31:19 103.224.182.250lb-182-250.above.comNot listedAS133618 TRELLIAN-AS-AP- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 17:47:09http://damoreca.com/wp-admin/Pages/tnQmj1OX2j2/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 05:29:05294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092docHeodo
2020-10-17 04:49:3661a22d08e168e2bce5feaf96a0859d60c6bd10b4c9f1a32f302c9e75a4463650docHeodo
2020-10-17 04:03:16c147f6f4d8e08ce92756aea055fb18dc3398e77ce2ba5a71bfa3d6eb5f3de750docHeodo
2020-10-17 03:53:022a71d0ad9193b9a5ec07c7040baf6aee1049bde63cdd81fdf346e9f295b95760docHeodo
2020-10-17 03:26:407e8f0d3a035cc6aaf58e4f892900fd85148d09fb03b8b258eaca0db120d1c628docHeodo
2020-10-17 02:48:51308b5a0affafedcef7431861d7785ddf4db3314cf5e18d5fdbc4c0168cc63ea7docHeodo
2020-10-17 02:37:464885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476docHeodo
2020-10-17 02:22:08203a54f8692f6554ad685a3d9e94ec1f3482366c3c455312540f744cbda4f479docHeodo
2020-10-17 01:54:1278f2969b92269cd9a3e1cc7003b0949f47421d551c323dbeafa94ad0a836bf34docHeodo
2020-10-17 01:27:16fca525a70cdbc09d5adb7e320849a4e9958f5edb129e2accce15281a340edf54docHeodo
2020-10-17 01:09:4749bfab81e7c83836e13d24a1c3e607ce00aa745e850f110ef848cf96ab0b5b30docHeodo
2020-10-17 00:40:26c64264c7336d7e9f516999fa287be55be63b634b63f5ebbf1bab24e38ada5e8edocHeodo
2020-10-17 00:11:5265fe5c36c465cfa1cc58f54aca29a2da9e56f3fa0b499ff8ae0b654338db114bdocHeodo
2020-10-16 23:49:57a9d9b8357ff803bd36d7bd0c12c770487fe774ccd22e81318606bad0f6ddaf90docHeodo
2020-10-16 23:27:12528b63ef8c44d0a5b08974fb6ad9efa60e0021ce6993d25b30ef1b90c00df222docHeodo
2020-10-16 23:04:31d546749eeff6828f731a5f79a2352276696d9ce6d5614dc6e9779fa2dbbe6799docHeodo
2020-10-16 22:44:16691b2fc6acbee6cf5fb93b6afad38eb2f61c4a211cb17cb3c617c2bdebd48f61docHeodo
2020-10-16 22:08:52ea0d3c6f16a0b6c751479d44c06e9fc4ee4f7e47803b008c8ac0ea1ae93f5171docHeodo
2020-10-16 21:38:55d0b24fe52a88df1055812d9b2a79e7acee0b02add126d467c4054a93771b2ba5docHeodo
2020-10-16 21:17:311d74d9c148d2a786425f0447d4415368184fd896521dc5054434c999fce03a31docHeodo
2020-10-16 21:06:334c125553bd2edbf5672acedb290d618c67fab2f3b02f055bf22af25030b3cb34docHeodo
2020-10-16 20:22:525d7464a628237e351aefb990f56c4c205ceca5119aeae9e13b8d596d9236c451docHeodo
2020-10-16 20:12:42a0851102c87a910c627e0d68a5e41dd1b448b75e66fab4bb0623715d71b6a43cdocHeodo
2020-10-16 19:48:45f4af9d4a8529e7b2cc1ffc59afc271f35f63fd2f0b043cecdc60553c2ff8259cdocHeodo
2020-10-16 19:27:02946f2932db99a282d3ebdec264e3de1b8c260b12f95769381d8bc99433b66b93docHeodo
2020-10-16 19:03:400ec477654d5520def268531ea738a0d3bd64694440a9185716a92c79625e408cdocHeodo
2020-10-16 18:44:20ff2225f50847fbfdff2af9e81b67fc82dc5a26f7c4a78edbe36d775f1c153c22docHeodo
2020-10-16 18:18:35b443088167d74ff3bc8ef184ca3771959b274954d6adb5263830985dbad709a4docHeodo
2020-10-16 17:47:09bddf126e79e9a62c235c0b9b763a594d8c49fc76d38f39400409262f43373d43docHeodo